From 91173cbf012ab05f11b9fb2098c68962e130ec9e Mon Sep 17 00:00:00 2001 From: Francisco Serrano Date: Thu, 12 Feb 2026 12:07:21 +0200 Subject: [PATCH 1/2] fix: snyk issues --- requirements-dev.in | 1 + requirements-dev.txt | 5 +++-- 2 files changed, 4 insertions(+), 2 deletions(-) diff --git a/requirements-dev.in b/requirements-dev.in index aa1d3b4..f5dc4cc 100644 --- a/requirements-dev.in +++ b/requirements-dev.in @@ -4,3 +4,4 @@ pip-tools pytest pytest-cov responses +zipp>=3.19.1 # pinned to avoid CVE-2024-5569 vulnerability diff --git a/requirements-dev.txt b/requirements-dev.txt index 2f790f6..13ce432 100644 --- a/requirements-dev.txt +++ b/requirements-dev.txt @@ -1,5 +1,5 @@ # -# This file is autogenerated by pip-compile with Python 3.13 +# This file is autogenerated by pip-compile with Python 3.12 # by the following command: # # pip-compile --output-file=requirements-dev.txt requirements-dev.in @@ -79,8 +79,9 @@ urllib3==2.5.0 # responses wheel==0.46.2 # via pip-tools +zipp==3.23.0 + # via -r requirements-dev.in # The following packages are considered to be unsafe in a requirements file: # pip # setuptools -zipp>=3.19.1 # not directly required, pinned by Snyk to avoid a vulnerability From 89838e192e50904db5e8274887cd01b70191bbdd Mon Sep 17 00:00:00 2001 From: Francisco Serrano Date: Thu, 12 Feb 2026 12:41:45 +0200 Subject: [PATCH 2/2] fix: upgrade all requirements libs --- requirements-dev.in | 1 - requirements-dev.txt | 42 ++++++++++++++++++++---------------------- 2 files changed, 20 insertions(+), 23 deletions(-) diff --git a/requirements-dev.in b/requirements-dev.in index f5dc4cc..aa1d3b4 100644 --- a/requirements-dev.in +++ b/requirements-dev.in @@ -4,4 +4,3 @@ pip-tools pytest pytest-cov responses -zipp>=3.19.1 # pinned to avoid CVE-2024-5569 vulnerability diff --git a/requirements-dev.txt b/requirements-dev.txt index 13ce432..10b3912 100644 --- a/requirements-dev.txt +++ b/requirements-dev.txt @@ -4,48 +4,48 @@ # # pip-compile --output-file=requirements-dev.txt requirements-dev.in # -build==1.2.2.post1 +build==1.4.0 # via pip-tools -certifi==2025.7.14 +certifi==2026.1.4 # via requests cffi==2.0.0 # via cryptography -charset-normalizer==3.4.2 +charset-normalizer==3.4.4 # via requests -click==8.1.8 +click==8.3.1 # via pip-tools -coverage[toml]==7.9.2 +coverage[toml]==7.13.4 # via pytest-cov cryptography==46.0.5 # via secretstorage -idna==3.10 +idna==3.11 # via requests -iniconfig==2.1.0 +iniconfig==2.3.0 # via pytest jaraco-classes==3.4.0 # via keyring -jaraco-context==6.0.1 +jaraco-context==6.1.0 # via keyring -jaraco-functools==4.2.1 +jaraco-functools==4.4.0 # via keyring jeepney==0.9.0 # via # keyring # secretstorage -keyring==25.6.0 +keyring==25.7.0 # via -r requirements-dev.in mock==5.2.0 # via -r requirements-dev.in -more-itertools==10.7.0 +more-itertools==10.8.0 # via # jaraco-classes # jaraco-functools -packaging==25.0 +packaging==26.0 # via # build # pytest # wheel -pip-tools==7.4.1 +pip-tools==7.5.3 # via -r requirements-dev.in pluggy==1.6.0 # via @@ -59,28 +59,26 @@ pyproject-hooks==1.2.0 # via # build # pip-tools -pytest==8.4.1 +pytest==9.0.2 # via # -r requirements-dev.in # pytest-cov -pytest-cov==6.2.1 +pytest-cov==7.0.0 # via -r requirements-dev.in -pyyaml==6.0.2 +pyyaml==6.0.3 # via responses -requests==2.32.4 +requests==2.32.5 # via responses -responses==0.25.7 +responses==0.25.8 # via -r requirements-dev.in secretstorage==3.5.0 # via keyring -urllib3==2.5.0 +urllib3==2.6.3 # via # requests # responses -wheel==0.46.2 +wheel==0.46.3 # via pip-tools -zipp==3.23.0 - # via -r requirements-dev.in # The following packages are considered to be unsafe in a requirements file: # pip