From dc1ca08b4afd8befbab587281bda5546e8175d57 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 5 Feb 2026 13:39:58 +0000 Subject: [PATCH 1/2] fix: requirements/production.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-15183335 --- requirements/production.txt | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/requirements/production.txt b/requirements/production.txt index 45d0df88b..5b823d1d6 100644 --- a/requirements/production.txt +++ b/requirements/production.txt @@ -14,4 +14,5 @@ setuptools>=68.2.2 # not directly required, pinned by Snyk to avoid a vulnerabil # Elastic-APM # https://pypi.org/project/elastic-apm/ # ------------------------------------------------------------------------------ -elastic-apm==6.21.4.post8347027212 \ No newline at end of file +elastic-apm==6.21.4.post8347027212 +django>=4.2.28 # not directly required, pinned by Snyk to avoid a vulnerability \ No newline at end of file From dc0581099efb983a2b3b3e921fd842d048662407 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sun, 8 Feb 2026 10:11:18 +0000 Subject: [PATCH 2/2] fix: requirements/production.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-DJANGO-15183335