Skip to content

Commit e1d8d0b

Browse files
committed
Deliberately downgrade to vulnerable versions
Demonstrating SCA capabilities in a demo app. Flask and Jinja2 in those versions have known CVEs
1 parent fb84407 commit e1d8d0b

File tree

1 file changed

+3
-3
lines changed

1 file changed

+3
-3
lines changed

requirements.txt

+3-3
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,6 @@
11
click==7.1.2
2-
Flask==1.1.2
2+
Flask==0.12.5
33
itsdangerous==1.1.0
4-
Jinja2==2.11.3
4+
Jinja2==2.8
55
MarkupSafe==1.1.1
6-
Werkzeug==1.0.1
6+
Werkzeug==0.16.1

0 commit comments

Comments
 (0)