diff --git a/requirements.txt b/requirements.txt
index 0c34aafd..79193cab 100644
--- a/requirements.txt
+++ b/requirements.txt
@@ -4,3 +4,4 @@ python-http-client>=3.2.1
 six==1.11.0
 starkbank-ecdsa>=2.0.1
 more-itertools==5.0.0
+werkzeug>=2.2.3 # not directly required, pinned by Snyk to avoid a vulnerability