From 8470f18b32bf696541d7801b6d79d951e14c71d9 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sun, 11 Jan 2026 01:08:35 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14871873 - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14871876 - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14871877 - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14871888 - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14871929 - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14871954 - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14871979 - https://snyk.io/vuln/SNYK-PYTHON-AIOHTTP-14872000 - https://snyk.io/vuln/SNYK-PYTHON-TORCH-13052805 - https://snyk.io/vuln/SNYK-PYTHON-URLLIB3-14896210 --- requirements.txt | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/requirements.txt b/requirements.txt index be19810..8c3566b 100644 --- a/requirements.txt +++ b/requirements.txt @@ -1,5 +1,5 @@ accelerate==0.19.0 -aiohttp==3.8.5 +aiohttp==3.13.3 aiosignal==1.3.1 appdirs==1.4.4 async-timeout==4.0.2 @@ -64,7 +64,7 @@ smmap==5.0.0 sympy==1.12 threadpoolctl==3.1.0 tokenizers==0.13.3 -torch==2.0.1 +torch==2.9.0 torchaudio==2.0.2 torchvision==0.15.2 tqdm==4.65.0 @@ -73,7 +73,7 @@ triton==2.0.0 typing-inspect==0.8.0 typing_extensions==4.6.1 tzdata==2023.3 -urllib3==1.26.16 +urllib3==2.6.3 wandb==0.15.3 xformers==0.0.20 xxhash==3.2.0