From cc9e183662799173ffa5ab01636de33fc9351d97 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 16 Sep 2025 03:58:25 +0000 Subject: [PATCH] fix: extra/requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-TRANSFORMERS-12668722 - https://snyk.io/vuln/SNYK-PYTHON-TRANSFORMERS-12670879 --- extra/requirements.txt | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/extra/requirements.txt b/extra/requirements.txt index fb3cc0122a9b..e7a891328d42 100644 --- a/extra/requirements.txt +++ b/extra/requirements.txt @@ -4,4 +4,5 @@ google protobuf six omegaconf -compel \ No newline at end of file +compel +transformers>=4.53.0 # not directly required, pinned by Snyk to avoid a vulnerability \ No newline at end of file