From fd7e471d66235ab03e67ee7b27da1c5fc9e82160 Mon Sep 17 00:00:00 2001 From: "snyk-io[bot]" <141718529+snyk-io[bot]@users.noreply.github.com> Date: Sat, 7 Feb 2026 06:03:46 +0000 Subject: [PATCH] fix: distributed/FSDP/requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-ZIPP-7430899 --- distributed/FSDP/requirements.txt | 1 + 1 file changed, 1 insertion(+) diff --git a/distributed/FSDP/requirements.txt b/distributed/FSDP/requirements.txt index 15b7c2c411..04c940d6e7 100644 --- a/distributed/FSDP/requirements.txt +++ b/distributed/FSDP/requirements.txt @@ -5,3 +5,4 @@ protobuf SentencePiece aiohttp>=3.13.3 # not directly required, pinned by Snyk to avoid a vulnerability urllib3>=2.6.3 # not directly required, pinned by Snyk to avoid a vulnerability +zipp>=3.19.1 # not directly required, pinned by Snyk to avoid a vulnerability