From d8d530bb44a80c16905e72766e1533b82fd8a58c Mon Sep 17 00:00:00 2001
From: Li Wan
Date: Thu, 9 Jan 2025 17:19:58 +1100
Subject: [PATCH] Upgrade dependencies to address security issues (#40)
---
requirements/amd64-gpu-requirements.txt | 14 +++++++-------
requirements/arm64-requirements.txt | 14 +++++++-------
requirements/requirements.in | 12 ++++++------
3 files changed, 20 insertions(+), 20 deletions(-)
diff --git a/requirements/amd64-gpu-requirements.txt b/requirements/amd64-gpu-requirements.txt
index cbeda24..97607d0 100644
--- a/requirements/amd64-gpu-requirements.txt
+++ b/requirements/amd64-gpu-requirements.txt
@@ -13,7 +13,7 @@ aiohttp==3.10.9
# -r requirements.in
# datasets
# fsspec
-aiosignal==1.3.1
+aiosignal==1.3.2
# via aiohttp
anyio==3.7.1
# via
@@ -25,7 +25,7 @@ async-timeout==4.0.3
# via
# aiohttp
# redis
-attrs==24.2.0
+attrs==24.3.0
# via
# aiohttp
# jsonschema
@@ -44,7 +44,7 @@ botocore==1.28.4
# s3transfer
cachetools==5.3.1
# via -r requirements.in
-certifi==2019.11.28
+certifi==2023.7.22
# via
# -r requirements.in
# httpcore
@@ -54,7 +54,7 @@ cffi==1.17.1
# via soundfile
charset-normalizer==2.1.1
# via requests
-click==8.1.7
+click==8.1.8
# via
# nltk
# uvicorn
@@ -330,7 +330,7 @@ pyyaml==6.0.2
# yacs
readerwriterlock==1.0.9
# via -r requirements.in
-redis==4.4.2
+redis==4.4.4
# via -r requirements.in
regex==2024.9.11
# via
@@ -451,7 +451,7 @@ transformers==4.41.2
# multilingual-clip
# optimum
# sentence-transformers
-typing-extensions==4.5.0
+typing-extensions==4.8.0
# via
# -r requirements.in
# huggingface-hub
@@ -465,7 +465,7 @@ typing-extensions==4.5.0
# torch
# torchvision
# uvicorn
-urllib3==1.26.16
+urllib3==1.26.17
# via
# -r requirements.in
# botocore
diff --git a/requirements/arm64-requirements.txt b/requirements/arm64-requirements.txt
index 42f02d8..56f272f 100644
--- a/requirements/arm64-requirements.txt
+++ b/requirements/arm64-requirements.txt
@@ -13,7 +13,7 @@ aiohttp==3.10.9
# -r requirements.in
# datasets
# fsspec
-aiosignal==1.3.1
+aiosignal==1.3.2
# via aiohttp
anyio==3.7.1
# via
@@ -25,7 +25,7 @@ async-timeout==4.0.3
# via
# aiohttp
# redis
-attrs==24.2.0
+attrs==24.3.0
# via
# aiohttp
# jsonschema
@@ -44,7 +44,7 @@ botocore==1.28.4
# s3transfer
cachetools==5.3.1
# via -r requirements.in
-certifi==2019.11.28
+certifi==2023.7.22
# via
# -r requirements.in
# httpcore
@@ -54,7 +54,7 @@ cffi==1.17.1
# via soundfile
charset-normalizer==2.1.1
# via requests
-click==8.1.7
+click==8.1.8
# via
# nltk
# uvicorn
@@ -318,7 +318,7 @@ pyyaml==6.0.2
# yacs
readerwriterlock==1.0.9
# via -r requirements.in
-redis==4.4.2
+redis==4.4.4
# via -r requirements.in
regex==2024.9.11
# via
@@ -438,7 +438,7 @@ transformers==4.41.2
# multilingual-clip
# optimum
# sentence-transformers
-typing-extensions==4.5.0
+typing-extensions==4.8.0
# via
# -r requirements.in
# huggingface-hub
@@ -452,7 +452,7 @@ typing-extensions==4.5.0
# torch
# torchvision
# uvicorn
-urllib3==1.26.16
+urllib3==1.26.17
# via
# -r requirements.in
# botocore
diff --git a/requirements/requirements.in b/requirements/requirements.in
index 4810fd6..e57405d 100644
--- a/requirements/requirements.in
+++ b/requirements/requirements.in
@@ -4,7 +4,7 @@ fastapi==0.86.0
uvicorn==0.31.0
fastapi-utils==0.2.1
jsonschema==4.17.1
-redis==4.4.2
+redis==4.4.4
more_itertools==10.4.0
boto3==1.25.4
botocore==1.28.4
@@ -25,11 +25,11 @@ psutil==5.9.4
multilingual-clip==1.0.10
safetensors==0.4.1
flatbuffers==23.5.9
-certifi==2019.11.28
+certifi==2023.7.22
idna==2.8
six==1.14.0
-typing-extensions==4.5.0
-urllib3==1.26.16
+typing-extensions==4.8.0
+urllib3==1.26.17
timm==1.0.8
transformers==4.41.2
einops==0.6.1
@@ -50,6 +50,7 @@ kazoo==2.10.0
pycurl==7.45.3
huggingface-hub==0.25.0
jinja2==3.1.4
+hf-transfer==0.1.8
# AMD Specific packages
--extra-index-url https://download.pytorch.org/whl/cu113
@@ -96,5 +97,4 @@ watchfiles==0.24.0
websockets==13.1
zipp==3.20.2
yarl==1.13.1
-portalocker==2.10.1
-hf-transfer==0.1.8
\ No newline at end of file
+portalocker==2.10.1
\ No newline at end of file