From d8d530bb44a80c16905e72766e1533b82fd8a58c Mon Sep 17 00:00:00 2001 From: Li Wan Date: Thu, 9 Jan 2025 17:19:58 +1100 Subject: [PATCH] Upgrade dependencies to address security issues (#40) --- requirements/amd64-gpu-requirements.txt | 14 +++++++------- requirements/arm64-requirements.txt | 14 +++++++------- requirements/requirements.in | 12 ++++++------ 3 files changed, 20 insertions(+), 20 deletions(-) diff --git a/requirements/amd64-gpu-requirements.txt b/requirements/amd64-gpu-requirements.txt index cbeda24..97607d0 100644 --- a/requirements/amd64-gpu-requirements.txt +++ b/requirements/amd64-gpu-requirements.txt @@ -13,7 +13,7 @@ aiohttp==3.10.9 # -r requirements.in # datasets # fsspec -aiosignal==1.3.1 +aiosignal==1.3.2 # via aiohttp anyio==3.7.1 # via @@ -25,7 +25,7 @@ async-timeout==4.0.3 # via # aiohttp # redis -attrs==24.2.0 +attrs==24.3.0 # via # aiohttp # jsonschema @@ -44,7 +44,7 @@ botocore==1.28.4 # s3transfer cachetools==5.3.1 # via -r requirements.in -certifi==2019.11.28 +certifi==2023.7.22 # via # -r requirements.in # httpcore @@ -54,7 +54,7 @@ cffi==1.17.1 # via soundfile charset-normalizer==2.1.1 # via requests -click==8.1.7 +click==8.1.8 # via # nltk # uvicorn @@ -330,7 +330,7 @@ pyyaml==6.0.2 # yacs readerwriterlock==1.0.9 # via -r requirements.in -redis==4.4.2 +redis==4.4.4 # via -r requirements.in regex==2024.9.11 # via @@ -451,7 +451,7 @@ transformers==4.41.2 # multilingual-clip # optimum # sentence-transformers -typing-extensions==4.5.0 +typing-extensions==4.8.0 # via # -r requirements.in # huggingface-hub @@ -465,7 +465,7 @@ typing-extensions==4.5.0 # torch # torchvision # uvicorn -urllib3==1.26.16 +urllib3==1.26.17 # via # -r requirements.in # botocore diff --git a/requirements/arm64-requirements.txt b/requirements/arm64-requirements.txt index 42f02d8..56f272f 100644 --- a/requirements/arm64-requirements.txt +++ b/requirements/arm64-requirements.txt @@ -13,7 +13,7 @@ aiohttp==3.10.9 # -r requirements.in # datasets # fsspec -aiosignal==1.3.1 +aiosignal==1.3.2 # via aiohttp anyio==3.7.1 # via @@ -25,7 +25,7 @@ async-timeout==4.0.3 # via # aiohttp # redis -attrs==24.2.0 +attrs==24.3.0 # via # aiohttp # jsonschema @@ -44,7 +44,7 @@ botocore==1.28.4 # s3transfer cachetools==5.3.1 # via -r requirements.in -certifi==2019.11.28 +certifi==2023.7.22 # via # -r requirements.in # httpcore @@ -54,7 +54,7 @@ cffi==1.17.1 # via soundfile charset-normalizer==2.1.1 # via requests -click==8.1.7 +click==8.1.8 # via # nltk # uvicorn @@ -318,7 +318,7 @@ pyyaml==6.0.2 # yacs readerwriterlock==1.0.9 # via -r requirements.in -redis==4.4.2 +redis==4.4.4 # via -r requirements.in regex==2024.9.11 # via @@ -438,7 +438,7 @@ transformers==4.41.2 # multilingual-clip # optimum # sentence-transformers -typing-extensions==4.5.0 +typing-extensions==4.8.0 # via # -r requirements.in # huggingface-hub @@ -452,7 +452,7 @@ typing-extensions==4.5.0 # torch # torchvision # uvicorn -urllib3==1.26.16 +urllib3==1.26.17 # via # -r requirements.in # botocore diff --git a/requirements/requirements.in b/requirements/requirements.in index 4810fd6..e57405d 100644 --- a/requirements/requirements.in +++ b/requirements/requirements.in @@ -4,7 +4,7 @@ fastapi==0.86.0 uvicorn==0.31.0 fastapi-utils==0.2.1 jsonschema==4.17.1 -redis==4.4.2 +redis==4.4.4 more_itertools==10.4.0 boto3==1.25.4 botocore==1.28.4 @@ -25,11 +25,11 @@ psutil==5.9.4 multilingual-clip==1.0.10 safetensors==0.4.1 flatbuffers==23.5.9 -certifi==2019.11.28 +certifi==2023.7.22 idna==2.8 six==1.14.0 -typing-extensions==4.5.0 -urllib3==1.26.16 +typing-extensions==4.8.0 +urllib3==1.26.17 timm==1.0.8 transformers==4.41.2 einops==0.6.1 @@ -50,6 +50,7 @@ kazoo==2.10.0 pycurl==7.45.3 huggingface-hub==0.25.0 jinja2==3.1.4 +hf-transfer==0.1.8 # AMD Specific packages --extra-index-url https://download.pytorch.org/whl/cu113 @@ -96,5 +97,4 @@ watchfiles==0.24.0 websockets==13.1 zipp==3.20.2 yarl==1.13.1 -portalocker==2.10.1 -hf-transfer==0.1.8 \ No newline at end of file +portalocker==2.10.1 \ No newline at end of file