From 031ea0254fcded02d7fa3a0f08479cd64e98be77 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sat, 31 Jan 2026 01:54:40 +0000 Subject: [PATCH] fix: requirements.txt to reduce vulnerabilities The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-PROTOBUF-15090738 - https://snyk.io/vuln/SNYK-PYTHON-TORCH-15123585 --- requirements.txt | 5 +++-- 1 file changed, 3 insertions(+), 2 deletions(-) diff --git a/requirements.txt b/requirements.txt index 7e1950a0..73a1ac93 100644 --- a/requirements.txt +++ b/requirements.txt @@ -9,9 +9,10 @@ requests scikit-image scipy tb-nightly -torch>=1.7.1 +torch>=2.10.0 torchvision tqdm yapf lpips -gdown # supports downloading the large file from Google Drive \ No newline at end of file +gdown # supports downloading the large file from Google Drive +protobuf>=6.33.5 # not directly required, pinned by Snyk to avoid a vulnerability \ No newline at end of file