Commit 53ced64
[3PRe] [Thorough review needed] Fix vulnerability- pypi/upgrade transformers reference from 3.4.0-transitional (vuln) to 4.41.2 (less vuln)
Summary:
The 3P Library Vulnerability Remediation Team is dedicated to remediating high-risk external libraries at Meta using both manual and automated processes. Older versions of this library have been identified as risky, and this diff stack is intended to upgrade the library to a recommended version.
-----------
We kindly request your help with the diff review. Please commandeer this diff stack if specific merges need to be added or if there are any build or dependency failures.
-----------
General change:
1. Update library reference to old library to newer version in bzl
2. Update import reference to old library to the newer version in actual codes
________________
TPMS:
https://fburl.com/third_party_metadata/e12wxl9w
Vulnerability Information:
CVE-2023-2800 ( cvss3=4.7 ) https://www.internalfb.com/intern/vulnerability_management/vulnerabilities/CVE-2023-2800
CVE-2023-6730 ( cvss3=8.8 ) https://www.internalfb.com/intern/vulnerability_management/vulnerabilities/CVE-2023-6730
CVE-2023-7018 ( cvss3=7.8 ) https://www.internalfb.com/intern/vulnerability_management/vulnerabilities/CVE-2023-7018
CVE-2024-11392 ( cvss3=8.8 ) https://www.internalfb.com/intern/vulnerability_management/vulnerabilities/CVE-2024-11392
CVE-2024-11393 ( cvss3=8.8 ) https://www.internalfb.com/intern/vulnerability_management/vulnerabilities/CVE-2024-11393
CVE-2024-11394 ( cvss3=8.8 ) https://www.internalfb.com/intern/vulnerability_management/vulnerabilities/CVE-2024-11394
CVE-2024-3568 ( cvss3=3.4 ) https://www.internalfb.com/intern/vulnerability_management/vulnerabilities/CVE-2024-3568
SNYK-PYTHON-TRANSFORMERS-3092483 ( cvss3=5.4 ) https://www.internalfb.com/intern/vulnerability_management/vulnerabilities/SNYK-PYTHON-TRANSFORMERS-3092483
SNYK-PYTHON-TRANSFORMERS-6220003 ( cvss3=6.5 ) https://www.internalfb.com/intern/vulnerability_management/vulnerabilities/SNYK-PYTHON-TRANSFORMERS-6220003
Reviewed By: ebsmothers
Differential Revision: D71058400
fbshipit-source-id: 77a291aea93f46340ce2dc1e4b8e8845c377f3f51 parent 3c541ee commit 53ced64
1 file changed
+6
-6
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
8 | 8 | | |
9 | 9 | | |
10 | 10 | | |
11 | | - | |
| 11 | + | |
| 12 | + | |
12 | 13 | | |
13 | 14 | | |
14 | 15 | | |
| |||
18 | 19 | | |
19 | 20 | | |
20 | 21 | | |
21 | | - | |
| 22 | + | |
22 | 23 | | |
23 | 24 | | |
24 | 25 | | |
25 | 26 | | |
26 | 27 | | |
27 | 28 | | |
28 | 29 | | |
29 | | - | |
30 | 30 | | |
31 | | - | |
| 31 | + | |
| 32 | + | |
32 | 33 | | |
33 | 34 | | |
34 | 35 | | |
| |||
38 | 39 | | |
39 | 40 | | |
40 | 41 | | |
41 | | - | |
| 42 | + | |
42 | 43 | | |
43 | 44 | | |
44 | 45 | | |
45 | 46 | | |
46 | 47 | | |
47 | 48 | | |
48 | 49 | | |
49 | | - | |
50 | 50 | | |
51 | 51 | | |
52 | 52 | | |
| |||
0 commit comments