Skip to content

Commit

Permalink
fix CVE - bionemo1 (#662)
Browse files Browse the repository at this point in the history
### Description
Fixing vulnerabilities found by CVE for `bionemo1`


usr/local/lib/python3.10/dist-packages/urllib3 (fixed in:
1.26.17)(GHSA-v845-jxx5-vc9f)
            
/usr/local/lib/python3.10/dist-packages/tornado (fixed in:
6.4.2)(GHSA-8w49-h785-mj3c)


### Type of changes
<!-- Mark the relevant option with an [x] -->

- [x]  Bug fix (non-breaking change which fixes an issue)
- [ ]  New feature (non-breaking change which adds functionality)
- [ ]  Refactor
- [ ]  Documentation update
- [ ]  Other (please describe):

### CI Pipeline Configuration
Configure CI behavior by applying the relevant labels:

-
[SKIP_CI](https://github.com/NVIDIA/bionemo-framework/blob/main/docs/docs/user-guide/contributing/contributing.md#skip_ci)
- Skip all continuous integration tests
-
[INCLUDE_NOTEBOOKS_TESTS](https://github.com/NVIDIA/bionemo-framework/blob/main/docs/docs/user-guide/contributing/contributing.md#include_notebooks_tests)
- Execute notebook validation tests in pytest
-
[INCLUDE_SLOW_TESTS](https://github.com/NVIDIA/bionemo-framework/blob/main/docs/docs/user-guide/contributing/contributing.md#include_slow_tests)
- Execute tests labelled as slow in pytest for extensive testing


> [!NOTE]
> By default, the notebooks validation tests are skipped unless
explicitly enabled.

### Usage
<!--- How does a user interact with the changed code -->
```python
TODO: Add code snippet
```

### Pre-submit Checklist
<!--- Ensure all items are completed before submitting -->

 - [x] I have tested these changes locally
 - [ ] I have updated the documentation accordingly
 - [ ] I have added/updated tests as needed
 - [ ] All existing tests pass successfully

---------

Signed-off-by: Dorota Toczydlowska <[email protected]>
  • Loading branch information
dorotat-nv authored Jan 27, 2025
1 parent ae08d40 commit 3007c97
Show file tree
Hide file tree
Showing 2 changed files with 2 additions and 1 deletion.
1 change: 1 addition & 0 deletions setup/requirements-cve.txt
Original file line number Diff line number Diff line change
Expand Up @@ -13,3 +13,4 @@ setuptools>=70.0.0
nltk>=3.9.1
aiohttp>=3.9.4
Werkzeug>=3.0.3
tornado>=6.4.2
2 changes: 1 addition & 1 deletion setup/requirements.txt
Original file line number Diff line number Diff line change
Expand Up @@ -9,7 +9,7 @@ pyfastx==1.1.0
# matplotlib>=3.4.3
matplotlib==3.8.0
rdkit==2023.9.5
urllib3==1.26.16
urllib3==1.26.17
ijson==3.2.3
wandb==0.15.6
einops==0.6.1
Expand Down

0 comments on commit 3007c97

Please sign in to comment.