SAP-archive / contextual-ai

Contextual AI adds explainability to different stages of machine learning pipelines - data, training, and inference - thereby addressing the trust gap between such ML systems and their users. It does not refer to a specific algorithm or ML method — instead, it takes a human-centric view and approach to AI.
https://contextual-ai.readthedocs.io/en/latest
Apache License 2.0
86 stars 12 forks source link

Upgrade Pillow to version 7.1.0 #12

Closed postalC closed 4 years ago

postalC commented 4 years ago

@seansaito @wangjin1024 please review and merge, thanks

Security advisory

Security advisory GHSA-43fq-w8qq-v88h (moderate severity https://github.com/SAP/contextual-ai/network/alert/requirements.txt/Pillow/open

Screen Shot 2020-07-28 at 10 15 55 AM

Remediation

Upgrade Pillow to version 7.1.0 or later. For example:

Pillow>=7.1.0
CLAassistant commented 4 years ago

CLA assistant check
All committers have signed the CLA.

seansaito commented 4 years ago

Looks good, thanks @postalC