airbytehq / airbyte

The leading data integration platform for ETL / ELT data pipelines from APIs, databases & files to data warehouses, data lakes & data lakehouses. Both self-hosted and Cloud-hosted.
https://airbyte.com
Other
16.05k stars 4.11k forks source link

[airbyte-cd] upgrade nltk package `>3.8.1` #45121

Open XRFate opened 2 months ago

XRFate commented 2 months ago

Topic

package dependencies

Relevant information

i am using llama-index-core. the package conflicted with nltk's version. nltk update currently airbyte-cdk locked at 3.8.1 please upgrade to enable more features and compatibility with other repos

marcosmarxm commented 2 months ago

Thanks for reporting the issue @XRFate. The issue was included in the backlog but won't be prioritized right now.

wallies commented 1 month ago

I don't understand how this isn't prioritised higher when you are locking to a critical vulnerable version https://github.com/nltk/nltk/issues/3266 https://github.com/advisories/GHSA-cgvx-9447-vcch