segment-any-text / wtpsplit

Toolkit to segment text into sentences or other semantic units in a robust, efficient and adaptable way.
MIT License
667 stars 39 forks source link

Security: update version of tract-onnx #50

Closed cjrh closed 3 years ago

cjrh commented 3 years ago

This security vulnerability:

https://rustsec.org/advisories/RUSTSEC-2021-0073.html

is fixed in prost==0.8.0, which is included in a recent new release of tract-onnx: https://github.com/sonos/tract/releases/tag/0.15.2

Would it be possible to do a new release with the tract-onnx dependency bumped?

bminixhofer commented 3 years ago

Hi, thanks for letting me know! I'll bump it, and take that opportunity to implement https://github.com/bminixhofer/nnsplit/issues/30#issuecomment-853590478 since the required changes are released now.

bminixhofer commented 3 years ago

I was on holiday last week. Back now and as of v0.5.8 this is fixed!