Skip to content

Bump Ray to Fix Security Issue#1181

Merged
karanataryn merged 3 commits into
mainfrom
ksampath/bump-ray
Feb 13, 2025
Merged

Bump Ray to Fix Security Issue#1181
karanataryn merged 3 commits into
mainfrom
ksampath/bump-ray

Conversation

@karanataryn
Copy link
Copy Markdown
Contributor

Fixes issue here: https://github.com/aryn-ai/sycamore/security/dependabot/337. Also had to change apps/jupyter sycamore dependencies a bit to get locking to work.

@karanataryn karanataryn requested a review from HenryL27 February 13, 2025 17:21
Copy link
Copy Markdown
Collaborator

@HenryL27 HenryL27 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I think this is right? Little worried about rich.

Comment thread poetry.lock
Copy link
Copy Markdown
Collaborator

@HenryL27 HenryL27 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Actually it looks like dropping rich killed the integ tests

@karanataryn karanataryn requested a review from HenryL27 February 13, 2025 18:02
@karanataryn karanataryn merged commit 27f135d into main Feb 13, 2025
@karanataryn karanataryn deleted the ksampath/bump-ray branch February 13, 2025 20:00
austintlee pushed a commit that referenced this pull request Feb 14, 2025
* bump ray

* fix rich

* bump runner
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants