Skip to content

Conversation

@farah-shadid
Copy link
Contributor

Pinned Transformers Version to 4.53.2

Description

Types of change

Checklist

  • I confirm that I have the right to submit this contribution under the project's MIT license.
  • I ran the tests, and all new and existing tests passed.
  • My changes don't require a change to the documentation, or if they do, I've added all required information.

@tkilias
Copy link

tkilias commented Aug 14, 2025

@farah-shadid Thank you for this PR. Should we maybe open an issue in https://github.com/explosion/spaCy to inform the maintainer about it?

@tkilias
Copy link

tkilias commented Aug 26, 2025

@farah-shadid it seems someone triggered the CI. Does this mean you can merge, or do you need to wait for an approval?

@farah-shadid
Copy link
Contributor Author

I can't merge for some reason

@tkilias
Copy link

tkilias commented Aug 27, 2025

@farah-shadid I will ask in the linked ticket if someone can help.

@gusfelhberg
Copy link

Hi all! First of all, great work with this library! Any estimate to merge this PR? transformers has some known high-risk vulnerabilities that are fixed on >=4.53:
https://nvd.nist.gov/vuln/detail/CVE-2025-6921
https://nvd.nist.gov/vuln/detail/CVE-2024-11394
https://nvd.nist.gov/vuln/detail/CVE-2024-11393
https://nvd.nist.gov/vuln/detail/CVE-2024-11392
https://nvd.nist.gov/vuln/detail/CVE-2025-2099
besides a few more medium and low risk ones.
Thanks a lot!

@honnibal honnibal merged commit bf2fe03 into explosion:master Nov 7, 2025
@honnibal
Copy link
Member

honnibal commented Nov 7, 2025

Thanks for this! Releasing now.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants