Skip to content

Commit b263ea8

Browse files
authored
Merge pull request #96 from ansible/vulnerability/AAP-44787
AAP-44787 - CVE-2025-43859
2 parents fbfbc0e + b3d768a commit b263ea8

File tree

3 files changed

+89
-73
lines changed

3 files changed

+89
-73
lines changed

pdm.lock

Lines changed: 46 additions & 34 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

pyproject.toml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -135,6 +135,7 @@ dependencies = [
135135
"virtualenv==20.28.0",
136136
"msgpack==1.1.0",
137137
"llama-index-vector-stores-postgres>=0.4.0",
138+
"h11>=0.16.0",
138139
]
139140
requires-python = ">=3.11.1,<=3.12.8"
140141
readme = "README.md"

requirements.txt

Lines changed: 42 additions & 39 deletions
Original file line numberDiff line numberDiff line change
@@ -42,6 +42,9 @@ aiolimiter==1.2.1 \
4242
aiosignal==1.3.2 \
4343
--hash=sha256:45cde58e409a301715980c2b01d0c28bdde3770d8290b5eb2173759d9acb31a5 \
4444
--hash=sha256:a8c255c66fafb1e499c9351d0bf32ff2d8a0321595ebac3b93713656d2436f54
45+
aiosqlite==0.21.0 \
46+
--hash=sha256:131bb8056daa3bc875608c631c678cda73922a2d4ba8aec373b19f18c17e7aa3 \
47+
--hash=sha256:2549cf4057f95f53dcba16f2b64e8e2791d7e1adedb13197dd8ed77bb226d7d0
4548
annotated-types==0.7.0 \
4649
--hash=sha256:1f02e8b43a8fbbc3f3e0d4f0f4bfc8131bcb4eebe8849b8e5c773f3a1c582a53 \
4750
--hash=sha256:aff07c09a53a08bc8cfccb9c85b05f1aa9a2a6f23728d790723543408344ce89
@@ -286,15 +289,15 @@ greenlet==3.1.1 \
286289
griffe==1.7.2 \
287290
--hash=sha256:1ed9c2e338a75741fc82083fe5a1bc89cb6142efe126194cc313e34ee6af5423 \
288291
--hash=sha256:98d396d803fab3b680c2608f300872fd57019ed82f0672f5b5323a9ad18c540c
289-
h11==0.14.0 \
290-
--hash=sha256:8f19fbbe99e72420ff35c00b27a34cb9937e902a8b810e2c88300c6f0a3b699d \
291-
--hash=sha256:e3fe4ac4b851c468cc8363d500db52c2ead036020723024a109d37346efaa761
292+
h11==0.16.0 \
293+
--hash=sha256:4e35b956cf45792e4caa5885e69fba00bdbc6ffafbfa020300e549b208ee5ff1 \
294+
--hash=sha256:63cf8bbe7522de3bf65932fda1d9c2772064ffb3dae62d55932da54b31cb6c86
292295
hishel==0.1.1 \
293296
--hash=sha256:1f6421b78cc23fc43c610f651b7848c9b8eee2d29551d64a2ab0d45b319b6559 \
294297
--hash=sha256:5b51acc340303faeef2f5cfc1658acb1db1fdc3e3ad76406265a485f9707c5d6
295-
httpcore==1.0.7 \
296-
--hash=sha256:8551cb62a169ec7162ac7be8d4817d561f60e08eaa485234898414bb5a8a0b4c \
297-
--hash=sha256:a3fff8f43dc260d5bd363d9f9cf1830fa3a458b332856f34282de498ed420edd
298+
httpcore==1.0.9 \
299+
--hash=sha256:2d400746a40668fc9dec9810239072b40b4484b640a8c38fd654a024c7a1bf55 \
300+
--hash=sha256:6e34463af53fd2ab5d807f399a9b45ea31c3dfa2276f15a2c3f00afff6e176e8
298301
httpx-sse==0.4.0 \
299302
--hash=sha256:1e81a3a3070ce322add1d3529ed42eb5f70817f45ed6ec915ab753f961139721 \
300303
--hash=sha256:f329af6eae57eaa2bdfd962b42524764af68075ea87370a2de920af5341e318f
@@ -313,9 +316,9 @@ ibm-cos-sdk-s3transfer==2.13.6 \
313316
ibm-generative-ai==3.0.0 \
314317
--hash=sha256:0d86297371a5bb7c41d143a8c770e068f37489b5ca88e6bd56dca61a4f6dc1a8 \
315318
--hash=sha256:e0c39a5c84356f7408de31988ee055349a4ab7ec7030f313fa1c19d76b2b6d85
316-
ibm-watsonx-ai==1.3.3 \
317-
--hash=sha256:b52f3404219e6fa887672c8ba37145a07fd197e2b87bfbfeeb09a24562dd02d8 \
318-
--hash=sha256:f0dd9aadd5b94085b6e22251aafebdd7b5bf1865a7e8c4dca50951c1e89e8e21
319+
ibm-watsonx-ai==1.3.13 \
320+
--hash=sha256:6aea90c592f4bc1afe8231fe18e308fe820c3fb85eb347915d40e85623302b10 \
321+
--hash=sha256:79cbffba0c60614dcb84b235526ffe9473eaa75b3a1500e0eee531c77335b527
319322
idna==3.10 \
320323
--hash=sha256:12f65c9b470abda6dc35cf8e63cc574b1c52b11df2c86030af0ac09b01b13ea9 \
321324
--hash=sha256:946d195a0d259cbba61165e88e65941f16e9b36ea6ddb97f00452bae8b1287d3
@@ -366,42 +369,42 @@ jsonpointer==3.0.0 \
366369
kubernetes==30.1.0 \
367370
--hash=sha256:41e4c77af9f28e7a6c314e3bd06a8c6229ddd787cad684e0ab9f69b498e98ebc \
368371
--hash=sha256:e212e8b7579031dd2e512168b617373bc1e03888d41ac4e04039240a292d478d
369-
langchain==0.3.12 \
370-
--hash=sha256:0d8247afbf37beb263b4adc29f7aa8a5ae83c43a6941894e2f9ba39d5c869e3b \
371-
--hash=sha256:581ad93a9de12e4b957bc2af9ba8482eb86e3930e84c4ee20ed677da5e2311cd
372-
langchain-community==0.3.5 \
373-
--hash=sha256:03736105700960fa0acbd72bff678d1c97c49e38e9f8af3012b712d64e992982 \
374-
--hash=sha256:345febbc972a08c97f09cce6cc07d039aa7d1348fe8efdace85335be6ac9cb7d
375-
langchain-core==0.3.31 \
376-
--hash=sha256:5ffa56354c07de9efaa4139609659c63e7d9b29da2c825f6bab9392ec98300df \
377-
--hash=sha256:882e64ad95887c951dce8e835889e43263b11848c394af3b73e06912624bd743
378-
langchain-ibm==0.3.6 \
379-
--hash=sha256:419fcb29d7b1665cfa02828ac14b9f55ec4a885bd3ba0284f054df32f09cffca \
380-
--hash=sha256:447c9c5ab4375ea1259277fa9a207cf10087e15c0dcf61b27afb9d068e494b9f
381-
langchain-openai==0.2.9 \
382-
--hash=sha256:2723015e56879f9e5edfcb175fdbec6c296c1b3bf65caad28579ce9c4d1bd652 \
383-
--hash=sha256:38a0f2004f17cdad622d46d4dcfb92d75adbf51909dadc76d0360dd94b0d4f70
384-
langchain-text-splitters==0.3.5 \
385-
--hash=sha256:11cb7ca3694e5bdd342bc16d3875b7f7381651d4a53cbb91d34f22412ae16443 \
386-
--hash=sha256:8c9b059827438c5fa8f327b4df857e307828a5ec815163c9b5c9569a3e82c8ee
372+
langchain==0.3.25 \
373+
--hash=sha256:931f7d2d1eaf182f9f41c5e3272859cfe7f94fc1f7cef6b3e5a46024b4884c21 \
374+
--hash=sha256:a1d72aa39546a23db08492d7228464af35c9ee83379945535ceef877340d2a3a
375+
langchain-community==0.3.24 \
376+
--hash=sha256:62d9e8cf9aadf35182ec3925f9ec1c8e5e84fb4f199f67a01aee496d289dc264 \
377+
--hash=sha256:b6cdb376bf1c2f4d2503aca20f8f35f2d5b3d879c52848277f20ce1950e7afaf
378+
langchain-core==0.3.59 \
379+
--hash=sha256:052a37cf298c505144f007e5aeede6ecff2dc92c827525d1ef59101eb3a4551c \
380+
--hash=sha256:9686baaff43f2c8175535da13faf40e6866769015e93130c3c1e4243e7244d70
381+
langchain-ibm==0.3.10 \
382+
--hash=sha256:a3023903b8b094fe0226c1e3dafb348ed60caf537415ebea9bdf4ceebc6cd4ad \
383+
--hash=sha256:a7c6026879e47f069f7831d5d0cc39a97ae9cf4f75752cbf9b7102cf5ad23fa2
384+
langchain-openai==0.3.16 \
385+
--hash=sha256:4e423e39d072f1432adc9430f2905fe635cc019f01ad1bdffa5ed8d0dda32149 \
386+
--hash=sha256:eae74a6758d38a26159c5fde5abf8ef313e6400efb01a08f12dd7410c9f4fd0f
387+
langchain-text-splitters==0.3.8 \
388+
--hash=sha256:116d4b9f2a22dda357d0b79e30acf005c5518177971c66a9f1ab0edfdb0f912e \
389+
--hash=sha256:e75cc0f4ae58dcf07d9f18776400cf8ade27fadd4ff6d264df6278bb302f6f02
387390
langsmith==0.1.147 \
388391
--hash=sha256:2e933220318a4e73034657103b3b1a3a6109cc5db3566a7e8e03be8d6d7def7a \
389392
--hash=sha256:7166fc23b965ccf839d64945a78e9f1157757add228b086141eb03a60d699a15
390393
llama-cloud==0.1.10 \
391394
--hash=sha256:56ffe8f2910c2047dd4eb1b13da31ee5f67321a000794eee559e0b56954d2f76 \
392395
--hash=sha256:d91198ad92ea6c3a25757e5d6cb565b4bd6db385dc4fa596a725c0fb81a68f4e
393-
llama-index==0.12.28 \
394-
--hash=sha256:11f2e4bd25a9b9e2a6a0ff326b4336af10a62433d1b13ec1831debcff31a1ac8 \
395-
--hash=sha256:e5e422a54cf4a7ee38a2c4ffacbd0c34a33bd57df993dad1213544e47b8fffec
396+
llama-index==0.12.35 \
397+
--hash=sha256:6a64748d92edd0e4474e72c69f967d1105c25a2513c8c2f06560481814b0f27e \
398+
--hash=sha256:86c6e070705febec56f4fd96d30467bce134f7af0f1ba38287e7e30f2b7a239d
396399
llama-index-agent-openai==0.4.1 \
397400
--hash=sha256:162507543082f739a8c806911344c8d7f2434d0ee91124cfdd7b0ba5f76d0e57 \
398401
--hash=sha256:3a89137b228a6e9c2b3f46e367a27b75fb31b458e21777bba819de654707d59e
399402
llama-index-cli==0.4.1 \
400403
--hash=sha256:3f97f1f8f5f401dfb5b6bc7170717c176dcd981538017430073ef12ffdcbddfa \
401404
--hash=sha256:6dfc931aea5b90c256e476b48dfac76f48fb2308fdf656bb02ee1e4f2cab8b06
402-
llama-index-core==0.12.28 \
403-
--hash=sha256:9bd24224bd57dd5e97bb0a2550f31f6c08b7dc396305f35bbe9714d17b1409a6 \
404-
--hash=sha256:bf4a9697525e1294855d2df5c3a56b9720c185cde0eae2da713e7629c456c643
405+
llama-index-core==0.12.35 \
406+
--hash=sha256:19db7b5ac22012d8c240efe9b3b8b59cbab4002adbe70d915840781f30453f3d \
407+
--hash=sha256:6b03747aafb01582c286f2cd76385c82350245b21037a3984241a6c2fb884525
405408
llama-index-embeddings-huggingface==0.4.0 \
406409
--hash=sha256:a5890bab349b118398054138b298a9e429776b85bcf8017fdf01cd5d60fbba12 \
407410
--hash=sha256:ce8f8b30b29cff85401aba2118285fb63fb8147a56b656ee20f7e8510ca085a2
@@ -432,9 +435,9 @@ llama-index-readers-llama-parse==0.4.0 \
432435
llama-index-vector-stores-faiss==0.3.0 \
433436
--hash=sha256:2148163dba1222c855bd367a7b796bc35d46dc2e77d57bafd321ba14aac00177 \
434437
--hash=sha256:c9df99dd00fe7058606ef4fce113535fa30b73edd650136be87c9b5b240df3f9
435-
llama-index-vector-stores-postgres==0.4.2 \
436-
--hash=sha256:4719a5c1cc4f9aa73820bcc6d35d763e9d7af7ad0b6dfdb5d776836af0ea0e00 \
437-
--hash=sha256:e99a02bf7d92934ac737445fef7e1c064b3c0e8dfc80ea0cf84bdb9dac209332
438+
llama-index-vector-stores-postgres==0.5.3 \
439+
--hash=sha256:3f8827fb59a6e26f226a1ec5d7201b326f7e7007f2b7e58ac47e0972afbd3b69 \
440+
--hash=sha256:bd002d8c0fd4c33c35d96370efed5c8596bfb732fd4ec4778f360b58f8f1d32a
438441
llama-parse==0.5.20 \
439442
--hash=sha256:649e256431d3753025b9a320bb03b76849ce4b5a1121394c803df543e6c1006f \
440443
--hash=sha256:9617edb3428d3218ea01f1708f0b6105f3ffef142fedbeb8c98d50082c37e226
@@ -571,9 +574,9 @@ numpy==1.26.4 \
571574
oauthlib==3.2.2 \
572575
--hash=sha256:8139f29aac13e25d502680e9e19963e83f16838d48a0d71c287fe40e7067fbca \
573576
--hash=sha256:9859c40929662bec5d64f34d01c99e093149682a3f38915dc0655d5a633dd918
574-
openai==1.54.3 \
575-
--hash=sha256:7511b74eeb894ac0b0253dc71f087a15d2e4d71d22d0088767205143d880cca6 \
576-
--hash=sha256:f18dbaf09c50d70c4185b892a2a553f80681d1d866323a2da7f7be2f688615d5
577+
openai==1.78.1 \
578+
--hash=sha256:7368bf147ca499804cc408fe68cdb6866a060f38dec961bbc97b04f9d917907e \
579+
--hash=sha256:8b26b364531b100df1b961d03560042e5f5be11301d7d49a6cd1a2b9af824dca
577580
orjson==3.10.15 \
578581
--hash=sha256:035fb83585e0f15e076759b6fedaf0abb460d1765b6a36f48018a52858443514 \
579582
--hash=sha256:05ca7fe452a2e9d8d9d706a2984c95b9c2ebc5db417ce0b7a49b91d50642a23e \

0 commit comments

Comments
 (0)