Skip to content

Pillow security alert, can we upgrade Pillow to +v10.0.1? #491

@fredoh9

Description

@fredoh9

Getting daily warning email, probably most of us are getting this.

Warning! thesofproject / sof-docs

Known security vulnerabilities detected
Dependency Pillow 	Version < 10.0.1 	Upgrade to ~> 10.0.1
Defined in requirements.txt 

Remember the issue, #472, but any recommendation or fix?

# blockdiag is orphaned and not compatible with pillow>=10,
# see https://github.com/thesofproject/sof-docs/issues/472
sphinxcontrib-blockdiag
pillow<10

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions