Pillow security update in llm-compressor v0.9.0.3
By RepoJournal , from @latent-9's public GitHub activity
Backfilled
Recoordinate pushed a patch release to vllm-project/llm-compressor to address a security issue in the pillow dependency.
llm-compressor v0.9.0.3 shipped with an updated pillow package to fix a known security vulnerability [1]. The change was minimal and focused, updating only the affected dependency for the release.
One email a day. Unsubscribe in one click.
A short briefing every day latent-9 ships something — in about 3 minutes.
One email a day. Unsubscribe in one click. Read a past issue →
References
- [1] v0.9.0.3 ↗ vllm-project/llm-compressor