Skip to content

Conversation

@VassilisVassiliadis
Copy link
Member

No description provided.

@DRL-NextGen
Copy link
Member

DRL-NextGen commented Nov 4, 2025

Checks Summary

Last run: 2025-11-04T15:23:26.308Z

Code Risk Analyzer vulnerability scan found 2 vulnerabilities:

Severity Identifier Package Details Fix
🔷Medium CVE-2025-50181 urllib3
urllib3 redirects are not disabled when retries are disabled on PoolManager instantiationGHSA-pq67-6m6q-mj2v

urllib3:2.3.0->kubernetes:34.1.0
2.5.0
🔷Medium CVE-2025-50182 urllib3
urllib3 does not control redirects in browsers and Node.jsGHSA-48p4-8xcf-vxj5

urllib3:2.3.0->kubernetes:34.1.0
2.5.0

… that uses it

Also, add support for using the pip_install_options feature in Ray 2.50.0

Signed-off-by: Vassilis Vassiliadis <vassilis.vassiliadis@ibm.com>
This makes it easier to glance at the metrics while running experiments by showing
the more important measurements first.

Signed-off-by: Vassilis Vassiliadis <vassilis.vassiliadis@ibm.com>
…ptions

Signed-off-by: Vassilis Vassiliadis <vassilis.vassiliadis@ibm.com>
@VassilisVassiliadis VassilisVassiliadis added this pull request to the merge queue Nov 4, 2025
@AlessandroPomponio AlessandroPomponio removed this pull request from the merge queue due to a manual request Nov 4, 2025
@AlessandroPomponio AlessandroPomponio added this pull request to the merge queue Nov 4, 2025
Merged via the queue into main with commit dee913e Nov 4, 2025
18 checks passed
@AlessandroPomponio AlessandroPomponio deleted the vv_fix_ordered_pip_plugin branch November 4, 2025 16:14
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants