Skip to content

Conversation

@weklund
Copy link
Member

@weklund weklund commented Jan 26, 2026

Summary

  • Upgrades transformers[accelerate] from 4.50.0 to 4.53.0

Test plan

  • Verify module still builds successfully
  • Run existing tests for sagemaker-templates module

@weklund weklund force-pushed the fix/upgrade-transformers-security branch from 150db6a to 50fc354 Compare January 26, 2026 21:22
@weklund weklund changed the title fix: upgrade transformers to 4.53.0 to address security vulnerabilities fix: upgrade transformers to 4.53.0 Jan 26, 2026
Addresses 9 Dependabot security alerts (CVEs) related to ReDoS and
input validation vulnerabilities in the transformers package.
@weklund weklund force-pushed the fix/upgrade-transformers-security branch from 50fc354 to c33c325 Compare January 26, 2026 21:28
@weklund weklund requested a review from xuezhma January 26, 2026 22:09
Copy link
Contributor

@xuezhma xuezhma left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🚢

@weklund weklund merged commit c31182e into main Jan 26, 2026
6 checks passed
@weklund weklund deleted the fix/upgrade-transformers-security branch January 26, 2026 22:26
@kwangaws kwangaws mentioned this pull request Feb 9, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants