Skip to content

Conversation

pranavosu
Copy link

@pranavosu pranavosu commented Oct 5, 2025

This can cause false positive security issues for packages that depend on these models.

e.g.

Issues with no direct upgrade or patch:
✗ Missing Release of Resource after Effective Lifetime [Medium Severity][https://security.snyk.io/vuln/SNYK-JS-INFLIGHT-6095116] in inflight@1.0.6
introduced by @org/my-package@5.0.0 > @tensorflow-models/face-detection@1.0.3 > rimraf@3.0.2 > glob@7.2.3 > inflight@1.0.6
No upgrade or patch available

rimraf should be updated to v6 in a later PR

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant