Skip to content

Conversation

TheRedHatter
Copy link
Owner

snyk-top-banner

Snyk has created this PR to fix 3 vulnerabilities in the pip dependencies of this project.

Snyk changed the following file(s):

  • samples/dnn/dnn_model_runner/dnn_conversion/requirements.txt
⚠️ Warning
typer 0.16.0 requires rich, which is not installed.
typer 0.16.0 requires click, which is not installed.
tool-helpers 0.1.2 requires numpy, which is not installed.
scikit-learn 1.0.2 requires scipy, which is not installed.
scikit-learn 1.0.2 requires numpy, which is not installed.
paddleseg 2.8.0 requires opencv-python, which is not installed.
paddleseg 2.8.0 requires tqdm, which is not installed.
paddleseg 2.8.0 requires pyyaml, which is not installed.
paddleseg 2.8.0 requires visualdl, which is not installed.
paddleseg 2.8.0 requires prettytable, which is not installed.
paddleseg 2.8.0 requires filelock, which is not installed.
paddleseg 2.8.0 requires scipy, which is not installed.
paddlenlp 2.8.1 requires datasets, which is not installed.
paddlenlp 2.8.1 requires jieba, which is not installed.
paddlenlp 2.8.1 requires paddle2onnx, which is not installed.
paddlenlp 2.8.1 requires uvicorn, which is not installed.
paddlenlp 2.8.1 requires fastapi, which is not installed.
paddlenlp 2.8.1 requires seqeval, which is not installed.
paddlenlp 2.8.1 requires visualdl, which is not installed.
paddlenlp 2.8.1 requires safetensors, which is not installed.
paddlenlp 2.8.1 requires huggingface-hub, which is not installed.
paddlenlp 2.8.1 requires colorama, which is not installed.
paddlenlp 2.8.1 requires jinja2, which is not installed.
paddlenlp 2.8.1 requires Flask-Babel, which is not installed.
paddlenlp 2.8.1 requires multiprocess, which is not installed.
paddlenlp 2.8.1 requires colorlog, which is not installed.
paddlenlp 2.8.1 requires aistudio-sdk, which is not installed.
paddlenlp 2.8.1 requires tqdm, which is not installed.
paddlenlp 2.8.1 requires dill, which is not installed.
paddlenlp 2.8.1 requires paddlefsl, which is not installed.
paddlenlp 2.8.1 requires rich, which is not installed.
paddlehub 2.4.0 requires numpy, which is not installed.
paddlehub 2.4.0 requires rarfile, which is not installed.
paddlehub 2.4.0 requires opencv-python, which is not installed.
paddlehub 2.4.0 requires filelock, which is not installed.
paddlehub 2.4.0 requires flask, which is not installed.
paddlehub 2.4.0 requires gradio, which is not installed.
paddlehub 2.4.0 requires colorama, which is not installed.
paddlehub 2.4.0 requires packaging, which is not installed.
paddlehub 2.4.0 requires visualdl, which is not installed.
paddlehub 2.4.0 requires matplotlib, which is not installed.
paddlehub 2.4.0 requires paddle2onnx, which is not installed.
paddlehub 2.4.0 requires Pillow, which is not installed.
paddlehub 2.4.0 requires colorlog, which is not installed.
paddlehub 2.4.0 requires easydict, which is not installed.
paddlehub 2.4.0 requires pyyaml, which is not installed.
paddlehub 2.4.0 requires tqdm, which is not installed.
paddlehub 2.4.0 requires pyzmq, which is not installed.
paddlehub 2.4.0 requires gunicorn, which is not installed.
onnx 1.14.1 requires numpy, which is not installed.

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.
  • This PR was automatically created by Snyk using the credentials of a real user.
  • Some vulnerabilities couldn't be fully fixed and so Snyk will still find them when the project is tested again. This may be because the vulnerability existed within more than one direct dependency, but not all of the affected dependencies could be upgraded.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 NULL Pointer Dereference

@TheRedHatter
Copy link
Owner Author

TheRedHatter commented Jul 27, 2025

🎉 Snyk checks have passed. No issues have been found so far.

security/snyk check is complete. No issues have been found. (View Details)

license/snyk check is complete. No issues have been found. (View Details)

@TheRedHatter
Copy link
Owner Author

Logo
Checkmarx One – Scan Summary & Details10d9629c-d8a2-4821-8e73-413d91240c89

New Issues (1045)

Checkmarx found the following issues in this Pull Request

Severity Issue Source File / Package Checkmarx Insight
CRITICAL Buffer_Improper_Index_Access /modules/core/src/array.cpp: 697
detailsThe array index newtable at /modules/core/src/array.cpp in line 697 is used to reference an index of a cell of the array newtable at /modules/core...
ID: vCV%2BrqLRmitNnJMo9R7fgPNaQGs%3D
Attack Vector
CRITICAL Buffer_Improper_Index_Access /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp: 549
detailsThe array index segs at /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp in line 549 is used to reference an index of a cell of th...
ID: hHC4I0zVBFBPYQqHxoqC0SAQtJ4%3D
Attack Vector
CRITICAL Buffer_Improper_Index_Access /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp: 534
detailsThe array index segs at /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp in line 534 is used to reference an index of a cell of th...
ID: UjZMZUW0AfUFV4cHWL6mcPljWUY%3D
Attack Vector
CRITICAL Buffer_Improper_Index_Access /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp: 518
detailsThe array index segs at /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp in line 518 is used to reference an index of a cell of th...
ID: 0lBLusRDa88CtxnovVLLEgFv%2FOU%3D
Attack Vector
CRITICAL Buffer_Improper_Index_Access /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp: 528
detailsThe array index segs at /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp in line 528 is used to reference an index of a cell of th...
ID: eqQUKmrcvDPN3oKPip3Wy2xarH8%3D
Attack Vector
CRITICAL Buffer_Improper_Index_Access /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp: 524
detailsThe array index segs at /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp in line 524 is used to reference an index of a cell of th...
ID: r8UFyBPCn2VVRV9MzfYdWDbhweI%3D
Attack Vector
CRITICAL Buffer_Improper_Index_Access /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp: 527
detailsThe array index segs at /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp in line 527 is used to reference an index of a cell of th...
ID: YVjLUCRK0LLN8qJuZgWP%2Fewr%2Bwg%3D
Attack Vector
CRITICAL Buffer_Improper_Index_Access /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp: 526
detailsThe array index segs at /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp in line 526 is used to reference an index of a cell of th...
ID: 7LD62jXasfBpDBE9JMSIjy6d3K8%3D
Attack Vector
CRITICAL Buffer_Improper_Index_Access /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp: 121
detailsThe array index pts at /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp in line 121 is used to reference an index of a cell of the...
ID: 5ZePttQexEnmtdm6b6IlebY0GH8%3D
Attack Vector
CRITICAL Buffer_Improper_Index_Access /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp: 121
detailsThe array index pts at /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp in line 121 is used to reference an index of a cell of the...
ID: 2B%2FM0kW3OpC1thFeiNsjSjnKHPA%3D
Attack Vector
CRITICAL Buffer_Improper_Index_Access /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp: 517
detailsThe array index segs at /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp in line 517 is used to reference an index of a cell of th...
ID: OK2kEzg%2FVx1YtE%2Fm0eXRJFeN9go%3D
Attack Vector
CRITICAL Buffer_Improper_Index_Access /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp: 519
detailsThe array index segs at /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp in line 519 is used to reference an index of a cell of th...
ID: Q5BsmmHhmHZ13JLpnYR8FIZzurg%3D
Attack Vector
CRITICAL Buffer_Improper_Index_Access /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp: 127
detailsThe array index pts at /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp in line 127 is used to reference an index of a cell of the...
ID: 66Kmx6QhOyzKNe4wpCydv9Pit3E%3D
Attack Vector
CRITICAL Buffer_Improper_Index_Access /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp: 125
detailsThe array index pts at /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp in line 125 is used to reference an index of a cell of the...
ID: aRT0smrD60%2FVIlxFPqWRYiv4Mp8%3D
Attack Vector
CRITICAL Buffer_Improper_Index_Access /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp: 116
detailsThe array index pts at /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp in line 116 is used to reference an index of a cell of the...
ID: Z25BgJ9JY2R1BzXtvmPEJ%2BMzAQA%3D
Attack Vector
CRITICAL Buffer_Improper_Index_Access /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp: 116
detailsThe array index pts at /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp in line 116 is used to reference an index of a cell of the...
ID: E%2FskpjexRwqGQ0WIKQilmEf4YRo%3D
Attack Vector
CRITICAL Buffer_Improper_Index_Access /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp: 116
detailsThe array index pts at /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp in line 116 is used to reference an index of a cell of the...
ID: d46VWF170qfKLbrcPBlYT80Rxjs%3D
Attack Vector
CRITICAL Buffer_Improper_Index_Access /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp: 116
detailsThe array index pts at /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp in line 116 is used to reference an index of a cell of the...
ID: npr0Q25IzWxcw6VUHOiQ8mstk0s%3D
Attack Vector
CRITICAL Buffer_Improper_Index_Access /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp: 116
detailsThe array index pts at /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp in line 116 is used to reference an index of a cell of the...
ID: RLdq1K61nldKg%2BOiLweXvTSgJZ0%3D
Attack Vector
CRITICAL Buffer_Improper_Index_Access /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp: 116
detailsThe array index pts at /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp in line 116 is used to reference an index of a cell of the...
ID: a53FDTZb4%2FEay1IWEnFWViQuaDQ%3D
Attack Vector
CRITICAL Buffer_Improper_Index_Access /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp: 116
detailsThe array index pts at /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp in line 116 is used to reference an index of a cell of the...
ID: CpYJptxJhYAu%2BfhGJ1SZWCjK%2BdY%3D
Attack Vector
CRITICAL Buffer_Improper_Index_Access /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp: 82
detailsThe array index pts at /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp in line 82 is used to reference an index of a cell of the ...
ID: IDX1ZwYxrpdrtPTXPC52R%2Bb%2BI0Q%3D
Attack Vector
CRITICAL Buffer_Improper_Index_Access /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp: 116
detailsThe array index pts at /modules/objdetect/src/aruco/apriltag/apriltag_quad_thresh.cpp in line 116 is used to reference an index of a cell of the...
ID: nCs86D9FqQbLD%2BC%2FP5TFwe6f4CA%3D
Attack Vector

More results are available on the CxOne platform

Fixed Issues (14)
Great job! The following issues were fixed in this Pull Request

Severity Issue Source File / Package
CRITICAL CVE-2022-33649 Npm-electron-15.5.7
HIGH CVE-2021-43138 Npm-async-1.5.2
HIGH CVE-2024-10569 Python-gradio-5.31.0
HIGH CVE-2024-10624 Python-gradio-5.31.0
HIGH CVE-2024-10648 Python-gradio-5.31.0
HIGH CVE-2024-48052 Python-gradio-5.31.0
HIGH CVE-2025-0187 Python-gradio-5.31.0
MEDIUM CVE-2024-4940 Python-gradio-5.31.0
MEDIUM CVE-2024-55459 Python-keras-3.10.0
MEDIUM CVE-2024-8021 Python-gradio-5.31.0
MEDIUM Divide_By_Zero /3rdparty/libwebp/src/enc/picture_psnr_enc.c: 128
MEDIUM Divide_By_Zero /modules/calib3d/src/p3p.cpp: 430
MEDIUM Divide_By_Zero /modules/calib3d/src/p3p.cpp: 414
MEDIUM Path_Traversal /apps/annotation/opencv_annotation.cpp: 219

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants