Package
tensorflow-cpu-jupyter
Component
setuptools
Latest update
6.1
CVSS V3
Build, ship, and run secure software with minimal, hardened container images — rebuilt from source daily and guarded under our industry-leading remediation SLA.
Start for freeStatus
Justification
Impact
The detection matches a version string in pip's vendored dependency manifest. pip vendors pkg_resources, which is distributed from the same upstream project, but does not vendor the affected package itself; the tree contains none of the sdist manifest-matching code the advisory describes. The separately installed copy is already at the fixed version.
Status