tritonserver-backend-vllm-cuda-12.9
Chainguard
Status
Impact
The org.apache.commons:commons-lang3 is pulled through a transient dependency of a Python package named 'ray'. We will have to wait for 'ray' to push a more recent version of commons-lang3 and upstream to push a new release with the new 'ray' dependency updated. Once this is done, we can upgrade and remediate the vulnerability
Status