tensorflow / tensorflow/model-analysis

CVE in Pyarrow dependency

Open
#178 2 comments 0 reactions 1 assignee View on GitHub

@jeelania10 is already working on this.

Since Sep 2, 2026.

stat:awaiting response type:support
Dominant language
Python
Stars
1.3k
Forks
280
PR merge metrics
No merged PRs in 30d

Description

System information
  • Have I written custom code: no
  • OS Platform and Distribution: N/A
  • TensorFlow Model Analysis installed from: binary
  • TensorFlow Model Analysis version: 0.45.0
  • Python version: N/A
  • Jupyter Notebook version: N/A
  • Exact command to reproduce: N/A
Describe the problem

pyarrow in versions less than 14.0.1 contains the critical security vulnerability CVE-2023-47248.
If possible, please update the dependency of pyarrow to a version >= 14.0.1.

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.