mirror of
https://github.com/HKUDS/OpenSpace.git
synced 2026-09-22 00:31:22 +00:00
Versions 1.82.7 and 1.82.8 of litellm were published on March 24, 2026 and contained malicious code that exfiltrated credentials (SSH keys, cloud credentials, .env files, API keys) to an attacker-controlled domain. Pin the dependency to >=1.70.0,<1.82.7 in both pyproject.toml and requirements.txt as a stopgap until litellm can be replaced with direct provider SDK calls. See: https://github.com/HKUDS/OpenSpace/issues/31 Ref: PYSEC-2026-2, BerriAI/litellm#24521
31 lines
949 B
Text
31 lines
949 B
Text
# OpenSpace core dependencies
|
|
litellm>=1.70.0,<1.82.7 # pinned to avoid PYSEC-2026-2 supply-chain compromise (1.82.7/1.82.8 were malicious)
|
|
python-dotenv>=1.0.0
|
|
openai>=1.0.0
|
|
jsonschema>=4.25.0
|
|
mcp>=1.0.0
|
|
anthropic>=0.71.0
|
|
pillow>=12.0.0
|
|
numpy>=1.24.0
|
|
colorama>=0.4.6
|
|
|
|
# Local server dependencies (cross-platform)
|
|
flask>=3.1.0
|
|
pyautogui>=0.9.54
|
|
pydantic>=2.12.0
|
|
requests>=2.32.0
|
|
|
|
# # macOS-specific dependencies (local server)
|
|
# pyobjc-core>=12.0; sys_platform == 'darwin'
|
|
# pyobjc-framework-cocoa>=12.0; sys_platform == 'darwin'
|
|
# pyobjc-framework-quartz>=12.0; sys_platform == 'darwin'
|
|
# atomacos>=3.2.0; sys_platform == 'darwin'
|
|
|
|
# # Linux-specific dependencies (local server)
|
|
# python-xlib>=0.33; sys_platform == 'linux'
|
|
# pyatspi>=2.38.0; sys_platform == 'linux'
|
|
|
|
# # Windows-specific dependencies (local server)
|
|
# pywinauto>=0.6.8; sys_platform == 'win32'
|
|
# pywin32>=306; sys_platform == 'win32'
|
|
# PyGetWindow>=0.0.9; sys_platform == 'win32'
|