open-webui/backend
Classic298 08972e5659
chore: bump pillow and aiohttp (#31339)
Bumps pillow 12.2.0 -> 12.3.0 and aiohttp 3.13.5 -> 3.14.3 in requirements.txt, requirements-slim.txt and pyproject.toml. Both are upstream security releases.

uv.lock is regenerated, which also brings it in line with the hiredis 3.4.2 pin from #31328.

Verified on a real install of the bumped set: the backend boots with /health 200, the pillow and aiohttp contract tests pass (84/84), and the full tests suite shows the same results as on dev (no new failures).
2026-09-27 23:11:34 +04:00
..
data refac: mv backend files to /open_webui dir 2024-09-04 16:54:48 +02:00
open_webui fix(retrieval): name the link when process/url cannot fetch it (#31354) 2026-09-27 23:11:20 +04:00
.dockerignore fix: litellm config issue 2024-02-24 22:35:11 -08:00
.gitignore refac 2024-09-06 04:59:20 +02:00
dev.sh perf: allow disabling websocket per-message-deflate (#28613) 2026-08-24 18:46:07 -04:00
requirements-slim.txt chore: bump pillow and aiohttp (#31339) 2026-09-27 23:11:34 +04:00
requirements.txt chore: bump pillow and aiohttp (#31339) 2026-09-27 23:11:34 +04:00
start.sh refac 2026-09-06 16:48:30 -04:00
start_windows.bat chore: drop nltk, unused at the pinned versions (#29725) 2026-09-06 16:39:05 -04:00