openai-model-registry@0.3.0 vulnerabilities

Registry for OpenAI models with capability and parameter validation

  • latest version

    1.0.5

  • latest non vulnerable version

  • first published

    7 months ago

  • latest version published

    2 months ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the openai-model-registry package. This does not include vulnerabilities belonging to this package’s dependencies.

    Fix vulnerabilities automatically

    Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

    Fix for free
    VulnerabilityVulnerable Version
    • M
    Improper Resource Shutdown or Release

    openai-model-registry is a Registry for OpenAI models with capability and parameter validation

    Affected versions of this package are vulnerable to Improper Resource Shutdown or Release via the registry cleanup routine and network request handling function. An attacker can exploit resource leaks and thread safety issues.

    How to fix Improper Resource Shutdown or Release?

    Upgrade openai-model-registry to version 0.4.0 or higher.

    [,0.4.0)