Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Conversation

@scottschreckengaust
Copy link
Member

@scottschreckengaust scottschreckengaust commented Jan 7, 2026

Begins CVE-2021-4048

Summary

Once released, the core-mcp-server will need to update to fix CVE-2021-4048

Changes

The faiss-cpu package upgrade remediates the openblas issue. The multidict override temporarily fixes the yanked version.

Please provide a summary of what's being changed

User experience

Please share what the user experience looks like before and after this change

Checklist

If your change doesn't seem to apply, please leave them unchecked.

  • I have reviewed the contributing guidelines
  • I have performed a self-review of this change
  • Changes have been tested
  • Changes are documented

Is this a breaking change? (Y/N)

RFC issue number:

Checklist:

  • Migration process documented
  • Implement warnings (if it can live side by side)

Acknowledgment

By submitting this pull request, I confirm that you can use, modify, copy, and redistribute this contribution, under the terms of the project license.

@scottschreckengaust scottschreckengaust self-assigned this Jan 7, 2026
@scottschreckengaust scottschreckengaust added dependencies Pull requests that update a dependency file or issues from dependenices waiting-for-codeowners Code owners are needed to review labels Jan 7, 2026
@scottschreckengaust scottschreckengaust moved this from To triage to In review in awslabs/mcp Project Jan 7, 2026
@codecov
Copy link

codecov bot commented Jan 7, 2026

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 90.55%. Comparing base (7ca3614) to head (39279ea).
⚠️ Report is 9 commits behind head on main.
✅ All tests successful. No failed tests found.

Additional details and impacted files
@@            Coverage Diff             @@
##             main    #2058      +/-   ##
==========================================
- Coverage   90.55%   90.55%   -0.01%     
==========================================
  Files         920      920              
  Lines       64817    64817              
  Branches    10421    10421              
==========================================
- Hits        58698    58695       -3     
  Misses       3785     3785              
- Partials     2334     2337       +3     

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

@scottschreckengaust scottschreckengaust added the ready-for-merge Folks believe this is ready to merge label Jan 7, 2026
@scottschreckengaust scottschreckengaust requested review from a team January 8, 2026 22:17
@scottschreckengaust scottschreckengaust added this pull request to the merge queue Jan 9, 2026
Merged via the queue into main with commit f5066d0 Jan 9, 2026
260 checks passed
@scottschreckengaust scottschreckengaust deleted the fix/faiss-upgrade branch January 9, 2026 01:11
@github-project-automation github-project-automation bot moved this from In review to Done in awslabs/mcp Project Jan 9, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file or issues from dependenices ready-for-merge Folks believe this is ready to merge waiting-for-codeowners Code owners are needed to review

Projects

Status: Done

Development

Successfully merging this pull request may close these issues.

3 participants