You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
The issue exists on a clean installation of Fooocus
The issue exists in the current version of Fooocus
The issue has not been reported before recently
The issue has been reported before but has not been fixed yet
What happened?
SimpleSDXL installs three wheels from ./enhanced/libs, despite this being unnecessary and posing potential security risks similar to the recent problems with Ultralytics, where a third party replaced valid wheels (on pypi.org) with alternative packages containing malicious code.
Steps to reproduce the problem
Install SimpleSDXL as normal
Observe that simpleai_base, rembg, and groundingdino_py are all installed from the ./enhanced/libs directory
Revert to groundingdino-py 0.4.0 from pypi.org as there is no code which differs from upstream Fooocus (or, alternatively, use rf-groundingdino to incorporate later fixes by Roboflow)
Install simpleai_base from Github, either by publishing CI-compiled releases in the simpleai_base repository or instructing pip to use the repository at install time (pip install simpleai_base@git+https://github.com/metercai/simpleai_base).
What browsers do you use to access Fooocus?
No response
Where are you running Fooocus?
Locally
What operating system are you using?
Linux
Console logs
N/A
Additional information
No response
The text was updated successfully, but these errors were encountered:
The reason for using local installation is that these packages have been localized and are compatible with Chinese environments, and the original author cannot be contacted for modification.
The content of the WHL package comes from them, and you can compare the differences between them and the official version by yourself. At that time, they will be error when running in a Chinese environment.
Checklist
What happened?
SimpleSDXL installs three wheels from ./enhanced/libs, despite this being unnecessary and posing potential security risks similar to the recent problems with Ultralytics, where a third party replaced valid wheels (on pypi.org) with alternative packages containing malicious code.
Steps to reproduce the problem
What should have happened?
What browsers do you use to access Fooocus?
No response
Where are you running Fooocus?
Locally
What operating system are you using?
Linux
Console logs
Additional information
No response
The text was updated successfully, but these errors were encountered: