Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
As far as I am aware the vulnerable lodash code is not shipped in the python-torch package.