-
Notifications
You must be signed in to change notification settings - Fork 9
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Deps: Bump the python-packages group with 11 updates #821
Closed
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Bumps the python-packages group with 11 updates: | Package | From | To | | --- | --- | --- | | [django](https://github.com/django/django) | `2.2.28` | `4.2.5` | | [djangorestframework](https://github.com/encode/django-rest-framework) | `3.11.2` | `3.14.0` | | [weasyprint](https://github.com/Kozea/WeasyPrint) | `59.0` | `60.1` | | [rope](https://github.com/python-rope/rope) | `1.9.0` | `1.10.0` | | [pylint](https://github.com/pylint-dev/pylint) | `2.17.5` | `2.17.7` | | [cffi](https://github.com/python-cffi/cffi) | `1.15.1` | `1.16.0` | | [charset-normalizer](https://github.com/Ousret/charset_normalizer) | `3.2.0` | `3.3.0` | | [fonttools](https://github.com/fonttools/fonttools) | `4.42.1` | `4.43.0` | | [packaging](https://github.com/pypa/packaging) | `23.1` | `23.2` | | [rich](https://github.com/Textualize/rich) | `13.5.3` | `13.6.0` | | [urllib3](https://github.com/urllib3/urllib3) | `2.0.4` | `2.0.5` | Updates `django` from 2.2.28 to 4.2.5 - [Commits](django/django@2.2.28...4.2.5) Updates `djangorestframework` from 3.11.2 to 3.14.0 - [Release notes](https://github.com/encode/django-rest-framework/releases) - [Commits](encode/django-rest-framework@3.11.2...3.14.0) Updates `weasyprint` from 59.0 to 60.1 - [Release notes](https://github.com/Kozea/WeasyPrint/releases) - [Changelog](https://github.com/Kozea/WeasyPrint/blob/main/docs/changelog.rst) - [Commits](Kozea/WeasyPrint@v59.0...v60.1) Updates `rope` from 1.9.0 to 1.10.0 - [Changelog](https://github.com/python-rope/rope/blob/master/CHANGELOG.md) - [Commits](python-rope/rope@1.9.0...1.10.0) Updates `pylint` from 2.17.5 to 2.17.7 - [Release notes](https://github.com/pylint-dev/pylint/releases) - [Commits](pylint-dev/pylint@v2.17.5...v2.17.7) Updates `cffi` from 1.15.1 to 1.16.0 - [Release notes](https://github.com/python-cffi/cffi/releases) - [Commits](python-cffi/cffi@v1.15.1...v1.16.0) Updates `charset-normalizer` from 3.2.0 to 3.3.0 - [Release notes](https://github.com/Ousret/charset_normalizer/releases) - [Changelog](https://github.com/Ousret/charset_normalizer/blob/master/CHANGELOG.md) - [Commits](jawah/charset_normalizer@3.2.0...3.3.0) Updates `fonttools` from 4.42.1 to 4.43.0 - [Release notes](https://github.com/fonttools/fonttools/releases) - [Changelog](https://github.com/fonttools/fonttools/blob/main/NEWS.rst) - [Commits](fonttools/fonttools@4.42.1...4.43.0) Updates `packaging` from 23.1 to 23.2 - [Release notes](https://github.com/pypa/packaging/releases) - [Changelog](https://github.com/pypa/packaging/blob/main/CHANGELOG.rst) - [Commits](pypa/packaging@23.1...23.2) Updates `rich` from 13.5.3 to 13.6.0 - [Release notes](https://github.com/Textualize/rich/releases) - [Changelog](https://github.com/Textualize/rich/blob/master/CHANGELOG.md) - [Commits](Textualize/rich@v13.5.3...v13.6.0) Updates `urllib3` from 2.0.4 to 2.0.5 - [Release notes](https://github.com/urllib3/urllib3/releases) - [Changelog](https://github.com/urllib3/urllib3/blob/main/CHANGES.rst) - [Commits](urllib3/urllib3@2.0.4...v2.0.5) --- updated-dependencies: - dependency-name: django dependency-type: direct:production update-type: version-update:semver-major dependency-group: python-packages - dependency-name: djangorestframework dependency-type: direct:production update-type: version-update:semver-minor dependency-group: python-packages - dependency-name: weasyprint dependency-type: direct:production update-type: version-update:semver-major dependency-group: python-packages - dependency-name: rope dependency-type: direct:production update-type: version-update:semver-minor dependency-group: python-packages - dependency-name: pylint dependency-type: direct:development update-type: version-update:semver-patch dependency-group: python-packages - dependency-name: cffi dependency-type: indirect update-type: version-update:semver-minor dependency-group: python-packages - dependency-name: charset-normalizer dependency-type: indirect update-type: version-update:semver-minor dependency-group: python-packages - dependency-name: fonttools dependency-type: indirect update-type: version-update:semver-minor dependency-group: python-packages - dependency-name: packaging dependency-type: indirect update-type: version-update:semver-minor dependency-group: python-packages - dependency-name: rich dependency-type: indirect update-type: version-update:semver-minor dependency-group: python-packages - dependency-name: urllib3 dependency-type: indirect update-type: version-update:semver-patch dependency-group: python-packages ... Signed-off-by: dependabot[bot] <[email protected]>
dependabot
bot
added
dependencies
Pull requests that update a dependency file
python
Pull requests that update Python code
labels
Oct 2, 2023
Codecov Report
@@ Coverage Diff @@
## main #821 +/- ##
==========================================
+ Coverage 88.58% 88.65% +0.07%
==========================================
Files 35 35
Lines 1331 1331
==========================================
+ Hits 1179 1180 +1
+ Misses 152 151 -1 see 1 file with indirect coverage changes 📣 We’re building smart automated test selection to slash your CI/CD build times. Learn more |
@dependabot recreate |
Looks like these dependencies are updatable in another way, so this is no longer needed. |
auto-merge was automatically disabled
October 5, 2023 13:11
Pull request was closed
dependabot
bot
deleted the
dependabot/pip/main/python-packages-408dcd2fc6
branch
October 5, 2023 13:11
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Labels
dependencies
Pull requests that update a dependency file
python
Pull requests that update Python code
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the python-packages group with 11 updates:
2.2.28
4.2.5
3.11.2
3.14.0
59.0
60.1
1.9.0
1.10.0
2.17.5
2.17.7
1.15.1
1.16.0
3.2.0
3.3.0
4.42.1
4.43.0
23.1
23.2
13.5.3
13.6.0
2.0.4
2.0.5
Updates
django
from 2.2.28 to 4.2.5Commits
b8b2f74
[4.2.x] Bumped version for 4.2.5 release.9c51b4d
[4.2.x] Fixed CVE-2023-41164 -- Fixed potential DoS in django.utils.encoding....acfb427
[4.2.x] Fixed #34803 -- Fixed queryset crash when filtering againts deeply ne...55a0b9c
[4.2.x] Added stub release notes and release date for 4.2.5, 4.1.11, and 3.2.21.8e8c318
[4.2.x] Avoided counting exceptions in AsyncClient docs.dcb9d7a
[4.2.x] Improved formset docs by using a set instead of a list in the custom ...f55b420
[4.2.x] Fixed #34781 -- Updated logging ref docs for django.server's request ...46b2b08
[4.2.x] Fixed #34779 -- Avoided unnecessary selection of non-nullable m2m fie...d34db66
[4.2.x] Fixed #34773 -- Fixed syncing DEFAULT_FILE_STORAGE/STATICFILES_STORAG...a22aeef
[4.2.x] Fixed #15799 -- Doc'd that Storage._open() should raise FileNotFoundE...Updates
djangorestframework
from 3.11.2 to 3.14.0Release notes
Sourced from djangorestframework's releases.
Commits
2da473c
Add 3.14 announcement to the docs58e0a69
Update setup.py to drop Django 2.2 and update release notes (#8666)11bfda9
both statement have dupplicate bodies (#8633)058424c
docs: delete duplicate explanation (#8641)eb88dfc
Add --api-version CLI option to generateschema (#8663)f34f156
Remove old deprecation classes for 3.14 release (#8664)c6cafc9
Update release-notes.mdf8b3f38
Update supported versions for 3.14 release (#8662)b658915
Version 3.14.0 proposal (#8599)51f1aff
Revert 8552 (#8661)Updates
weasyprint
from 59.0 to 60.1Release notes
Sourced from weasyprint's releases.
... (truncated)
Changelog
Sourced from weasyprint's changelog.
... (truncated)
Commits
01c5e97
Version 60.1f5640de
Use UTF-8 indices really everywhere563d775
Use "main" as default branch namedc6d3fa
Version 60.09596307
Merge pull request #1970 from gauravsamudra/handle-y-offset-of-glyphsa8ff8a6
Remove extra linecee2a17
Merge pull request #1971 from azhar316/feat-timeoutd51e211
Fix text rise value29625c6
Fix import order3d91de1
Fix comma removalUpdates
rope
from 1.9.0 to 1.10.0Changelog
Sourced from rope's changelog.
Commits
a5fa15b
Update CHANGELOG.md0bee51e
Bump versionef3613b
Black00e937c
Add build.os key to .readthedocs.yaml3049f35
Update .readthedocs.yaml to use build.tools.python key68630e3
Update readthedocs to use Python 3.11cd34ac5
Update current year to 202311316ec
Replace pkg_resources to use importlibc4c77d5
Fix deprecation warnings677111a
Merge pull request #709 from python-rope/lieryan-py312Updates
pylint
from 2.17.5 to 2.17.7Commits
dade880
Bump pylint to 2.17.7, update changelog (#9084)c2907a9
Upgrade astroid to 2.15.8 on 2.17.x branch (#9081)aed51a6
Fix crash in refactoring checker from unaryop with variable (#9075) (#9076)b8a7cc5
Bump pylint to 2.17.6, update changelog (#9064)a88fbd7
Upgrade astroid to 2.15.7aea47d1
[unbalanced-tuple-unpacking] Add a regression tests for #771024786fa
Fix Pyreverse duplicate arrows bug (#9029) (#9039)259fbd2
Fix Pyreverse optional annotation bug (#9016) (#9019)094a774
Fix Pyreverse duplicate annotations (#9012) (#9017)79aac5b
Fix duplicate fields Pyreverse bug (#9004) (#9011)Updates
cffi
from 1.15.1 to 1.16.0Release notes
Sourced from cffi's releases.
Commits
ba44abd
release 1.16.0 (#17)c0ad8d9
Add a tool to update release version numbers (#15)e20c65d
Release 1.16.0rc2 (#13)e98d1bb
upgrade setup-qemu-action (#8) (#9)158bc5b
add a summary jobcheck
for easier automated gating (#6) (#7)c062f2c
enable weekly 1pm Monday scheduled CI run on release-1.16 (#5)e847033
make self-hosted aarch64 mac jobs conditional-ish57ff08e
remove obsolete testff11e92
release 1.16.0rc10dc7805
prepare for 1.16.0rc1Updates
charset-normalizer
from 3.2.0 to 3.3.0Release notes
Sourced from charset-normalizer's releases.
Changelog
Sourced from charset-normalizer's changelog.
Commits
165211a
🔖 Release 3.3.0 (#353)5aed9a4
🐛 Fix unreachable code in the sorting algorithm of CharsetMatch (#352)061a71b
⬆️ Bump actions/checkout from 4.0.0 to 4.1.0 (#348)88df580
⬆️ Bump github/codeql-action from 2.21.7 to 2.21.9 (#351)aa0234b
⬆️ Bump pypa/cibuildwheel from 2.15.0 to 2.16.0 (#349)58f69f7
⬆️ Bump github/codeql-action from 2.21.5 to 2.21.7 (#345)e7c2d8e
⬆️ Bump docker/setup-qemu-action from 2.2.0 to 3.0.0 (#346)5abf47f
⬆️ Bump pytest from 7.4.1 to 7.4.2 (#342)50a138e
⬆️ Bump actions/checkout from 3.6.0 to 4.0.0 (#343)5da7047
⬆️ Bump actions/upload-artifact from 3.1.2 to 3.1.3 (#344)Updates
fonttools
from 4.42.1 to 4.43.0Release notes
Sourced from fonttools's releases.
Changelog
Sourced from fonttools's changelog.
Commits
145460e
Release 4.43.064f3fd8
Update changelog [skip ci]7aea49e
Merge pull request #3283 from hugovk/main4470c44
Bump requirements.txt to support Python 3.120c87cba
Bump scipy for Python 3.12 supporteda6fa5
Add support for Python 3.120e033b0
Bump reportlab from 3.6.12 to 3.6.13 in /Doc6012643
[iup] Work around cython bugb14268a
[iup] Remove copy/pasta0a3360e
[varLib.avar] New module to compile avar from .designspace fileUpdates
packaging
from 23.1 to 23.2Release notes
Sourced from packaging's releases.
Changelog
Sourced from packaging's changelog.
Commits
b3a5d7d
Bump for released7ce40d
Fix code blocks in CHANGELOG.md (#724)524b701
parse_{sdist,wheel}_filename: don't raise InvalidVersion (#721)b509bef
Typing annotations fixed (#723)0206c39
Bump pip version to avoid known vulnerabilities (#720)7023537
fix: Update copyright date for docs (#713)39786bb
Document use of calendar-based versioning scheme (#717)c1346df
fix: Detect when a platform is 32-bit more accurately (#711)7e68d82
Correct rST syntax in CHANGELOG.rst (#709)61e6efb
Support enriched metadata inpackaging.metadata
(#686)Updates
rich
from 13.5.3 to 13.6.0Release notes
Sourced from rich's releases.
Changelog
Sourced from rich's changelog.
Commits
e9f75c9
Merge branch 'py312'35b64f1
Merge pull request #3139 from Textualize/py312c8ff546
version bump3f8c4af
tests for 3.12ef90daf
enable py312Updates
urllib3
from 2.0.4 to 2.0.5Release notes
Sourced from urllib3's releases.
Changelog
Sourced from urllib3's changelog.
Commits
d9f85a7
Release 2.0.5d41f412
Undeprecate pyOpenSSL module (#3127)b6c04cb
Fix a link to "absolute URI" definition (#3128)af7c78f
refactor: change double conditional to one (#3118)34c13c8
Refer to current internet standards in docs on proxies (#3124)a3e94f2
Fix a name of an attribute in docs (#3125)da69d4f
Fix docs build (#3123)18831e5
Bump actions/checkout from 3.6.0 to 4.0.0 (#3116)cf8e184
Unquote all GitHub Action names to fix auto-updating comments (#3121)26c1b3f
Unquote GitHub Action name to test auto-updating commentsMost Recent Ignore Conditions Applied to This Pull Request
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditions