Update twisted requirement from >=25.5.0 to >=26.4.0rc2#1424
Conversation
Updates the requirements on [twisted](https://github.com/twisted/twisted) to permit the latest version. - [Release notes](https://github.com/twisted/twisted/releases) - [Changelog](https://github.com/twisted/twisted/blob/trunk/NEWS.rst) - [Commits](twisted/twisted@twisted-25.5.0...twisted-26.4.0rc2) --- updated-dependencies: - dependency-name: twisted dependency-version: 26.4.0rc2 dependency-type: direct:production ... Signed-off-by: dependabot[bot] <support@github.com>
Code Review: Dependabot Twisted Dependency UpdateOverviewThis PR bumps the minimum required version of Twisted from Security Assessment ✅The security fix is the main reason to accept this. Twisted 26.4.0rc2 patches:
Since the project uses Twisted indirectly (pinned by Snyk to avoid vulnerabilities), updating to include this patch is appropriate and consistent with the repo's stated purpose for these pins. Other relevant improvements included in this release that affect OpenContracts' usage:
Concerns1. Release Candidate in Production (
|
Rebasing might not happen immediately, so don't worry if this takes some time.
Note: if you make any changes to this PR yourself, they will take precedence over the rebase.
Updates the requirements on twisted to permit the latest version.
Release notes
Sourced from twisted's releases.
... (truncated)
Changelog
Sourced from twisted's changelog.
... (truncated)
Commits
b69a0c7Update version.b32c661Fix tag check.819185eFix mypy.290cbf5[pre-commit.ci] auto fixes from pre-commit.com hookscb9783cManual updates for release notes.ac504ccPrepare the rellease.2d19612Merge commit from fork44c11c7Merge branch 'trunk' into advisory-fix-19ca319eUpdate src/twisted/names/newsfragments/12626.bugfix46f0e5c#12566 Revert the removal of assertEquals and assertNotEquals. (#12628)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)