build(deps): bump the production-dependencies group across 1 directory with 12 updates#276
Open
dependabot[bot] wants to merge 1 commit into
Open
Conversation
…y with 12 updates Bumps the production-dependencies group with 12 updates in the / directory: | Package | From | To | | --- | --- | --- | | [beautifulsoup4](https://www.crummy.com/software/BeautifulSoup/bs4/) | `4.14.3` | `4.15.0` | | [bleach](https://github.com/mozilla/bleach) | `6.3.0` | `6.4.0` | | [flask-cors](https://github.com/corydolphin/flask-cors) | `6.0.2` | `6.0.5` | | [grpcio](https://github.com/grpc/grpc) | `1.80.0` | `1.81.0` | | [grpcio-testing](https://grpc.io) | `1.80.0` | `1.81.0` | | [grpcio-tools](https://github.com/grpc/grpc) | `1.80.0` | `1.81.0` | | [idna](https://github.com/kjd/idna) | `3.15` | `3.18` | | [peewee](https://github.com/coleifer/peewee) | `4.0.5` | `4.0.6` | | [phonenumbers](https://github.com/daviddrysdale/python-phonenumbers) | `9.0.30` | `9.0.32` | | [pika](https://github.com/pika/pika) | `1.4.0` | `1.4.1` | | [pymysql](https://github.com/PyMySQL/PyMySQL) | `1.1.3` | `1.2.0` | | [tqdm](https://github.com/tqdm/tqdm) | `4.67.3` | `4.68.1` | Updates `beautifulsoup4` from 4.14.3 to 4.15.0 Updates `bleach` from 6.3.0 to 6.4.0 - [Changelog](https://github.com/mozilla/bleach/blob/main/CHANGES) - [Commits](mozilla/bleach@v6.3.0...v6.4.0) Updates `flask-cors` from 6.0.2 to 6.0.5 - [Release notes](https://github.com/corydolphin/flask-cors/releases) - [Changelog](https://github.com/corydolphin/flask-cors/blob/main/CHANGELOG.md) - [Commits](corydolphin/flask-cors@6.0.2...6.0.5) Updates `grpcio` from 1.80.0 to 1.81.0 - [Release notes](https://github.com/grpc/grpc/releases) - [Commits](grpc/grpc@v1.80.0...v1.81.0) Updates `grpcio-testing` from 1.80.0 to 1.81.0 Updates `grpcio-tools` from 1.80.0 to 1.81.0 - [Release notes](https://github.com/grpc/grpc/releases) - [Commits](grpc/grpc@v1.80.0...v1.81.0) Updates `idna` from 3.15 to 3.18 - [Release notes](https://github.com/kjd/idna/releases) - [Changelog](https://github.com/kjd/idna/blob/master/HISTORY.md) - [Commits](kjd/idna@v3.15...v3.18) Updates `peewee` from 4.0.5 to 4.0.6 - [Release notes](https://github.com/coleifer/peewee/releases) - [Changelog](https://github.com/coleifer/peewee/blob/master/CHANGELOG.md) - [Commits](coleifer/peewee@4.0.5...4.0.6) Updates `phonenumbers` from 9.0.30 to 9.0.32 - [Commits](daviddrysdale/python-phonenumbers@v9.0.30...v9.0.32) Updates `pika` from 1.4.0 to 1.4.1 - [Release notes](https://github.com/pika/pika/releases) - [Changelog](https://github.com/pika/pika/blob/1.4.1/CHANGELOG.md) - [Commits](pika/pika@1.4.0...1.4.1) Updates `pymysql` from 1.1.3 to 1.2.0 - [Release notes](https://github.com/PyMySQL/PyMySQL/releases) - [Changelog](https://github.com/PyMySQL/PyMySQL/blob/main/CHANGELOG.md) - [Commits](PyMySQL/PyMySQL@v1.1.3...v1.2.0) Updates `tqdm` from 4.67.3 to 4.68.1 - [Release notes](https://github.com/tqdm/tqdm/releases) - [Commits](tqdm/tqdm@v4.67.3...v4.68.1) --- updated-dependencies: - dependency-name: beautifulsoup4 dependency-version: 4.15.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: bleach dependency-version: 6.4.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: flask-cors dependency-version: 6.0.5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-dependencies - dependency-name: grpcio dependency-version: 1.81.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: grpcio-testing dependency-version: 1.81.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: grpcio-tools dependency-version: 1.81.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: idna dependency-version: '3.18' dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: peewee dependency-version: 4.0.6 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-dependencies - dependency-name: phonenumbers dependency-version: 9.0.32 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-dependencies - dependency-name: pika dependency-version: 1.4.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: production-dependencies - dependency-name: pymysql dependency-version: 1.2.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies - dependency-name: tqdm dependency-version: 4.68.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: production-dependencies ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the production-dependencies group with 12 updates in the / directory:
4.14.34.15.06.3.06.4.06.0.26.0.51.80.01.81.01.80.01.81.01.80.01.81.03.153.184.0.54.0.69.0.309.0.321.4.01.4.11.1.31.2.04.67.34.68.1Updates
beautifulsoup4from 4.14.3 to 4.15.0Updates
bleachfrom 6.3.0 to 6.4.0Changelog
Sourced from bleach's changelog.
Commits
f0355a7fix: fix last release date in CHANGESae4e8a2chore: bleach 6.4.0 and final release970df58fix: uri-sanitization in formaction attributes7c4867cfix: xss bypass in allowed protocol test using unicode invisible characters913ab75fix: reduce redundancy in workflow jobs218c15afix: rework pip caching4f0b097fix: fix tox platform restrictionse95a79dchore: update pytest91539d4Bump actions/cache from 5.0.3 to 5.0.4cd47b4cfix: handle left-angle-bracket that's not a tag (#733)Updates
flask-corsfrom 6.0.2 to 6.0.5Release notes
Sourced from flask-cors's releases.
Commits
91ebc49Typing Hotfix: support blueprints in the type systemd601665Add strict MyPy Typingc8e8871Harden release publishing workflow (#406)e1d4034Derive package version from git tag via setuptools-scm (#405)Updates
grpciofrom 1.80.0 to 1.81.0Release notes
Sourced from grpcio's releases.
Commits
8bdf11e[Release] Bump version to 1.81.0 (on v1.81.x branch) (#42432)0029e06Move all gRPC Session classes to the experimental namespace (#42462)1f18268[CI] Fix Asan thread_stress_test error by reducing thread count (#42424) (#42...ee3fed7Backport MacOS fix cl/917004588 to v1.81.x (#42441)6244f3b[Release] Bump version to 1.81.0-pre1 (on v1.81.x branch) (#42378)1108777[Release] Bump core version to 54.0.0 for upcoming release (#42321)74940e8[fix] Add back the do-while loop that handles the TSI_RESULT correctly.5c6185c[CHTTP2] Assert51bc437Automated rollback of commit aab1eab78f9fcb3fc6e0aa9c8d7a59de280dbe3f.03a2dc7[Cleanup] Reduce log noise in latent see.Updates
grpcio-testingfrom 1.80.0 to 1.81.0Updates
grpcio-toolsfrom 1.80.0 to 1.81.0Release notes
Sourced from grpcio-tools's releases.
Commits
8bdf11e[Release] Bump version to 1.81.0 (on v1.81.x branch) (#42432)6244f3b[Release] Bump version to 1.81.0-pre1 (on v1.81.x branch) (#42378)820f933[Python] Drop 3.9 (#42145)451521c[Core CI] Make windows python distrib tests use ccache. (#42171)cb09882[Build] Upgrade protobuf to 33.5 (#41976)a2bf3f1[Release] Bump version to 1.81.0-dev (on master branch) (#41843)Updates
idnafrom 3.15 to 3.18Changelog
Sourced from idna's changelog.
Commits
f39ea90Release 3.1840f4e40Pre-release 3.18rc01a5bf80Merge pull request #253 from kjd/lenient-decode5bbb26fMerge branch 'master' into lenient-decodec532baeRename decode() lenient= option to display= (issue #248)0b1758bMerge pull request #252 from kjd/release-3.17f48619cRelease 3.177421ba8Pre-release 3.17rc022ebb73Merge pull request #251 from kjd/structure-optimizations2a7ac0aDrop redundant parallel-arrays comment from uts46dataUpdates
peeweefrom 4.0.5 to 4.0.6Release notes
Sourced from peewee's releases.
Changelog
Sourced from peewee's changelog.
Commits
5a99f304.0.6451f17bUpdate cl63c4dedRestore whitespace stripping in FixedCharField.2f460adFix deadlock in pool manual_close + close_all.504f3c5Fix pwasyncio failure w/conn contextef045afchangelog updateb1bc2cfMake connection_context() nest cleanly.be1dd2dUpdate changelog w/the last couple changes.8a80798Update docs, add path support to nested lookups as well.98a0dd4Add some helpers for json mutation + json-path to pgUpdates
phonenumbersfrom 9.0.30 to 9.0.32Commits
facd74cPrep for 9.0.32 release8ea3d6aGenerated files for metadata1d40b76Merge metadata changes from upstream 9.0.3243a9c86Prep for 9.0.31 release98c625eGenerated files for metadata9161226Merge metadata changes from upstream 9.0.31Updates
pikafrom 1.4.0 to 1.4.1Release notes
Sourced from pika's releases.
Changelog
Sourced from pika's changelog.
Commits
5f0ba9eMerge pull request #1597 from pika/pika-1.4.131d80a9pika 1.4.1b7af301Merge pull request #1596 from gbenson/mainUpdates
pymysqlfrom 1.1.3 to 1.2.0Release notes
Sourced from pymysql's releases.
Changelog
Sourced from pymysql's changelog.
Commits
0f1c324use ubuntu-latest for pypi publishing53b16b2Release v1.2.0 (#1244)637fe7eDeprecateConnection.set_charset()at runtime and document warning behavior...23ca04aadd AGENTS.md7349a44deprecatereconnectinConnection.ping()(#1241)ad5c50cupdate CHANGELOGc963edbDeprecation and removals (#1240)af6b9b4Prepare CHANGELOG for v1.2.0 release from v1.1.3 changes (#1238)c7bf73fdocs: update outdated requirements and reference links (#1239)c532b8dReject non-finitedecimal.Decimalquery parameters (NaN,sNaN, `±Infini...Updates
tqdmfrom 4.67.3 to 4.68.1Release notes
Sourced from tqdm's releases.
Commits
67cf355Merge pull request #1751 from jaltmayerpizzorno/fix-atexit-monitor-deadlockcfa4a85minor docstring updatesf83290cFix TMonitor deadlock at interpreter shutdown59029c3Set name for tqdm monitor thread (#1752)ef4a142bump version, merge pull request #1760 from tqdm/devel17f246blint warning suppressionc682c7bbenchmarks: fix asvfc69588CI: migrate to pre-commit.cia31d97fmore contrib.itertoolse4d9742soft-deprecate tqdm.utils.envwrap -> envwrapDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions