Bump the python-dependencies group across 1 directory with 5 updates #884
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the python-dependencies group with 5 updates in the / directory:
5.0.6
5.0.7
3.15.1
3.15.2
3.1.19
3.2.1
1.10.0
1.10.1
3.2.2
3.2.5
Updates
django
from 5.0.6 to 5.0.7Commits
deec9b9
[5.0.x] Bumped version for 5.0.7 release.3a7bf7f
[5.0.x] Made cosmetic edits to 5.0.7 release notes.8e7a44e
[5.0.x] Fixed CVE-2024-39614 -- Mitigated potential DoS in get_supported_lang...9f4f63e
[5.0.x] Fixed CVE-2024-39330 -- Added extra file name validation in Storage's...07cefde
[5.0.x] Fixed CVE-2024-39329 -- Standarized timing of verify_password() when ...7285644
[5.0.x] Fixed CVE-2024-38875 -- Mitigated potential DoS in urlize and urlizet...8303400
[5.0.x] Fixed 35506 -- Clarified initial references to URLconf in tutorial 1.c76089b
[5.0.x] Refs #35560 -- Corrected CheckConstraint argument name in model_field...43aa0c1
[5.0.x] Removed outdated note about limitations in Clickjacking protection.0602fc2
[5.0.x] Fixed #35560 -- Made Model.full_clean() ignore GeneratedFields for co...Updates
djangorestframework
from 3.15.1 to 3.15.2Commits
c7a7eae
Version 3.15.2 (#9439)3b41f01
Fix potential XSS vulnerability in break_long_headers template filter (#9435)fe92f0d
Add__hash__
method forpermissions.OperandHolder
class (#9417)fbdab09
docs: Correct some evaluation results and a httpie option in Tutorial1 (#9421)36d5c0e
tests: Check urlpatterns after cleanups (#9400)9d4ed05
Don't use Windows line endingsb34bde4
Fix typo in setup.cfg settingab681f2
Update requirements in docs2237724
bump pygments (security hygiene)d58b8da
Update deprecation hintsUpdates
psycopg
from 3.1.19 to 3.2.1Changelog
Sourced from psycopg's changelog.
... (truncated)
Commits
bb47d39
chore: bump psycopg package version to 3.2.155490a2
fix: fix versions in packaging metadata1cbc42a
docs: fix title level of major releases06a6e5e
docs: mention dropping Python 3.7 in psycopg 3.2 releaseea3735d
docs: better organization of the 3.2 release notes896eee2
chore: bump psycopg package version to 3.2.02e2f4d7
chore: bump psycopg package version to 3.1.207369d3b
Merge pull request #846 from eli-schwartz/tomllib6672c70
style: shorter line in pyproject.tomla517bb4
build: avoid installing tomli on recent pythonUpdates
mypy
from 1.10.0 to 1.10.1Changelog
Sourced from mypy's changelog.
... (truncated)
Commits
c28b525
[1.10 backport] Fix error reporting on cached run after uninstallation of thi...Updates
pylint
from 3.2.2 to 3.2.5Commits
ae730ac
Bump pylint to 3.2.5, update changelog (#9756)be7b5cc
[unreachable-code] Fix the false positive in python 3.8 (#9753) (#9755)6c3ab77
[release] Fix 3.2.4 release date following issue with twine 5.1.0 (#9749) (#9...425ad66
Bump pylint to 3.2.4, update changelog (#9746)c41c35a
[possibly-used-before-assignment] Avoid FP for typing.NoReturn & Never (#9714...22e4d36
[symilar] Rename the unittest file that had a typo.3cf313a
[symilar] Fix the short form options that weren't being processed properlye13544f
[symilar] Fix crash when giving bad options to symilarc3e2579
[unnecessary-list-index-lookup] Fix crashes for uninferrable 'start' value in...6b66ca6
[undefined-variable] Fix a crash for undefined lineno in annotations (#9705) ...Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditions