Deps: Bump the python-packages group across 1 directory with 11 updates - #7
Closed
dependabot[bot] wants to merge 1 commit into
Closed
Deps: Bump the python-packages group across 1 directory with 11 updates#7dependabot[bot] wants to merge 1 commit into
dependabot[bot] wants to merge 1 commit into
Conversation
Bumps the python-packages group with 11 updates in the / directory: | Package | From | To | | --- | --- | --- | | [coverage](https://github.com/coveragepy/coveragepy) | `7.14.1` | `7.14.3` | | [ruff](https://github.com/astral-sh/ruff) | `0.15.14` | `0.15.19` | | [pypsrp](https://github.com/jborean93/pypsrp) | `0.9.0` | `0.9.1` | | [anyio](https://github.com/agronholm/anyio) | `4.13.0` | `4.14.1` | | [certifi](https://github.com/certifi/python-certifi) | `2026.5.20` | `2026.6.17` | | [click](https://github.com/pallets/click) | `8.4.1` | `8.4.2` | | [cryptography](https://github.com/pyca/cryptography) | `48.0.0` | `49.0.0` | | [gssapi](https://github.com/pythongssapi/python-gssapi) | `1.8.2` | `1.11.1` | | [hpack](https://github.com/python-hyper/hpack) | `4.1.0` | `4.2.0` | | [idna](https://github.com/kjd/idna) | `3.16` | `3.18` | | [pontos](https://github.com/greenbone/pontos) | `25.8.1` | `26.5.0` | Updates `coverage` from 7.14.1 to 7.14.3 - [Release notes](https://github.com/coveragepy/coveragepy/releases) - [Changelog](https://github.com/coveragepy/coveragepy/blob/main/CHANGES.rst) - [Commits](coveragepy/coveragepy@7.14.1...7.14.3) Updates `ruff` from 0.15.14 to 0.15.19 - [Release notes](https://github.com/astral-sh/ruff/releases) - [Changelog](https://github.com/astral-sh/ruff/blob/main/CHANGELOG.md) - [Commits](astral-sh/ruff@0.15.14...0.15.19) Updates `pypsrp` from 0.9.0 to 0.9.1 - [Release notes](https://github.com/jborean93/pypsrp/releases) - [Changelog](https://github.com/jborean93/pypsrp/blob/master/CHANGELOG.md) - [Commits](jborean93/pypsrp@v0.9.0...v0.9.1) Updates `anyio` from 4.13.0 to 4.14.1 - [Release notes](https://github.com/agronholm/anyio/releases) - [Commits](agronholm/anyio@4.13.0...4.14.1) Updates `certifi` from 2026.5.20 to 2026.6.17 - [Commits](certifi/python-certifi@2026.05.20...2026.06.17) Updates `click` from 8.4.1 to 8.4.2 - [Release notes](https://github.com/pallets/click/releases) - [Changelog](https://github.com/pallets/click/blob/main/CHANGES.md) - [Commits](pallets/click@8.4.1...8.4.2) Updates `cryptography` from 48.0.0 to 49.0.0 - [Changelog](https://github.com/pyca/cryptography/blob/main/CHANGELOG.rst) - [Commits](pyca/cryptography@48.0.0...49.0.0) Updates `gssapi` from 1.8.2 to 1.11.1 - [Release notes](https://github.com/pythongssapi/python-gssapi/releases) - [Commits](pythongssapi/python-gssapi@v1.8.2...v1.11.1) Updates `hpack` from 4.1.0 to 4.2.0 - [Changelog](https://github.com/python-hyper/hpack/blob/master/CHANGELOG.rst) - [Commits](python-hyper/hpack@v4.1.0...v4.2.0) Updates `idna` from 3.16 to 3.18 - [Release notes](https://github.com/kjd/idna/releases) - [Changelog](https://github.com/kjd/idna/blob/master/HISTORY.md) - [Commits](kjd/idna@v3.16...v3.18) Updates `pontos` from 25.8.1 to 26.5.0 - [Release notes](https://github.com/greenbone/pontos/releases) - [Commits](greenbone/pontos@v25.8.1...v26.5.0) --- updated-dependencies: - dependency-name: coverage dependency-version: 7.14.3 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: python-packages - dependency-name: ruff dependency-version: 0.15.19 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: python-packages - dependency-name: pypsrp dependency-version: 0.9.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: python-packages - dependency-name: anyio dependency-version: 4.14.1 dependency-type: indirect update-type: version-update:semver-minor dependency-group: python-packages - dependency-name: certifi dependency-version: 2026.6.17 dependency-type: indirect update-type: version-update:semver-minor dependency-group: python-packages - dependency-name: click dependency-version: 8.4.2 dependency-type: indirect update-type: version-update:semver-patch dependency-group: python-packages - dependency-name: cryptography dependency-version: 49.0.0 dependency-type: indirect update-type: version-update:semver-major dependency-group: python-packages - dependency-name: gssapi dependency-version: 1.11.1 dependency-type: indirect update-type: version-update:semver-minor dependency-group: python-packages - dependency-name: hpack dependency-version: 4.2.0 dependency-type: indirect update-type: version-update:semver-minor dependency-group: python-packages - dependency-name: idna dependency-version: '3.18' dependency-type: indirect update-type: version-update:semver-minor dependency-group: python-packages - dependency-name: pontos dependency-version: 26.5.0 dependency-type: indirect update-type: version-update:semver-major dependency-group: python-packages ... Signed-off-by: dependabot[bot] <support@github.com>
Author
|
Looks like these dependencies are updatable in another way, so this is no longer needed. |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the python-packages group with 11 updates in the / directory:
7.14.17.14.30.15.140.15.190.9.00.9.14.13.04.14.12026.5.202026.6.178.4.18.4.248.0.049.0.01.8.21.11.14.1.04.2.03.163.1825.8.126.5.0Updates
coveragefrom 7.14.1 to 7.14.3Changelog
Sourced from coverage's changelog.
Commits
22f13eadocs: sample HTML for 7.14.32ca4e5fdocs: prep for 7.14.301d714edocs: add changelog entry for #2203f36248dfix: don't emit 'Couldn't import C tracer' warning for 3.13t (#2203)86d73d1docs: thanks, Mengjia Shang3d4ae3cdocs: add the #2196 pr link to CHANGESf4b2b4dfix: exclude...bodies after multi-line return-type annotations (#2185) (#...1980ed0chore: bump sigstore/gh-action-sigstore-python (#2201)bca3217build: since we don't ship 3.13t, don't test it77550d8docs: oops, mismatched pull requestsUpdates
rufffrom 0.15.14 to 0.15.19Release notes
Sourced from ruff's releases.
... (truncated)
Changelog
Sourced from ruff's changelog.
... (truncated)
Commits
7f04365Bump version to 0.15.19 (#26291)a30ba16[ty] Infer definite equality comparison results (#26290)bcd2028[ty] Avoid recursion when projecting narrowing constraints (#26276)c0e083e[ty] Avoid bypassing lazy constraints for Divergent (#26288)fb13596Record configured crates.io packages (#26281)85da759[ty] Fix ParamSpec callable signature extraction for callable instances (#26279)4c98a81[ty] Make multi-arm TypeOf cycle recovery monotonic (#26275)7b84361[ty] Preserve regular kind for callable instances (#26253)93c8c59[flake8-pyi] Note thatPYI051is an opinionated stylistic rule (#26179)bc9bb05[ty] Infer types for names bound in match patterns (#25940)Updates
pypsrpfrom 0.9.0 to 0.9.1Release notes
Sourced from pypsrp's releases.
Changelog
Sourced from pypsrp's changelog.
Commits
42a34edPrepare for v0.9.1 release (#221)1196541Fix RecursionError caused by mutating shared pool_classes_by_scheme dict (#220)Updates
anyiofrom 4.13.0 to 4.14.1Release notes
Sourced from anyio's releases.
... (truncated)
Commits
149b9e9Bumped up the version377518cBump actions/checkout from 6 to 7 in the github-actions group (#1186)b42a2f5[pre-commit.ci] pre-commit autoupdate (#1185)3ceb6ffAllow 0 tokens in a CapacityLimiter instantiated outside an event loop (#1183)e10d1dbAdd missing await to open_file() in file I/O concurrency example (#1182)1dbc3b6OutcomeException should not discard test runner_task (#1180)ffe9133Bumped up the versionf8b9f01Fixed asyncio lock waiter deadlocks after cancellation (#1145)d517ee1[pre-commit.ci] pre-commit autoupdate (#1176)550b68eMakeanyio.runsupportAwaitableat runtime on all backends (#1171)Updates
certififrom 2026.5.20 to 2026.6.17Commits
d0ac52f2026.06.17 (#418)d46de62Bump actions/checkout from 6.0.2 to 6.0.3 (#417)6c183ecfix: update Requests docs link to canonical URL (#415)36e3568Bump dessant/lock-threads from 6.0.0 to 6.0.2Updates
clickfrom 8.4.1 to 8.4.2Changelog
Sourced from click's changelog.
Commits
b2e30a1Release version 8.4.27a16b20Fixpackage_nameresolution when module differs from distribution name (#3582)bec5928Fixpackage_nameresolution when top-level module differs from distribution...916883aFix tests to not rely on-Wdefaultoption (#3591)09195f6Fix double-bracketing of choices in synopsis (#3578)1557e26Check for warning exception with idiomatic context managerd9ff133Static typing improvements inclick.shell_completion(#3460)762c97eFix double-bracketing of choices in synopsis8929d39Convert changes to markdown. (#3559)237be50Move changes headings down a level.Updates
cryptographyfrom 48.0.0 to 49.0.0Changelog
Sourced from cryptography's changelog.
... (truncated)
Commits
e300bbebump version and changelog for 49.0.0 (#15030)fa74cd8Add external mu (message representative) support for ML-DSA (#14979)f594db3chore(deps): bump openssl from 0.10.80 to 0.10.81 (#15029)608e011chore(deps): bump openssl-sys from 0.9.116 to 0.9.117 (#15028)a322bc4chore(deps): bump cc from 1.2.63 to 1.2.64 (#15027)33181a7Reject critical nameConstraints extensions containing directoryName constrain...6080dc7Bump dependencies that dependabot isn't (#15026)121faa3chore(deps): bump virtualenv from 21.4.2 to 21.4.3 (#15023)829520bAdd more robust processing for DH parameters. (#15016)0f05001Bump downstream dependencies in CI (#15025)Updates
gssapifrom 1.8.2 to 1.11.1Release notes
Sourced from gssapi's releases.
Commits
5acb5b1Fix up classifier from typo02a1dbeFix up flake issue28ae966Add Free-Threading and Limited API/Stable ABI55df351Fix license file release0adf37cUse the SPDX license name in setup.py as required by PEP-63935cbd27Add long_description_content_type to setupd792186Update Python requirements and pin Cython6cd2011remove deprecated license classifier52bd8e9Fix type annotation for gssapi.creds.Credentials name property. Add test checks.fc7326eUpdate macOS build versionsUpdates
hpackfrom 4.1.0 to 4.2.0Changelog
Sourced from hpack's changelog.
Commits
d05cff4v4.2.04bdecf4packaging and dependencies++8cfb02cRestricte variable integer decoding to uint32 to prevent run-away computation77e36a9linting5258f14rename test file to avoice pyc import confusion44193d8project cleanupe0497f9Fix perfect match missed for headers with empty values: add test and changelog89cce96Fix perfect match missed for headers with empty values1621490Apply suggestion from@Kriechi517dd78Apply suggestion from@KriechiUpdates
idnafrom 3.16 to 3.18Changelog
Sourced from idna's changelog.
Commits
f39ea90Release 3.1840f4e40Pre-release 3.18rc01a5bf80Merge pull request #253 from kjd/lenient-decode5bbb26fMerge branch 'master' into lenient-decodec532baeRename decode() lenient= option to display= (issue #248)0b1758bMerge pull request #252 from kjd/release-3.17f48619cRelease 3.177421ba8Pre-release 3.17rc022ebb73Merge pull request #251 from kjd/structure-optimizations2a7ac0aDrop redundant parallel-arrays comment from uts46dataUpdates
pontosfrom 25.8.1 to 26.5.0Release notes
Sourced from pontos's releases.
... (truncated)
Commits
a380de6Automatic release to 26.5.012b9dd2Change: Rename "Status Change" to "CVE Status Change"fd0a178Deps: Bump urllib3 from 2.6.3 to 2.7.000adf54Update: Greenbone license headera793376Automatic adjustments after release [skip ci]7e3dffbAutomatic release to 26.4.3f2f0401Add: CVE Change event name "Data Remediation" (#1214)a81ba03Automatic adjustments after release [skip ci]46c3185Automatic release to 26.4.231d0465Use snake_case for release-version output variablesDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions