fix(deps): bump the python-dependencies group in /backend with 6 updates - #174
Open
dependabot[bot] wants to merge 1 commit into
Open
dependabot[bot] wants to merge 1 commit into
dependabot[bot] wants to merge 1 commit into
Conversation
Bumps the python-dependencies group in /backend with 6 updates: | Package | From | To | | --- | --- | --- | | [coverage](https://github.com/coveragepy/coveragepy) | `7.16.1` | `7.16.2` | | [cryptography](https://github.com/pyca/cryptography) | `50.0.1` | `50.0.2` | | [fastapi](https://github.com/fastapi/fastapi) | `0.141.1` | `0.142.2` | | [pylint](https://github.com/pylint-dev/pylint) | `4.0.9` | `4.1.1` | | [pymongo](https://github.com/mongodb/mongo-python-driver) | `4.18.1` | `4.18.2` | | [uvicorn](https://github.com/Kludex/uvicorn) | `0.53.0` | `0.54.0` | Updates `coverage` from 7.16.1 to 7.16.2 - [Release notes](https://github.com/coveragepy/coveragepy/releases) - [Changelog](https://github.com/coveragepy/coveragepy/blob/main/CHANGES.rst) - [Commits](coveragepy/coveragepy@7.16.1...7.16.2) Updates `cryptography` from 50.0.1 to 50.0.2 - [Changelog](https://github.com/pyca/cryptography/blob/main/CHANGELOG.rst) - [Commits](pyca/cryptography@50.0.1...50.0.2) Updates `fastapi` from 0.141.1 to 0.142.2 - [Release notes](https://github.com/fastapi/fastapi/releases) - [Commits](fastapi/fastapi@0.141.1...0.142.2) Updates `pylint` from 4.0.9 to 4.1.1 - [Release notes](https://github.com/pylint-dev/pylint/releases) - [Commits](pylint-dev/pylint@v4.0.9...v4.1.1) Updates `pymongo` from 4.18.1 to 4.18.2 - [Release notes](https://github.com/mongodb/mongo-python-driver/releases) - [Changelog](https://github.com/mongodb/mongo-python-driver/blob/main/doc/changelog.rst) - [Commits](mongodb/mongo-python-driver@4.18.1...4.18.2) Updates `uvicorn` from 0.53.0 to 0.54.0 - [Release notes](https://github.com/Kludex/uvicorn/releases) - [Changelog](https://github.com/Kludex/uvicorn/blob/main/docs/release-notes.md) - [Commits](Kludex/uvicorn@0.53.0...0.54.0) --- updated-dependencies: - dependency-name: coverage dependency-version: 7.16.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: python-dependencies - dependency-name: cryptography dependency-version: 50.0.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: python-dependencies - dependency-name: fastapi dependency-version: 0.142.2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: python-dependencies - dependency-name: pylint dependency-version: 4.1.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: python-dependencies - dependency-name: pymongo dependency-version: 4.18.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: python-dependencies - dependency-name: uvicorn dependency-version: 0.54.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: python-dependencies ... Signed-off-by: dependabot[bot] <[email protected]>
This branch has not been deployed
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the python-dependencies group in /backend with 6 updates:
7.16.17.16.250.0.150.0.20.141.10.142.24.0.94.1.14.18.14.18.20.53.00.54.0Updates
coveragefrom 7.16.1 to 7.16.2Release notes
Sourced from coverage's releases.
Changelog
Sourced from coverage's changelog.
Commits
5643ae7docs: prep for 7.16.2a3e969ffix: dynamic_context for@staticmethodand@classmethodtests (issue 1923) (#...8ad7236fix: stop counting the try/else line when a with statement raises (#2301)c6dab1ffix(debug): debug output doesn't mis-handle odd line separators #229608fbc32style: Protocols should use...for method bodiesbc7b0e3refactor: positional-only args are better than pragmas52afd6bDocument parallel tox coverage data files (#2284)f653aaefix: loop completion arcs on Python 3.14 (#2281)cc1ced4test: PyPy still compiles comprehensions as functions85a9088chore: make upgradeUpdates
cryptographyfrom 50.0.1 to 50.0.2Changelog
Sourced from cryptography's changelog.
Commits
4dda5c7[50.0.x] Bump for 50.0.2 release + changelog (#15733)70c881c[50.0.x] Bump pyo3 to 0.29.2 (#15731)a8c45c4[50.0.x] Build abi3.abi3t wheels for CPython 3.15+ (#15496) (#15732)Updates
fastapifrom 0.141.1 to 0.142.2Release notes
Sourced from fastapi's releases.
... (truncated)
Commits
78c4324🔖 Release version 0.142.2 (#16419)2579ed0📝 Update release notes1d4953d🐛 Allow startup when automatic OpenTelemetry configuration fails (#16418)3e33a03🔖 Release version 0.142.1 (#16415)12ea7f5📝 Update release notesac88f56🐛 Fix repeated endpoint wrapping in included routers (#16414)bd41128🔖 Release version 0.142.0 (#16411)7aa21e5📝 Update release notes4b3949c✨ Add native OpenTelemetry support (#16403)c30032a📝 Update release notesUpdates
pylintfrom 4.0.9 to 4.1.1Release notes
Sourced from pylint's releases.
... (truncated)
Commits
8c6dacaBump pylint to 4.1.1, update changelog (#11499)bdb17b3[Backport maintenance/4.1.x] Only pin the unreleased dill for the tests (#11498)92bb7baBump pylint to 4.1.0, update changelog9144956Fix a crash in import-private-name on attribute access rooted at a non-Name n...68366cbFix false positive forunnecessary-lambdawhen variable is reassigned or de...c741677[pre-commit.ci] pre-commit autoupdate (#11488)a9ebdf6Add regression test for unsubscriptable-object FP on class_getitem (#11487)b877d3bDo not flag ungrouped imports inside OS platform guards (#11217)87351beUpdate OSS-Fuzz docs for Python 3.14 (#11485)4f263c1Fix access checks through called methods (#11456)Updates
pymongofrom 4.18.1 to 4.18.2Release notes
Sourced from pymongo's releases.
Changelog
Sourced from pymongo's changelog.
Commits
640dd23Prep 4.18.2 release (#3066)6a0ec65Update changelog for CVE-2026-88029 reference (#3049)44be553BUMP 4.18.2.dev0Updates
uvicornfrom 0.53.0 to 0.54.0Release notes
Sourced from uvicorn's releases.
Changelog
Sourced from uvicorn's changelog.
Commits
3eb9a9aVersion 0.54.0 (#3161)cd7ef6dRemove races from supervisor tests (#3134)a56c7ccSupport HTTP/2 response trailers (#3146)9bd4404chore(deps): bump anyio from 4.13.0 to 4.14.2 (#3145)21f39efAdd HTTP/2 Early Hints support (#3137)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions