Skip to content

Commit a3d0a57

Browse files
committed
fix(deps): upgrade pip to 26.1.2 for uv audit (PYSEC-2026-196)
1 parent 6bc4f97 commit a3d0a57

3 files changed

Lines changed: 7 additions & 5 deletions

File tree

CHANGELOG.md

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,8 @@ and this project adheres to [Semantic Versioning](https://semver.org/spec/v2.0.0
99

1010
### Fixed
1111

12-
- Dependency audit: pin ``uv>=0.11.15`` (GHSA-4gg8-gxpx-9rph).
12+
- Dependency audit: pin ``uv>=0.11.15`` (GHSA-4gg8-gxpx-9rph); upgrade ``pip`` to
13+
26.1.2 (PYSEC-2026-196, Briefcase transitive dep).
1314

1415
## [0.4.0] - 2026-06-01
1516

pyproject.toml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -144,7 +144,7 @@ quiet = false
144144

145145
[tool.uv]
146146
exclude-newer = "1 week"
147-
exclude-newer-package = { lxml = false, idna = false }
147+
exclude-newer-package = { lxml = false, idna = false, pip = false }
148148

149149
[tool.towncrier]
150150
package = "dbs_annotator"

uv.lock

Lines changed: 4 additions & 3 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

0 commit comments

Comments
 (0)