chore(deps): bump the package-updates group across 1 directory with 13 updates#3792
Open
dependabot[bot] wants to merge 1 commit into
Open
chore(deps): bump the package-updates group across 1 directory with 13 updates#3792dependabot[bot] wants to merge 1 commit into
dependabot[bot] wants to merge 1 commit into
Conversation
…3 updates Updates the requirements on [django-health-check](https://github.com/codingjoe/django-health-check), [django-storages[s3]](https://github.com/jschneier/django-storages), [django](https://github.com/django/django), [environs[django]](https://github.com/sloria/environs), [psycopg2-binary](https://github.com/psycopg/psycopg2), [sentry-sdk](https://github.com/getsentry/sentry-python), [granian](https://github.com/emmett-framework/granian), [bandit[toml]](https://github.com/PyCQA/bandit), [commitizen](https://github.com/commitizen-tools/commitizen), [coverage](https://github.com/coveragepy/coveragepy), [django-stubs](https://github.com/typeddjango/django-stubs), [pyrefly](https://github.com/facebook/pyrefly) and [ruff](https://github.com/astral-sh/ruff) to permit the latest version. Updates `django-health-check` from 4.2.2 to 4.4.0 - [Release notes](https://github.com/codingjoe/django-health-check/releases) - [Commits](codingjoe/django-health-check@4.2.2...4.4.0) Updates `django-storages[s3]` to 1.14.6 - [Changelog](https://github.com/jschneier/django-storages/blob/master/CHANGELOG.rst) - [Commits](jschneier/django-storages@1.14.4...1.14.6) Updates `django` from 5.2.13 to 6.0.5 - [Commits](django/django@5.2.13...6.0.5) Updates `environs[django]` to 15.0.1 - [Changelog](https://github.com/sloria/environs/blob/main/CHANGELOG.md) - [Commits](sloria/environs@11.0.0...15.0.1) Updates `psycopg2-binary` from 2.9.11 to 2.9.12 - [Changelog](https://github.com/psycopg/psycopg2/blob/master/NEWS) - [Commits](psycopg/psycopg2@2.9.11...2.9.12) Updates `sentry-sdk` from 2.57.0 to 2.59.0 - [Release notes](https://github.com/getsentry/sentry-python/releases) - [Changelog](https://github.com/getsentry/sentry-python/blob/master/CHANGELOG.md) - [Commits](getsentry/sentry-python@2.57.0...2.59.0) Updates `granian` from 2.7.3 to 2.7.4 - [Release notes](https://github.com/emmett-framework/granian/releases) - [Commits](emmett-framework/granian@v2.7.3...v2.7.4) Updates `bandit[toml]` to 1.9.4 - [Release notes](https://github.com/PyCQA/bandit/releases) - [Commits](PyCQA/bandit@1.7.9...1.9.4) Updates `commitizen` from 4.13.10 to 4.15.1 - [Release notes](https://github.com/commitizen-tools/commitizen/releases) - [Changelog](https://github.com/commitizen-tools/commitizen/blob/master/CHANGELOG.md) - [Commits](commitizen-tools/commitizen@v4.13.10...v4.15.1) Updates `coverage` from 7.13.5 to 7.14.0 - [Release notes](https://github.com/coveragepy/coveragepy/releases) - [Changelog](https://github.com/coveragepy/coveragepy/blob/main/CHANGES.rst) - [Commits](coveragepy/coveragepy@7.13.5...7.14.0) Updates `django-stubs` from 5.2.9 to 6.0.4 - [Release notes](https://github.com/typeddjango/django-stubs/releases) - [Commits](typeddjango/django-stubs@5.2.9...6.0.4) Updates `pyrefly` from 0.60.2 to 0.64.1 - [Release notes](https://github.com/facebook/pyrefly/releases) - [Commits](facebook/pyrefly@0.60.2...0.64.1) Updates `ruff` from 0.15.10 to 0.15.12 - [Release notes](https://github.com/astral-sh/ruff/releases) - [Changelog](https://github.com/astral-sh/ruff/blob/main/CHANGELOG.md) - [Commits](astral-sh/ruff@0.15.10...0.15.12) --- updated-dependencies: - dependency-name: django-health-check dependency-version: 4.4.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: package-updates - dependency-name: django-storages[s3] dependency-version: 1.14.6 dependency-type: direct:production dependency-group: package-updates - dependency-name: django dependency-version: 6.0.5 dependency-type: direct:production update-type: version-update:semver-major dependency-group: package-updates - dependency-name: environs[django] dependency-version: 15.0.1 dependency-type: direct:production dependency-group: package-updates - dependency-name: psycopg2-binary dependency-version: 2.9.12 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: package-updates - dependency-name: sentry-sdk dependency-version: 2.59.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: package-updates - dependency-name: granian dependency-version: 2.7.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: package-updates - dependency-name: bandit[toml] dependency-version: 1.9.4 dependency-type: direct:development dependency-group: package-updates - dependency-name: commitizen dependency-version: 4.15.1 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: package-updates - dependency-name: coverage dependency-version: 7.14.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: package-updates - dependency-name: django-stubs dependency-version: 6.0.4 dependency-type: direct:development update-type: version-update:semver-major dependency-group: package-updates - dependency-name: pyrefly dependency-version: 0.64.1 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: package-updates - dependency-name: ruff dependency-version: 0.15.12 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: package-updates ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Updates the requirements on django-health-check, django-storages[s3], django, environs[django], psycopg2-binary, sentry-sdk, granian, bandit[toml], commitizen, coverage, django-stubs, pyrefly and ruff to permit the latest version.
Updates
django-health-checkfrom 4.2.2 to 4.4.0Release notes
Sourced from django-health-check's releases.
Commits
e480bc0Resolve #724 -- Add public dataclass field as OpenMetric label (#725)e56c871Clean up storage probe files when validation fails (#717)3421a3cUpdate copilot review instructionsc674d2fRevert "Update celery requirement from >=5.0.0 to >=5.6.3"04a22e5Revert "Update flit-core requirement from >=3.2 to >=3.12.0"4d47e8aRevert "Update aio-pika requirement from >=9.0.0 to >=9.6.2"e0d4479Revert "Update django requirement from >=5.2 to >=5.2.13"8994dccRevert "Update confluent-kafka requirement from >=2.0.0 to >=2.14.0"1f31638Ref #701 -- Add support for a custom executor for synchronous checks (#716)b79e960Bump actions/upload-pages-artifact from 4 to 5Updates
django-storages[s3]to 1.14.6Changelog
Sourced from django-storages[s3]'s changelog.
... (truncated)
Commits
3658c3dBump version for release (#1497)d51b0bfRelease version 1.14.6 (#1496)6ef553d[s3] Defaulturl_protocoltohttps:if set to None (#1483)80031d3[docs/azure] Fix broken link (#1492)8363be3[s3] Pass object parameters to head_object inexists(#1451)aa8a82e[docs/gcloud] Clean-up querystring auth language (#1489)758ad6f[gcloud] Add option to sign URLs via IAM Blob API (#1427)03566dcAdd missing CHANGELOG entry for Dropbox fix (#1488)3c0fe9fRelease version 1.14.5 (#1487)5db357aApply additional validation in overwrite path (#1486)Updates
djangofrom 5.2.13 to 6.0.5Commits
8f8ad09[6.0.x] Bumped version for 6.0.5 release.44ad76e[6.0.x] Fixed CVE-2026-6907 -- Prevented caching of requests when Vary header...1b0184a[6.0.x] Fixed CVE-2026-35192 -- Ensured Vary header is sent when setting sess...ad8f9e1[6.0.x] Fixed CVE-2026-5766 -- Enforced DATA_UPLOAD_MAX_MEMORY_SIZE in Memory...990ab01[6.0.x] Fixed #37039 -- Removed outdated note from QuerySet.iterator() docs.f0c269f[6.0.x] Fixed typo in stub release notes for 5.2.14.8bcd15b[6.0.x] Fixed #37067 -- Added trailing slash in django_file_prefixes().3cdec64[6.0.x] Refs CVE-2026-25674 -- Clarified role of umask in upload permissions.5dd5c70[6.0.x] Added stub release notes and release date for 6.0.5 and 5.2.14.8ee7341[6.0.x] Refs #373, #34122 -- Removed warning that ForeignObject is an interna...Updates
environs[django]to 15.0.1Changelog
Sourced from environs[django]'s changelog.
... (truncated)
Commits
c6e5941Bump version and update changelog9c51c66Fix precedence of os.environ over .env (#465)4654e60Fix GH linksdf03407Bump version and update changelogad5942cMinor typing improvements (#463)1df5387read_env does not mutate os.environ (#462)b3fc5e8Drop marshmallow 3 (#461)b7bdc47Bump the all-dependencies group with 9 updates (#460)3ece1acBump astral-sh/setup-uv from 6 to 7 (#459)96f7b95Update dependabot config for uv updatesUpdates
psycopg2-binaryfrom 2.9.11 to 2.9.12Changelog
Sourced from psycopg2-binary's changelog.
... (truncated)
Commits
3a6d9d6ci: include almalinux in whieel buildingebca6bfchore: bump to version 3.9.120196f02build(deps): bump pypa/cibuildwheel from 3.3.1 to 3.4.0d157bdcbuild(deps): bump docker/setup-qemu-action from 3 to 47fccc0fbuild(deps): bump actions/upload-artifact from 6 to 7d52a61echore: bump dependency librariesb231d72chore: fix building binary images6d76e84Merge pull request #1836 from psycopg/fix-1835f7e314cfix: overflow in malformed intervaleb905c1docs: replace bare except clause with except ExceptionUpdates
sentry-sdkfrom 2.57.0 to 2.59.0Release notes
Sourced from sentry-sdk's releases.
... (truncated)
Changelog
Sourced from sentry-sdk's changelog.
... (truncated)
Commits
689cb97Update CHANGELOG.md397dda9release: 2.59.0c0c254atest: Rename file (#6194)d90a923ref(batcher): Only flush the bucket that triggered the flush event (#6168)6436518ci: 🤖 Update test matrix with new releases (05/04) (#6186)98294cefix: Introduce_get_current_streamed_span()to keep types backwards compati...66b3c6btest(fastmcp): Span streaming tests (#6167)b5735abfix(batcher): Reset lock and flusher in child after fork (#6163)fc3eab4fix(metrics,logs): Don't attachspan_idif no active span (#6162)8e5bd96test: Assert presence of profile chunks after shutdown (#6174)Updates
granianfrom 2.7.3 to 2.7.4Release notes
Sourced from granian's releases.
Commits
84af73dBump dependenciese155a82Avoid panics on RSGI and WSGI response headers parsing765203dAvoid panics on ASGI websocket subprotocols parsing88ed683Bump version to 2.7.4bdd5b0fUpdate bench harness (#837)Updates
bandit[toml]to 1.9.4Release notes
Sourced from bandit[toml]'s releases.
Commits
92ae8b8Fix B106 reporting wrong line number on multiline function calls (#1360)c8c8a55Lower version guard in check_ast_node to Python 3.12 (#1355)8f2f928Fix B615 false positive when revision is set via variable (#1358)e27493fInclude filename in nosec 'no failed test' warning (#1363)b69b336Fix B613 crash when reading from stdin (#1361)e418b79Bump docker/build-push-action from 6.18.0 to 6.19.2 (#1357)ff646fdBump docker/login-action from 3.6.0 to 3.7.0 (#1353)c0def6cchore: fixed some typos in comments (#1351)765f00dLimit B614 to torch.load deserializers (#1348)06fbbabBump docker/setup-buildx-action from 3.11.1 to 3.12.0 (#1347)Updates
commitizenfrom 4.13.10 to 4.15.1Release notes
Sourced from commitizen's releases.
Commits
efb1a7dbump: version 4.15.0 → 4.15.10cc88a5fix(security): prevent command injection via shell=True (CWE-78) (#1941)509ef91docs(cli/screenshots): update CLI screenshots9b53b63ci: rebase before push in screenshots workflow (#1942)bdcf27bdocs(cli/screenshots): update CLI screenshotsb4f4209bump: version 4.14.0 → 4.15.0b5e0840feat(version): add MANUAL_VERSION, --next and --patch to version command (#1724)d157e09docs(cli/screenshots): update CLI screenshots06850b2docs: update AGENTS.md with CI/linting guidance and known pitfalls (#1940)35ffe03docs(cli/screenshots): update CLI screenshotsUpdates
coveragefrom 7.13.5 to 7.14.0Changelog
Sourced from coverage's changelog.
Commits
646351bdocs: sample HTML for 7.14.039cd015docs: prep for 7.14.0649e8aadocs: thanks Alex Vandiver for #21658cd392efix: snapshot data in Collector.flush_data to avoid threading race (#2165)c48e0edfix: less output for combiningc2a3a28docs: explain the change from #21621cd47aafix: implicit combine-during-report now removes the combined data files2d99fd7feat: automatically combine coverage in report, thanks Tim Hatch (#2162)9fbdcdffix: lazy soft keywords are bolded5de7d02build: oops, misplaced quoteUpdates
django-stubsfrom 5.2.9 to 6.0.4Commits
928eec4Version 6.0.4 release (#3375)a994204Update dependency mypy to v2 (#3374)ec8107bUpdate dependency pyrefly to v0.64.0 (#3373)28d997bRemove unused get_field_lookup_exact_type from helpers (#3372)d312d60Update dependency django to v5.2.14 (#3371)f20e490Update Django to 6.0.5 (#3369)6d9d0e2Resolve default_alias for positional Aggregate in annotate() (#3362)6dd9231Update int128/hide-comment-action action to v1.58.0 (#3368)e270482Update dependency psycopg to v3.3.4 (#3365)cfb0f9aUpdate dependency pyrefly to v0.63.1 (#3367)Updates
pyreflyfrom 0.60.2 to 0.64.1Release notes
Sourced from pyrefly's releases.