Skip to content

Update dependency python-poetry/poetry to v2.3.4#1342

Merged
simu merged 1 commit into
masterfrom
renovate/python-poetry-poetry-2.x
Apr 13, 2026
Merged

Update dependency python-poetry/poetry to v2.3.4#1342
simu merged 1 commit into
masterfrom
renovate/python-poetry-poetry-2.x

Conversation

@renovate
Copy link
Copy Markdown
Contributor

@renovate renovate Bot commented Apr 12, 2026

This PR contains the following updates:

Package Update Change
python-poetry/poetry patch 2.3.32.3.4

Release Notes

python-poetry/poetry (python-poetry/poetry)

v2.3.4

Compare Source

Fixed
  • Fix a performance regression in the wheel installer that was introduced in Poetry 2.3.3 (#​10821).
  • Fix a path traversal vulnerability in sdist extraction on Python 3.10.0-3.10.12 and 3.11.0-3.11.4 that could allow malicious tarball files to write files outside the target directory (#​10837).

Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate Bot added the dependency Pull requests that update a dependency file label Apr 12, 2026
@renovate renovate Bot requested a review from a team as a code owner April 12, 2026 17:02
@renovate renovate Bot added the dependency Pull requests that update a dependency file label Apr 12, 2026
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
@renovate renovate Bot force-pushed the renovate/python-poetry-poetry-2.x branch from a668b9f to f156d72 Compare April 13, 2026 04:42
@simu simu merged commit fd096ab into master Apr 13, 2026
24 checks passed
@simu simu deleted the renovate/python-poetry-poetry-2.x branch April 13, 2026 07:07
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependency Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant