Bump requests from 2.27.1 to 2.28.1
Bumps requests from 2.27.1 to 2.28.1.
Release notes
Sourced from requests's releases.
v2.28.1
2.28.1 (2022-06-29)
Improvements
- Speed optimization in
iter_contentwith transition toyield from. (#6170)Dependencies
New Contributors
@hswong3imade their first contribution in psf/requests#6179@frenzymadnessmade their first contribution in psf/requests#6169Full Changelog: https://github.com/psf/requests/blob/main/HISTORY.md#2281-2022-06-29
v2.28.0
2.28.0 (2022-06-09)
Deprecations
- ⚠️ Requests has officially dropped support for Python 2.7. ⚠️ (#6091)
- Requests has officially dropped support for Python 3.6 (including pypy3). (#6091)
Improvements
- Wrap JSON parsing issues in Request's JSONDecodeError for payloads without an encoding to make
json()API consistent. (#6097)- Parse header components consistently, raising an InvalidHeader error in all invalid cases. (#6154)
- Added provisional 3.11 support with current beta build. (#6155)
- Requests got a makeover and we decided to paint it black. (#6095)
Bugfixes
- Fixed bug where setting
CURL_CA_BUNDLEto an empty string would disable cert verification. All Requests 2.x versions before 2.28.0 are affected. (#6074)- Fixed urllib3 exception leak, wrapping
urllib3.exceptions.SSLErrorwithrequests.exceptions.SSLErrorforcontentanditer_content. (#6057)- Fixed issue where invalid Windows registry entires caused proxy resolution to raise an exception rather than ignoring the entry. (#6149)
- Fixed issue where entire payload could be included in the error message for JSONDecodeError. (#6079)
New Contributors
@marwanpromade their first contribution in psf/requests#6035
... (truncated)
Changelog
Sourced from requests's changelog.
2.28.1 (2022-06-29)
Improvements
- Speed optimization in
iter_contentwith transition toyield from. (#6170)Dependencies
2.28.0 (2022-06-09)
Deprecations
- ⚠️ Requests has officially dropped support for Python 2.7. ⚠️ (#6091)
- Requests has officially dropped support for Python 3.6 (including pypy3.6). (#6091)
Improvements
- Wrap JSON parsing issues in Request's JSONDecodeError for payloads without an encoding to make
json()API consistent. (#6097)- Parse header components consistently, raising an InvalidHeader error in all invalid cases. (#6154)
- Added provisional 3.11 support with current beta build. (#6155)
- Requests got a makeover and we decided to paint it black. (#6095)
Bugfixes
- Fixed bug where setting
CURL_CA_BUNDLEto an empty string would disable cert verification. All Requests 2.x versions before 2.28.0 are affected. (#6074)- Fixed urllib3 exception leak, wrapping
urllib3.exceptions.SSLErrorwithrequests.exceptions.SSLErrorforcontentanditer_content. (#6057)- Fixed issue where invalid Windows registry entires caused proxy resolution to raise an exception rather than ignoring the entry. (#6149)
- Fixed issue where entire payload could be included in the error message for JSONDecodeError. (#6036)
Commits
4d39457v2.28.116b418bUse yield from instead of looping yield (#6170)0e28c8fAllow charset normalizer >=2 and <3 (#6169)73793ceUpdate Dependency withchardet>=3.0.2,<6(#6179)da9996fv2.28.01dcf3b7Add GitHub action to automate linting (#6157)e36f345Add valdation for header name (#6154)60865f2Run 3.11 CI on all platforms (#6155)3af2f45Fix output of test_lowlevel tests in case of timeout (#6136)0f358eaReduce lock thread runs to daily (#6150)- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
This Pull Request has been automatically closed due to inactivity. Feel free to reopen.
OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting @dependabot ignore this major version or @dependabot ignore this minor version. You can also ignore all major, minor, or patch releases for a dependency by adding an ignore condition with the desired update_types to your config file.
If you change your mind, just re-open this PR and I'll resolve any conflicts on it.