github-actions-version-updater
github-actions-version-updater copied to clipboard
Bump the dependencies group across 1 directory with 3 updates
Bumps the dependencies group with 3 updates in the / directory: packaging, pyyaml and requests.
Updates packaging from 21.3 to 24.2
Release notes
Sourced from packaging's releases.
24.2
What's Changed
- The source is auto-formatted with ruff, not black by
@DimitriPapadopoulosin pypa/packaging#798- Bump the github-actions group across 1 directory with 3 updates by
@dependabotin pypa/packaging#813- Apply ruff rules (RUF) by
@DimitriPapadopoulosin pypa/packaging#800- Fix typo in Version
__str__by@aryanpinglein pypa/packaging#817- Bump the github-actions group with 3 updates by
@dependabotin pypa/packaging#819- Get rid of duplicate test cases by
@DimitriPapadopoulosin pypa/packaging#821- Fix doc for canonicalize_version and a typo in a docstring by
@Laurent-Dxin pypa/packaging#801- docs: public/base_version comparison by
@henryiiiin pypa/packaging#818- Apply ruff/bugbear rules (B) by
@DimitriPapadopoulosin pypa/packaging#787- Apply ruff/pyupgrade rules (UP) by
@DimitriPapadopoulosin pypa/packaging#786- Add a changelog entry for dropping Python 3.7 support by
@alexwlchanin pypa/packaging#824- Patch python_full_version unconditionally by
@jaracoin pypa/packaging#825- Refactor canonicalize_version by
@jaracoin pypa/packaging#793- Allow creating a SpecifierSet from a list of specifiers by
@pfmoorein pypa/packaging#777- Fix uninformative error message by
@abravalheriin pypa/packaging#830- Fix prerelease detection for
>and<by@notatallshawin pypa/packaging#794- Bump the github-actions group across 1 directory with 4 updates by
@dependabotin pypa/packaging#839- Add support for PEP 730 iOS tags. by
@freakboy3742in pypa/packaging#832- Update the changelog to reflect 24.1 changes by
@pradyunsgin pypa/packaging#840- Mention updating changelog in release process by
@pradyunsgin pypa/packaging#841- Add a comment as to why
Metadata.nameisn't normalized by@brettcannonin pypa/packaging#842- Use !r formatter for error messages with filenames. by
@Carreauin pypa/packaging#844- PEP 639: Implement License-Expression and License-File by
@ewdurbinin pypa/packaging#828- Bump the github-actions group with 4 updates by
@dependabotin pypa/packaging#852- Upgrade to latest mypy by
@hauntsaninjain pypa/packaging#853- Extraneous quotes by
@ewdurbinin pypa/packaging#848New Contributors
@aryanpinglemade their first contribution in pypa/packaging#817@Laurent-Dxmade their first contribution in pypa/packaging#801@alexwlchanmade their first contribution in pypa/packaging#824@jaracomade their first contribution in pypa/packaging#825@notatallshawmade their first contribution in pypa/packaging#794@freakboy3742made their first contribution in pypa/packaging#832@Carreaumade their first contribution in pypa/packaging#844@ewdurbinmade their first contribution in pypa/packaging#828Full Changelog: https://github.com/pypa/packaging/compare/24.1...24.2
24.1
What's Changed
- pyupgrade/black/isort/flake8 → ruff by
@DimitriPapadopoulosin pypa/packaging#769- Add support for Python 3.13 and drop EOL 3.7 by
@hugovkin pypa/packaging#783- Bump the github-actions group with 4 updates by
@dependabotin pypa/packaging#782- Fix typo in
_parserdocstring by@pradyunsgin pypa/packaging#784- Modernise type annotations using FA rules from ruff by
@pradyunsgin pypa/packaging#785- Document
markers.default_environment()by@edgarrmondragonin pypa/packaging#753- Bump the github-actions group with 3 updates by
@dependabotin pypa/packaging#789
... (truncated)
Changelog
Sourced from packaging's changelog.
24.2 - 2024-11-08
* PEP 639: Implement License-Expression and License-File (:issue:`828`) * Use ``!r`` formatter for error messages with filenames (:issue:`844`) * Add support for PEP 730 iOS tags (:issue:`832`) * Fix prerelease detection for ``>`` and ``<`` (:issue:`794`) * Fix uninformative error message (:issue:`830`) * Refactor ``canonicalize_version`` (:issue:`793`) * Patch python_full_version unconditionally (:issue:`825`) * Fix doc for ``canonicalize_version`` to mention ``strip_trailing_zero`` and a typo in a docstring (:issue:`801`) * Fix typo in Version ``__str__`` (:issue:`817`) * Support creating a ``SpecifierSet`` from an iterable of ``Specifier`` objects (:issue:`775`)24.1 - 2024-06-10
- Document
markers.default_environment()(:issue:753).- Add support for Python 3.13 (:issue:
783).- Modernise type annotations (:issue:
785).- Work around
platform.python_version()returning non PEP 440 compliant version for non-tagged CPython builds (:issue:802).24.0 - 2024-03-10
* Do specifier matching correctly when the specifier contains an epoch number and has more components than the version (:issue:`683`) * Support the experimental ``--disable-gil`` builds in packaging.tags (:issue:`727`) * BREAKING: Make optional ``metadata.Metadata`` attributes default to ``None`` (:issue:`733`) * Fix errors when trying to access the ``description_content_type``, ``keywords``, and ``requires_python`` attributes on ``metadata.Metadata`` when those values have not been provided (:issue:`733`) * Fix a bug preventing the use of the built in ``ExceptionGroup`` on versions of Python that support it (:issue:`725`)23.2 - 2023-10-01
- Document calendar-based versioning scheme (:issue:
716)- Enforce that the entire marker string is parsed (:issue:
687)- Requirement parsing no longer automatically validates the URL (:issue:
120)- Canonicalize names for requirements comparison (:issue:
644)- Introduce
metadata.Metadata(along withmetadata.ExceptionGroupandmetadata.InvalidMetadata; :issue:570)- Introduce the
validatekeyword parameter toutils.normalize_name()(:issue:570)- Introduce
utils.is_normalized_name()(:issue:570)- Make
utils.parse_sdist_filename()andutils.parse_wheel_filename()raiseInvalidSdistFilenameandInvalidWheelFilename, respectively, when the version component of the name is invalid
... (truncated)
Commits
d8e3b31Bump for release2de393dUpdate changelog for release9c66f5cRemove extraneous quotes in f-strings by using!r(#848)4dc334cUpgrade to latest mypy (#853)d1a9f93Bump the github-actions group with 4 updates (#852)029f415PEP 639: Implement License-Expression and License-File (#828)6c338a8Use !r formatter for error messages with filenames. (#844)28e7da7Add a comment as to whyMetadata.nameisn't normalized (#842)ce0d79cMention updating changelog in release process (#841)ac5bdf3Update the changelog to reflect 24.1 changes (#840)- Additional commits viewable in compare view
Updates pyyaml from 6.0.1 to 6.0.2
Release notes
Sourced from pyyaml's releases.
6.0.2
What's Changed
- Support for Cython 3.x and Python 3.13.
Full Changelog: https://github.com/yaml/pyyaml/compare/6.0.1...6.0.2
6.0.2rc1
- Support for extension build with Cython 3.x
- Support for Python 3.13
- Added PyPI wheels for musllinux on aarch64
Changelog
Sourced from pyyaml's changelog.
6.0.2 (2024-08-06)
- yaml/pyyaml#808 -- Support for Cython 3.x and Python 3.13
Commits
Updates requests from 2.31.0 to 2.32.3
Release notes
Sourced from requests's releases.
v2.32.3
2.32.3 (2024-05-29)
Bugfixes
- Fixed bug breaking the ability to specify custom SSLContexts in sub-classes of HTTPAdapter. (#6716)
- Fixed issue where Requests started failing to run on Python versions compiled without the
sslmodule. (#6724)v2.32.2
2.32.2 (2024-05-21)
Deprecations
To provide a more stable migration for custom HTTPAdapters impacted by the CVE changes in 2.32.0, we've renamed
_get_connectionto a new public API,get_connection_with_tls_context. Existing custom HTTPAdapters will need to migrate their code to use this new API.get_connectionis considered deprecated in all versions of Requests>=2.32.0.A minimal (2-line) example has been provided in the linked PR to ease migration, but we strongly urge users to evaluate if their custom adapter is subject to the same issue described in CVE-2024-35195. (#6710)
v2.32.1
2.32.1 (2024-05-20)
Bugfixes
- Add missing test certs to the sdist distributed on PyPI.
v2.32.0
2.32.0 (2024-05-20)
🐍 PYCON US 2024 EDITION 🐍
Security
- Fixed an issue where setting
verify=Falseon the first request from a Session will cause subsequent requests to the same origin to also ignore cert verification, regardless of the value ofverify. (https://github.com/psf/requests/security/advisories/GHSA-9wx4-h78v-vm56)Improvements
verify=Truenow reuses a global SSLContext which should improve request time variance between first and subsequent requests. It should also minimize certificate load time on Windows systems when using a Python version built with OpenSSL 3.x. (#6667)- Requests now supports optional use of character detection (
chardetorcharset_normalizer) when repackaged or vendored.
... (truncated)
Changelog
Sourced from requests's changelog.
2.32.3 (2024-05-29)
Bugfixes
- Fixed bug breaking the ability to specify custom SSLContexts in sub-classes of HTTPAdapter. (#6716)
- Fixed issue where Requests started failing to run on Python versions compiled without the
sslmodule. (#6724)2.32.2 (2024-05-21)
Deprecations
To provide a more stable migration for custom HTTPAdapters impacted by the CVE changes in 2.32.0, we've renamed
_get_connectionto a new public API,get_connection_with_tls_context. Existing custom HTTPAdapters will need to migrate their code to use this new API.get_connectionis considered deprecated in all versions of Requests>=2.32.0.A minimal (2-line) example has been provided in the linked PR to ease migration, but we strongly urge users to evaluate if their custom adapter is subject to the same issue described in CVE-2024-35195. (#6710)
2.32.1 (2024-05-20)
Bugfixes
- Add missing test certs to the sdist distributed on PyPI.
2.32.0 (2024-05-20)
Security
- Fixed an issue where setting
verify=Falseon the first request from a Session will cause subsequent requests to the same origin to also ignore cert verification, regardless of the value ofverify. (https://github.com/psf/requests/security/advisories/GHSA-9wx4-h78v-vm56)Improvements
verify=Truenow reuses a global SSLContext which should improve request time variance between first and subsequent requests. It should also minimize certificate load time on Windows systems when using a Python version built with OpenSSL 3.x. (#6667)- Requests now supports optional use of character detection (
chardetorcharset_normalizer) when repackaged or vendored. This enablespipand other projects to minimize their vendoring surface area. TheResponse.text()andapparent_encodingAPIs will default toutf-8if neither library is present. (#6702)
... (truncated)
Commits
0e322afv2.32.3e188799Don't create default SSLContext if ssl module isn't present (#6724)145b539Merge pull request #6716 from sigmavirus24/bug/6715b1d73ddDon't use default SSLContext with custom poolmanager kwargs6badbacUpdate HISTORY.mda62a2d3Allow for overriding of specific pool key params88dce9dv2.32.2c98e4d1Merge pull request #6710 from nateprewitt/api_rename92075b3Add deprecation warningaa1461bMove _get_connection to get_connection_with_tls_context- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions