Bump the pip group across 1 directory with 12 updates#1
Open
dependabot[bot] wants to merge 1 commit intomasterfrom
Open
Bump the pip group across 1 directory with 12 updates#1dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot[bot] wants to merge 1 commit intomasterfrom
Conversation
Bumps the pip group with 12 updates in the /lexpredict_openedgar/requirements directory: | Package | From | To | | --- | --- | --- | | [django](https://github.com/django/django) | `2.0.8` | `4.2.20` | | [pillow](https://github.com/python-pillow/Pillow) | `5.0.0` | `10.3.0` | | [celery](https://github.com/celery/celery) | `3.1.25` | `5.3.6` | | [requests](https://github.com/psf/requests) | `2.20.0` | `2.32.2` | | [notebook](https://github.com/jupyter/notebook) | `5.7.1` | `6.4.12` | | [urllib3](https://github.com/urllib3/urllib3) | `1.23` | `1.26.19` | | [lxml](https://github.com/lxml/lxml) | `4.1.1` | `4.9.1` | | [numpy](https://github.com/numpy/numpy) | `1.14.3` | `1.16.1` | | [werkzeug](https://github.com/pallets/werkzeug) | `0.14.1` | `3.0.6` | | [django-debug-toolbar](https://github.com/django-commons/django-debug-toolbar) | `1.9.1` | `5.1.0` | | [gevent](https://github.com/gevent/gevent) | `1.2.2` | `23.9.0` | | [gunicorn](https://github.com/benoitc/gunicorn) | `19.7.1` | `23.0.0` | Updates `django` from 2.0.8 to 4.2.20 - [Commits](django/django@2.0.8...4.2.20) Updates `pillow` from 5.0.0 to 10.3.0 - [Release notes](https://github.com/python-pillow/Pillow/releases) - [Changelog](https://github.com/python-pillow/Pillow/blob/main/CHANGES.rst) - [Commits](python-pillow/Pillow@5.0.0...10.3.0) Updates `celery` from 3.1.25 to 5.3.6 - [Release notes](https://github.com/celery/celery/releases) - [Changelog](https://github.com/celery/celery/blob/main/Changelog.rst) - [Commits](celery/celery@v3.1.25...v5.3.6) Updates `requests` from 2.20.0 to 2.32.2 - [Release notes](https://github.com/psf/requests/releases) - [Changelog](https://github.com/psf/requests/blob/main/HISTORY.md) - [Commits](psf/requests@v2.20.0...v2.32.2) Updates `notebook` from 5.7.1 to 6.4.12 - [Release notes](https://github.com/jupyter/notebook/releases) - [Changelog](https://github.com/jupyter/notebook/blob/main/CHANGELOG.md) - [Commits](jupyter/notebook@5.7.1...6.4.12) Updates `urllib3` from 1.23 to 1.26.19 - [Release notes](https://github.com/urllib3/urllib3/releases) - [Changelog](https://github.com/urllib3/urllib3/blob/main/CHANGES.rst) - [Commits](urllib3/urllib3@1.23...1.26.19) Updates `lxml` from 4.1.1 to 4.9.1 - [Release notes](https://github.com/lxml/lxml/releases) - [Changelog](https://github.com/lxml/lxml/blob/master/CHANGES.txt) - [Commits](lxml/lxml@lxml-4.1.1...lxml-4.9.1) Updates `numpy` from 1.14.3 to 1.16.1 - [Release notes](https://github.com/numpy/numpy/releases) - [Changelog](https://github.com/numpy/numpy/blob/main/doc/RELEASE_WALKTHROUGH.rst) - [Commits](numpy/numpy@v1.14.3...v1.16.1) Updates `werkzeug` from 0.14.1 to 3.0.6 - [Release notes](https://github.com/pallets/werkzeug/releases) - [Changelog](https://github.com/pallets/werkzeug/blob/main/CHANGES.rst) - [Commits](pallets/werkzeug@0.14.1...3.0.6) Updates `django-debug-toolbar` from 1.9.1 to 5.1.0 - [Release notes](https://github.com/django-commons/django-debug-toolbar/releases) - [Changelog](https://github.com/django-commons/django-debug-toolbar/blob/main/docs/changes.rst) - [Commits](django-commons/django-debug-toolbar@1.9.1...5.1.0) Updates `gevent` from 1.2.2 to 23.9.0 - [Release notes](https://github.com/gevent/gevent/releases) - [Changelog](https://github.com/gevent/gevent/blob/master/docs/changelog_1_2.rst) - [Commits](gevent/gevent@1.2.2...23.9.0) Updates `gunicorn` from 19.7.1 to 23.0.0 - [Release notes](https://github.com/benoitc/gunicorn/releases) - [Commits](benoitc/gunicorn@19.7.1...23.0.0) --- updated-dependencies: - dependency-name: django dependency-type: direct:production dependency-group: pip - dependency-name: pillow dependency-type: direct:production dependency-group: pip - dependency-name: celery dependency-type: direct:production dependency-group: pip - dependency-name: requests dependency-type: direct:production dependency-group: pip - dependency-name: notebook dependency-type: direct:production dependency-group: pip - dependency-name: urllib3 dependency-type: direct:production dependency-group: pip - dependency-name: lxml dependency-type: direct:production dependency-group: pip - dependency-name: numpy dependency-type: direct:production dependency-group: pip - dependency-name: werkzeug dependency-type: direct:production dependency-group: pip - dependency-name: django-debug-toolbar dependency-type: direct:production dependency-group: pip - dependency-name: gevent dependency-type: direct:production dependency-group: pip - dependency-name: gunicorn dependency-type: direct:production dependency-group: pip ... Signed-off-by: dependabot[bot] <support@github.com>
|
Important Review skippedBot user detected. To trigger a single review, invoke the You can disable this status message by setting the Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. 🪧 TipsChatThere are 3 ways to chat with CodeRabbit:
Note: Be mindful of the bot's finite context window. It's strongly recommended to break down tasks such as reading entire modules into smaller chunks. For a focused discussion, use review comments to chat about specific files and their changes, instead of using the PR comments. CodeRabbit Commands (Invoked using PR comments)
Other keywords and placeholders
CodeRabbit Configuration File (
|
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the pip group with 12 updates in the /lexpredict_openedgar/requirements directory:
2.0.84.2.205.0.010.3.03.1.255.3.62.20.02.32.25.7.16.4.121.231.26.194.1.14.9.11.14.31.16.10.14.13.0.61.9.15.1.01.2.223.9.019.7.123.0.0Updates
djangofrom 2.0.8 to 4.2.20Commits
35c58a7[4.2.x] Bumped version for 4.2.20 release.e88f737[4.2.x] Fixed CVE-2025-26699 -- Mitigated potential DoS in wordwrap template ...348e46a[4.2.x] Added stub release notes and release date for 4.2.20.73e2107[4.2.x] Post-release version bump.db89d2f[4.2.x] Bumped version for 4.2.19 release.83231cc[4.2.x] Added release date for 4.2.19.7bd1ddf[4.2.x] Refs #34060 -- Adjusted CVE-2024-53908 regression test for psycopg2.57b0229[4.2.x] Refs #36098 -- Fixed validate_ipv4_address() crash for non-string val...043dfad[4.2.x] Fixed #36098 -- Fixed validate_ipv6_address()/validate_ipv46_address(...8769b44[4.2.x] Added CVE-2024-56374 to security archive.Updates
pillowfrom 5.0.0 to 10.3.0Release notes
Sourced from pillow's releases.
... (truncated)
Changelog
Sourced from pillow's changelog.
... (truncated)
Commits
5c89d8810.3.0 version bump63cbfcfUpdate CHANGES.rst [ci skip]2776126Merge pull request #7928 from python-pillow/lcmsaeb51cbMerge branch 'main' into lcms5beb0b6Update CHANGES.rst [ci skip]cac6ffaMerge pull request #7927 from python-pillow/imagemathf5eeeacName as 'options' in lambda_eval and unsafe_eval, but '_dict' in deprecated evalfacf3afAdded release notes2a93abaUse strncpy to avoid buffer overflowa670597Update CHANGES.rst [ci skip]Updates
celeryfrom 3.1.25 to 5.3.6Release notes
Sourced from celery's releases.
... (truncated)
Changelog
Sourced from celery's changelog.
... (truncated)
Commits
b8c67a7Bump version: 5.3.5 → 5.3.69159e85Added changelog for v5.3.6 release (#8659)9bcc6a9Re-raise ModuleNotFoundError unless for guessed task (#8660)3ba50e4Propagates more ImportErrors during autodiscovery (#8632)aaec27aUpdate elasticsearch version (#8656)269fa21test requirements version update (#8655)d29afbaUpdate kombu>=5.3.4 to fix SQS request compatibility (#8646)ca1dfbdUpdate task.py get_custom_headers missing 'compression' key (#8633)709c5e7Fix non-zero exit code when receiving remote shutdown (#8650)bad2750Incredibly minor spelling fix. (#8649)Updates
requestsfrom 2.20.0 to 2.32.2Release notes
Sourced from requests's releases.
... (truncated)
Changelog
Sourced from requests's changelog.
... (truncated)
Commits
88dce9dv2.32.2c98e4d1Merge pull request #6710 from nateprewitt/api_rename92075b3Add deprecation warningaa1461bMove _get_connection to get_connection_with_tls_context970e8cev2.32.1d6ebc4av2.32.09a40d12Avoid reloading root certificates to improve concurrent performance (#6667)0c030f7Merge pull request #6702 from nateprewitt/no_char_detection555b870Allow character detection dependencies to be optional in post-packaging stepsd6dded3Merge pull request #6700 from franekmagiera/update-redirect-to-invalid-uri-testUpdates
notebookfrom 5.7.1 to 6.4.12Release notes
Sourced from notebook's releases.
... (truncated)
Changelog
Sourced from notebook's changelog.
... (truncated)
Commits
aee4535Release 6.4.12a161ffaMerge pull request from GHSA-v7vq-3x77-87vgb79702cupdated error messages to not mention hidden filescb3dc22Update notebook/services/contents/filemanager.py1c3d7a6added hidden checks on handlers.py and accompanying testsf69eb96added hidden checks on FileContentsManager and accompanying tests2a76184add checks for hidden file or path on file get920c5ccMerge pull request #6421 from RRosio/update-versiond4eb85dupdating version to show dev8109251Publish 6.4.11Updates
urllib3from 1.23 to 1.26.19Release notes
Sourced from urllib3's releases.
... (truncated)
Changelog
Sourced from urllib3's changelog.
... (truncated)
Commits
d9d85c8Release 1.26.198528b63[1.26] Fix downstream tests (#3409)40b6d16Merge pull request from GHSA-34jh-p97f-mpxf29cfd02Fix handling of OpenSSL 3.2.0 new error message "record layer failure" (#3405)b600643[1.26] Bump RECENT_DATE (#3404)7e2d389[1.26] Fix running CPython 2.7 tests in CI (#3137)9c2c230Release 1.26.18 (#3159)b594c5cMerge pull request from GHSA-g4mx-q9vg-27p4944f0eb[1.26] Use vendored six in urllib3.contrib.securetransportc9016bfRelease 1.26.17Updates
lxmlfrom 4.1.1 to 4.9.1Changelog
Sourced from lxml's changelog.
... (truncated)
Commits
d01872cPrevent parse failure in new test from leaking into later test runs.d65e632Prepare release of lxml 4.9.1.86368e9Fix a crash when incorrect parser input occurs together with usages of iterwa...50c2764Delete unused Travis CI config and reference in docs (GH-345)8f0bf2dTry to speed up the musllinux AArch64 build by splitting the different CPytho...b9f7074Remove debug print from test.b224e0fTry to install 'xz' in wheel builds, if available, since it's now needed to e...897ebfaUpdate macOS deployment target version from 10.14 to 10.15 since 10.14 starts...853c9e9Prepare release of 4.9.0.d3f77e6Add a test for https://bugs.launchpad.net/lxml/+bug/1965070 leaving out the a...Updates
numpyfrom 1.14.3 to 1.16.1Release notes
Sourced from numpy's releases.