Bump the python-requirements group with 10 updates - #138
Open
dependabot[bot] wants to merge 1 commit into
Open
Conversation
Updates the requirements on [aiohttp](https://github.com/aio-libs/aiohttp), [cachetools](https://github.com/tkem/cachetools), [markdownify](https://github.com/matthewwithanm/python-markdownify), [mistune](https://github.com/lepture/mistune), [regex](https://github.com/mrabarnett/mrab-regex), [sentry-sdk[pure-eval]](https://github.com/getsentry/sentry-python), [yarl](https://github.com/aio-libs/yarl), [ruff](https://github.com/astral-sh/ruff), [setuptools](https://github.com/pypa/setuptools) and [setuptools-scm](https://github.com/pypa/setuptools-scm) to permit the latest version. Updates `aiohttp` from 3.14.1 to 3.14.3 - [Changelog](https://github.com/aio-libs/aiohttp/blob/master/CHANGES.rst) - [Commits](aio-libs/aiohttp@v3.14.1...v3.14.3) Updates `cachetools` from 7.1.4 to 7.1.6 - [Changelog](https://github.com/tkem/cachetools/blob/master/CHANGELOG.rst) - [Commits](tkem/cachetools@v7.1.4...v7.1.6) Updates `markdownify` from 1.2.2 to 1.2.3 - [Release notes](https://github.com/matthewwithanm/python-markdownify/releases) - [Commits](matthewwithanm/python-markdownify@1.2.2...1.2.3) Updates `mistune` from 3.3.2 to 3.3.4 - [Release notes](https://github.com/lepture/mistune/releases) - [Changelog](https://github.com/lepture/mistune/blob/main/docs/changes.rst) - [Commits](lepture/mistune@v3.3.2...v3.3.4) Updates `regex` from 2026.6.28 to 2026.7.19 - [Changelog](https://github.com/mrabarnett/mrab-regex/blob/hg/changelog.txt) - [Commits](mrabarnett/mrab-regex@2026.6.28...2026.7.19) Updates `sentry-sdk[pure-eval]` to 2.66.1 - [Release notes](https://github.com/getsentry/sentry-python/releases) - [Changelog](https://github.com/getsentry/sentry-python/blob/master/CHANGELOG.md) - [Commits](getsentry/sentry-python@2.63.0...2.66.1) Updates `yarl` from 1.24.2 to 1.24.5 - [Changelog](https://github.com/aio-libs/yarl/blob/master/CHANGES.rst) - [Commits](aio-libs/yarl@v1.24.2...v1.24.5) Updates `ruff` from 0.15.20 to 0.16.0 - [Release notes](https://github.com/astral-sh/ruff/releases) - [Changelog](https://github.com/astral-sh/ruff/blob/main/CHANGELOG.md) - [Commits](astral-sh/ruff@0.15.20...0.16.0) Updates `setuptools` to 83.0.0 - [Release notes](https://github.com/pypa/setuptools/releases) - [Changelog](https://github.com/pypa/setuptools/blob/main/NEWS.rst) - [Commits](pypa/setuptools@v82.0.1...v83.0.0) Updates `setuptools-scm` to 10.2.1 - [Release notes](https://github.com/pypa/setuptools-scm/releases) - [Changelog](https://github.com/pypa/setuptools-scm/blob/main/RELEASE_SYSTEM.md) - [Commits](pypa/setuptools-scm@setuptools-scm-v10.2.0...setuptools-scm-v10.2.1) --- updated-dependencies: - dependency-name: aiohttp dependency-version: 3.14.3 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: python-requirements - dependency-name: cachetools dependency-version: 7.1.6 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: python-requirements - dependency-name: markdownify dependency-version: 1.2.3 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: python-requirements - dependency-name: mistune dependency-version: 3.3.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: python-requirements - dependency-name: regex dependency-version: 2026.7.19 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: python-requirements - dependency-name: sentry-sdk[pure-eval] dependency-version: 2.66.1 dependency-type: direct:production dependency-group: python-requirements - dependency-name: yarl dependency-version: 1.24.5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: python-requirements - dependency-name: ruff dependency-version: 0.16.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: python-requirements - dependency-name: setuptools dependency-version: 83.0.0 dependency-type: direct:development dependency-group: python-requirements - dependency-name: setuptools-scm dependency-version: 10.2.1 dependency-type: direct:development dependency-group: python-requirements ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Updates the requirements on aiohttp, cachetools, markdownify, mistune, regex, sentry-sdk[pure-eval], yarl, ruff, setuptools and setuptools-scm to permit the latest version.
Updates
aiohttpfrom 3.14.1 to 3.14.3Changelog
Sourced from aiohttp's changelog.
... (truncated)
Commits
5e392ceRelease v3.14.3 (#13225)49f65d5[PR #13222/f4866933 backport][3.14] Build C parser error message from bounded...240099e[PR #13180/ee53d655 backport][3.14] drop every copy of credential headers on ...d93f30aBump version (#13202)c1b9212Release v3.14.2 (#13201)380d4b5[PR #13054/ed8b040c backport][3.14] escape backslashes in digest auth quoted-...e1e1beeMake llhttp method array size dynamic (#13174) (#13196)aa4cf29[PR #13170/2b906869 backport][3.14] Fix StreamResponse.last_modified rounding...71b57b4[PR #13172/a57747ed backport][3.14] Fix C parser folding fragment into query_...64a03fb[PR #13169/1adc0cd7 backport][3.14] Upgrade http:// to https:// in README.rst...Updates
cachetoolsfrom 7.1.4 to 7.1.6Changelog
Sourced from cachetools's changelog.
Commits
13bb86aMinor style improvements to keep ruff happy.e2250beFix RTD version handling.0d2a6eaRelease v7.1.5.d64cf80Prepare v7.1.5.fcbb0deFix #406: Merge branch 'gaoflow-fix-tlru-overwrite-expired-stale-value' into ...c0fdf6aFix TLRUCache silently keeping stale value on expired overwrite978d34dBump actions/setup-python from 6.2.0 to 6.3.0d5c7eeaReject negative cache item sizes578e976Update build environment.e164b70Bump codecov/codecov-action from 6.0.0 to 7.0.0Updates
markdownifyfrom 1.2.2 to 1.2.3Release notes
Sourced from markdownify's releases.
Commits
9341855Merge branch 'develop'bc98c9ebump to version v1.2.3dd5728efix: preserve text nested inside <br> by html.parser (#264)0b359c0fix: allowNoneto be used forstrip_preandwarp_widthparams in types...Updates
mistunefrom 3.3.2 to 3.3.4Release notes
Sourced from mistune's releases.
Changelog
Sourced from mistune's changelog.
Commits
69ec2b8chore: release 3.3.4234aa25test: more deadline for pypyb77ee58fix: prevent deep alt parsing66b2171refactor: expose entity boundary helper30ef44brefactor: move link token construction3066209refactor: require explicit emphasis depth0396492refactor: split inline parser modules80b3e85refactor: isolate inline parser state bounds7b0194ctest: cover inline performance edge casesb4dd328perf: optimize inline edge-case parsingUpdates
regexfrom 2026.6.28 to 2026.7.19Changelog
Sourced from regex's changelog.
... (truncated)
Commits
0525affGit issue 608: SIGSEGV: out-of-bounds read inbytes1_char_at()with `DOTALL...07dfa3bGit issue 607: SIGSEGV: NULL pointer dereference inbasic_match()when `(?R...e7716daPython 3.15 not released yet.e204ddbGit issue 606:regex's compiled-pattern cache eviction is not free-threadin...d7e1927Updated main.yml for Python 3.15.Updates
sentry-sdk[pure-eval]to 2.66.1Release notes
Sourced from sentry-sdk[pure-eval]'s releases.
Changelog
Sourced from sentry-sdk[pure-eval]'s changelog.
... (truncated)
Commits
653a292Update CHANGELOG.mde20c226release: 2.66.14524b65fix(tracing): Stop settingNoOpSpanon scope in the streaming trace lifecyc...2e9f26eref(tracing): No-op and emit warning instart_transactionwith the streamin...3a50950fix(tracing): handle exceptions raised within traces_sampler and other callba...b5171b7ref: Use top-leveltrace_lifecycleandignore_spansoptions in tests (#6855)17e0348ref: Use old sampling context format in span streaming (#6848)2e09497test: Add streaming tests totest_http_headers(#6785)9996734feat(tracing): Sendsentry.segment.name.sourceinstead of `sentry.span.sour...00224f7remove span streaming docs in changelog (#6831)Updates
yarlfrom 1.24.2 to 1.24.5Changelog
Sourced from yarl's changelog.
... (truncated)
Commits
0b30cb0Release 1.24.5 (#1807)56150c8Run the IDNA sweep test only on native Linux x86_64 (#1806)515adcaRelease 1.24.4 (#1805)ab5dec2Do not install hypothesis in the wheel-build test env (#1804)f9d10fbRelease 1.24.3 (#1803)058b7cbTest lone surrogate handling in encoded and parsed URL paths (#991)a181ceeUpdate hypothesis requirement from >=6.156.4 to >=6.157.0 in /requirements (#...28c1bccEncode scheme-shaped path colon in relative-path builders (#1802)51e2802Reject hosts with Unicode default-ignorable code points (#1801)3921a73Drop lone surrogates that split a percent escape in the Cython quoter (#1752)Updates
rufffrom 0.15.20 to 0.16.0Release notes
Sourced from ruff's releases.
... (truncated)
Changelog
Sourced from ruff's changelog.
... (truncated)
Commits
a2635fdBump 0.16.0 (#27136)3433449[ty] Reuse full call diagnostics for implicit setter calls (#27115)2240070Reflectruff: ignoreand--add-ignorestabilization in documentation (#27...17ef711Stabilize--add-ignore(#27125)ef912bbAdd newly stabilized rules to defaults (#27055)b30f040Stabilize new default rules (#27035)bcd70c5Exclude Markdown files fromformat-devruns (#27052)87e51e2Fixformat --checkspans for syntax errors (#27045)afe2723[flake8-gettext] Stabilize qualified-name and built-in binding resolution (...a9702d8[flake8-bandit] Stabilize string literal binding resolution (S310) (#26944)Updates
setuptoolsto 83.0.0Changelog
Sourced from setuptools's changelog.
... (truncated)
Commits
6519f72Bump version: 82.0.1 → 83.0.0d1151b1Merge pull request #5250 from pypa/feature/distutils-d7633fbeda2df31eCapture removal of dry_run parameter in changelog.00144dcMoved newsfragment to the release where it occurred.a4a5a2bAdd news fragment.77470c2Merge https://github.com/pypa/distutils into feature/distutils-d7633fbed3c43897Merge pull request #5247 from pypa/copilot/fix-pypy-version-issuebb6ea66Bump PyPy from 3.10 to 3.11 in CI workflowa2bc3acFix broken intersphinx reference to build's installation docs2d6a739Use stacked parametrize decorators instead of itertools.productUpdates
setuptools-scmto 10.2.1Release notes
Sourced from setuptools-scm's releases.
Commits
ac108b2Merge pull request #1475 from pypa/release/mainb3beed6Prepare release: setuptools-scm v10.2.1ec67f8cMerge pull request #1474 from RonnyPfannschmidt/fix/1473-omit-scm-metadata-fr...08f22bdfix: lazy-import bdist_wheel and simplify unlink82768f0fix: omit SCM egg-info JSON from wheels5b91e2fMerge pull request #1460 from pypa/dependabot/uv/uv-f4f52c089d4ac1724Merge pull request #1463 from pypa/release/main474cc9cPrepare release: vcs-versioning v2.2.229c8f6cMerge pull request #1462 from RonnyPfannschmidt/fix/vcs-versioning-pytest-tim...25d32eefix: add missing pytest-timeout to vcs-versioning test dependencies (#1461)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions