-
Notifications
You must be signed in to change notification settings - Fork 2
Bump the dependencies group across 1 directory with 6 updates #434
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
42fdc8a to
2f539d7
Compare
2f539d7 to
967538c
Compare
|
@dependabot rebase |
967538c to
a82127d
Compare
Bumps the dependencies group with 6 updates in the / directory: | Package | From | To | | --- | --- | --- | | [astroquery](https://github.com/astropy/astroquery) | `0.4.10` | `0.4.11` | | [click](https://github.com/pallets/click) | `8.2.1` | `8.3.0` | | [django](https://github.com/django/django) | `4.2.23` | `4.2.24` | | [django-cors-headers](https://github.com/adamchainz/django-cors-headers) | `4.7.0` | `4.9.0` | | tom-tns | `0.3.1` | `0.3.2` | | [tomtoolkit](https://github.com/TOMToolkit/tom_base) | `2.26.0` | `2.26.2` | Updates `astroquery` from 0.4.10 to 0.4.11 - [Release notes](https://github.com/astropy/astroquery/releases) - [Changelog](https://github.com/astropy/astroquery/blob/main/CHANGES.rst) - [Commits](astropy/astroquery@v0.4.10...v0.4.11) Updates `click` from 8.2.1 to 8.3.0 - [Release notes](https://github.com/pallets/click/releases) - [Changelog](https://github.com/pallets/click/blob/main/CHANGES.rst) - [Commits](pallets/click@8.2.1...8.3.0) Updates `django` from 4.2.23 to 4.2.24 - [Commits](django/django@4.2.23...4.2.24) Updates `django-cors-headers` from 4.7.0 to 4.9.0 - [Changelog](https://github.com/adamchainz/django-cors-headers/blob/main/CHANGELOG.rst) - [Commits](adamchainz/django-cors-headers@4.7.0...4.9.0) Updates `tom-tns` from 0.3.1 to 0.3.2 Updates `tomtoolkit` from 2.26.0 to 2.26.2 - [Release notes](https://github.com/TOMToolkit/tom_base/releases) - [Commits](TOMToolkit/tom_base@2.26.0...2.26.2) --- updated-dependencies: - dependency-name: astroquery dependency-version: 0.4.11 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: dependencies - dependency-name: click dependency-version: 8.3.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: dependencies - dependency-name: django dependency-version: 4.2.24 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: dependencies - dependency-name: django-cors-headers dependency-version: 4.9.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: dependencies - dependency-name: tom-tns dependency-version: 0.3.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: dependencies - dependency-name: tomtoolkit dependency-version: 2.26.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: dependencies ... Signed-off-by: dependabot[bot] <support@github.com>
a82127d to
ed0eece
Compare
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Pull Request Overview
This PR updates 6 Python dependencies to their latest versions, focusing on security patches and minor feature updates. The changes include updates to web framework components (Django, Click), astronomical data libraries (astroquery), and TOM Toolkit components.
- Updated Django from 4.2.23 to 4.2.24 for security fixes
- Updated Click from 8.2.1 to 8.3.0 with improved flag option handling
- Updated astroquery from 0.4.10 to 0.4.11 with bug fixes and new features
Tip: Customize your code reviews with copilot-instructions.md. Create the file or learn how to get started.
Codecov Report✅ All modified and coverable lines are covered by tests. Additional details and impacted files@@ Coverage Diff @@
## main #434 +/- ##
=======================================
Coverage 77.45% 77.45%
=======================================
Files 244 244
Lines 7834 7834
Branches 477 477
=======================================
Hits 6068 6068
Misses 1677 1677
Partials 89 89 ☔ View full report in Codecov by Sentry. 🚀 New features to boost your workflow:
|
Bumps the dependencies group with 6 updates in the / directory:
0.4.100.4.118.2.18.3.04.2.234.2.244.7.04.9.00.3.10.3.22.26.02.26.2Updates
astroqueryfrom 0.4.10 to 0.4.11Release notes
Sourced from astroquery's releases.
... (truncated)
Changelog
Sourced from astroquery's changelog.
... (truncated)
Commits
fc20cf3Preparing release v0.4.11caec513Finalizing changelog for v0.4.118d10133Merge pull request #3420 from bsipocz/MAINT_pre-release-fixesc588b25MAINT: adding windows specific warning ignores4caac9eMAINT: add pytest-timeout dependency — this should work around stuck CI jobs2713972MAINT: exclude bots from release notes726d6ffMAINT: update mailmap4bc9d1eMAINT: remove old pyvo skip47c736cMAINT: fixing integral test and doctests8a0a427Merge pull request #3415 from bsipocz/ENH_irsa_list_catalogs_filter_descUpdates
clickfrom 8.2.1 to 8.3.0Release notes
Sourced from click's releases.
... (truncated)
Changelog
Sourced from click's changelog.
Commits
00fadb8Release version 8.3.02a0e3batesting/CliRunner: Fix regression related to EOF introduced in 262bdf0 (#2940)e11a1efMerge branch 'main' into fix-cli-runner-prompt-eof-handling36deba8Forward exception information to resources registered in a context (#3058)f2cae7a#2447 Add summary of PR to changelog for 8.3.x7c7ec36#2447 Split resource exception handling tests in single and nested92129c5#2447 Added exception forwarding to context tests555fa9b#2447 Forward exception data to exit stack when calling__exit__16fe802Add more tests onEnumrendering (#3053)d36de6fAdd more tests on Enum rendering their item's names and not valuesUpdates
djangofrom 4.2.23 to 4.2.24Commits
5e23d89[4.2.x] Bumped version for 4.2.24 release.31334e6[4.2.x] Fixed CVE-2025-57833 -- Protected FilteredRelation against SQL inject...d5860d5[4.2.x] Added stub release notes and release date for 4.2.24.c3f9871[4.2.x] Fixed #36499 -- Adjusted utils_tests.test_html.TestUtilsHtml.test_str...2a79837[4.2.x] Fixed test_utils.tests.HTMLEqualTests.test_parsing_errors following P...7335a1a[4.2.x] Refs #36535 -- Doc'd that docutils < 0.22 is required.591b23a[4.2.x] Fixed GitHub Action that checks commit prefixes to fetch PR head corr...0c9ab35[4.2.x] Added GitHub Action to enforce stable branch commit message prefix.8293b0f[4.2.x] Added follow-up to CVE-2025-48432 to security archive.bc4d96c[4.2.x] Post-release version bump.Updates
django-cors-headersfrom 4.7.0 to 4.9.0Changelog
Sourced from django-cors-headers's changelog.
Commits
a3a3ad2Version 4.9.02f5a94bCorrect testing of Django 6.0 (#1015)4356514Support Django 6.0 (#1014)eeaa041Version 4.8.0b760e4dSupport Python 3.14 (#1013)bf6abfb[pre-commit.ci] pre-commit autoupdate (#1012)5d0c651Upgrade dependencies (#1011)873fd5fUse uvx to run tox on GitHub Actions (#1010)f8aa330[pre-commit.ci] pre-commit autoupdate (#1009)b04460f[pre-commit.ci] pre-commit autoupdate (#1008)Updates
tom-tnsfrom 0.3.1 to 0.3.2Updates
tomtoolkitfrom 2.26.0 to 2.26.2Release notes
Sourced from tomtoolkit's releases.
Commits
93c6138add missed migration382df67Merge pull request #1304 from TOMToolkit/dependabot/pip/django-4.2.24576498eBump django from 4.2.22 to 4.2.24eb55e55Merge pull request #1298 from TOMToolkit/1250-lco-request-form-window-start-a...9158e78Merge branch 'dev' into 1250-lco-request-form-window-start-and-end-should-all...c3384acMerge pull request #1293 from talister/1280-add-H-G-fields0974a0eMerge branch 'dev' into 1280-add-H-G-fields8451c9bRemove unused importcffce96Ensure backwards compatibility with old form fields (custom templates)bdda86dMerge pull request #1297 from griffin-h/feature/merge_reduceddatumsDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions