-
Notifications
You must be signed in to change notification settings - Fork 0
Bump the pip group in /app with 16 updates #14
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
base: main
Are you sure you want to change the base?
Conversation
Bumps the pip group in /app with 16 updates: | Package | From | To | | --- | --- | --- | | [certifi](https://github.com/certifi/python-certifi) | `2022.6.15` | `2024.7.4` | | [flask](https://github.com/pallets/flask) | `2.1.2` | `2.2.5` | | [grpcio](https://github.com/grpc/grpc) | `1.46.3` | `1.53.2` | | [idna](https://github.com/kjd/idna) | `3.3` | `3.7` | | [jinja2](https://github.com/pallets/jinja) | `3.1.2` | `3.1.5` | | [joblib](https://github.com/joblib/joblib) | `1.1.0` | `1.2.0` | | [keras](https://github.com/keras-team/keras) | `2.9.0` | `2.13.1` | | [oauthlib](https://github.com/oauthlib/oauthlib) | `3.2.0` | `3.2.2` | | [opencv-python](https://github.com/opencv/opencv-python) | `4.6.0.66` | `4.8.1.78` | | [protobuf](https://github.com/protocolbuffers/protobuf) | `3.19.4` | `3.19.5` | | [requests](https://github.com/psf/requests) | `2.28.0` | `2.32.2` | | [scikit-learn](https://github.com/scikit-learn/scikit-learn) | `1.1.1` | `1.5.0` | | [tensorflow](https://github.com/tensorflow/tensorflow) | `2.9.1` | `2.12.1` | | [urllib3](https://github.com/urllib3/urllib3) | `1.26.9` | `1.26.19` | | [werkzeug](https://github.com/pallets/werkzeug) | `2.1.2` | `3.0.6` | | [zipp](https://github.com/jaraco/zipp) | `3.8.0` | `3.19.1` | Updates `certifi` from 2022.6.15 to 2024.7.4 - [Commits](certifi/python-certifi@2022.06.15...2024.07.04) Updates `flask` from 2.1.2 to 2.2.5 - [Release notes](https://github.com/pallets/flask/releases) - [Changelog](https://github.com/pallets/flask/blob/main/CHANGES.rst) - [Commits](pallets/flask@2.1.2...2.2.5) Updates `grpcio` from 1.46.3 to 1.53.2 - [Release notes](https://github.com/grpc/grpc/releases) - [Changelog](https://github.com/grpc/grpc/blob/master/doc/grpc_release_schedule.md) - [Commits](grpc/grpc@v1.46.3...v1.53.2) Updates `idna` from 3.3 to 3.7 - [Release notes](https://github.com/kjd/idna/releases) - [Changelog](https://github.com/kjd/idna/blob/master/HISTORY.rst) - [Commits](kjd/idna@v3.3...v3.7) Updates `jinja2` from 3.1.2 to 3.1.5 - [Release notes](https://github.com/pallets/jinja/releases) - [Changelog](https://github.com/pallets/jinja/blob/main/CHANGES.rst) - [Commits](pallets/jinja@3.1.2...3.1.5) Updates `joblib` from 1.1.0 to 1.2.0 - [Release notes](https://github.com/joblib/joblib/releases) - [Changelog](https://github.com/joblib/joblib/blob/main/CHANGES.rst) - [Commits](joblib/joblib@1.1.0...1.2.0) Updates `keras` from 2.9.0 to 2.13.1 - [Release notes](https://github.com/keras-team/keras/releases) - [Commits](keras-team/keras@v2.9.0...v2.13.1) Updates `oauthlib` from 3.2.0 to 3.2.2 - [Release notes](https://github.com/oauthlib/oauthlib/releases) - [Changelog](https://github.com/oauthlib/oauthlib/blob/master/CHANGELOG.rst) - [Commits](oauthlib/oauthlib@v3.2.0...v3.2.2) Updates `opencv-python` from 4.6.0.66 to 4.8.1.78 - [Release notes](https://github.com/opencv/opencv-python/releases) - [Commits](https://github.com/opencv/opencv-python/commits) Updates `protobuf` from 3.19.4 to 3.19.5 - [Release notes](https://github.com/protocolbuffers/protobuf/releases) - [Changelog](https://github.com/protocolbuffers/protobuf/blob/main/protobuf_release.bzl) - [Commits](protocolbuffers/protobuf@v3.19.4...v3.19.5) Updates `requests` from 2.28.0 to 2.32.2 - [Release notes](https://github.com/psf/requests/releases) - [Changelog](https://github.com/psf/requests/blob/main/HISTORY.md) - [Commits](psf/requests@v2.28.0...v2.32.2) Updates `scikit-learn` from 1.1.1 to 1.5.0 - [Release notes](https://github.com/scikit-learn/scikit-learn/releases) - [Commits](scikit-learn/scikit-learn@1.1.1...1.5.0) Updates `tensorflow` from 2.9.1 to 2.12.1 - [Release notes](https://github.com/tensorflow/tensorflow/releases) - [Changelog](https://github.com/tensorflow/tensorflow/blob/master/RELEASE.md) - [Commits](tensorflow/tensorflow@v2.9.1...v2.12.1) Updates `urllib3` from 1.26.9 to 1.26.19 - [Release notes](https://github.com/urllib3/urllib3/releases) - [Changelog](https://github.com/urllib3/urllib3/blob/main/CHANGES.rst) - [Commits](urllib3/urllib3@1.26.9...1.26.19) Updates `werkzeug` from 2.1.2 to 3.0.6 - [Release notes](https://github.com/pallets/werkzeug/releases) - [Changelog](https://github.com/pallets/werkzeug/blob/main/CHANGES.rst) - [Commits](pallets/werkzeug@2.1.2...3.0.6) Updates `zipp` from 3.8.0 to 3.19.1 - [Release notes](https://github.com/jaraco/zipp/releases) - [Changelog](https://github.com/jaraco/zipp/blob/main/NEWS.rst) - [Commits](jaraco/zipp@v3.8.0...v3.19.1) --- updated-dependencies: - dependency-name: certifi dependency-type: direct:production dependency-group: pip - dependency-name: flask dependency-type: direct:production dependency-group: pip - dependency-name: grpcio dependency-type: direct:production dependency-group: pip - dependency-name: idna dependency-type: direct:production dependency-group: pip - dependency-name: jinja2 dependency-type: direct:production dependency-group: pip - dependency-name: joblib dependency-type: direct:production dependency-group: pip - dependency-name: keras dependency-type: direct:production dependency-group: pip - dependency-name: oauthlib dependency-type: direct:production dependency-group: pip - dependency-name: opencv-python dependency-type: direct:production dependency-group: pip - dependency-name: protobuf dependency-type: direct:production dependency-group: pip - dependency-name: requests dependency-type: direct:production dependency-group: pip - dependency-name: scikit-learn dependency-type: direct:production dependency-group: pip - dependency-name: tensorflow dependency-type: direct:production dependency-group: pip - dependency-name: urllib3 dependency-type: direct:production dependency-group: pip - dependency-name: werkzeug dependency-type: direct:production dependency-group: pip - dependency-name: zipp dependency-type: direct:production dependency-group: pip ... Signed-off-by: dependabot[bot] <[email protected]>
Reviewer's Guide by SourceryThis pull request updates 16 Python packages in the app's requirements.txt file. Several of these updates include security fixes, so it is recommended to upgrade as soon as possible. The most significant change is the upgrade of Werkzeug from 2.1.2 to 3.0.6, which includes several breaking changes. Please review the changes carefully. No diagrams generated as the changes look simple and do not need a visual representation. File-Level Changes
Tips and commandsInteracting with Sourcery
Customizing Your ExperienceAccess your dashboard to:
Getting Help
|
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
We have skipped reviewing this pull request. Here's why:
- It seems to have been created by a bot (hey, dependabot[bot]!). We assume it knows what it's doing!
- We don't review packaging changes - Let us know if you'd like us to change this.
Bumps the pip group in /app with 16 updates:
2022.6.15
2024.7.4
2.1.2
2.2.5
1.46.3
1.53.2
3.3
3.7
3.1.2
3.1.5
1.1.0
1.2.0
2.9.0
2.13.1
3.2.0
3.2.2
4.6.0.66
4.8.1.78
3.19.4
3.19.5
2.28.0
2.32.2
1.1.1
1.5.0
2.9.1
2.12.1
1.26.9
1.26.19
2.1.2
3.0.6
3.8.0
3.19.1
Updates
certifi
from 2022.6.15 to 2024.7.4Commits
bd81538
2024.07.04 (#295)06a2cbf
Bump peter-evans/create-pull-request from 6.0.5 to 6.1.0 (#294)13bba02
Bump actions/checkout from 4.1.6 to 4.1.7 (#293)e8abcd0
Bump pypa/gh-action-pypi-publish from 1.8.14 to 1.9.0 (#292)124f4ad
2024.06.02 (#291)c2196ce
--- (#290)fefdeec
Bump actions/checkout from 4.1.4 to 4.1.5 (#289)3c5fb15
Bump actions/download-artifact from 4.1.6 to 4.1.7 (#286)4a9569a
Bump actions/checkout from 4.1.2 to 4.1.4 (#287)1fc8086
Bump peter-evans/create-pull-request from 6.0.4 to 6.0.5 (#288)Updates
flask
from 2.1.2 to 2.2.5Release notes
Sourced from flask's releases.
Changelog
Sourced from flask's changelog.
... (truncated)
Commits
47af817
release version 2.2.5afd63b1
Merge pull request #5109 from pallets/backport-vary-cookie8646edc
setVary: Cookie
header consistently for sessiona6367da
Merge pull request #5108 from pallets/werkzeug-compat3fbfbad
werkzeug 2.3.3 compatibility726d3f4
start version 2.2.5ddc7acc
Merge pull request #5081 from pallets/release-2.2.474e0329
release version 2.2.42d46068
update dev env64bc458
update dev dependenciesUpdates
grpcio
from 1.46.3 to 1.53.2Release notes
Sourced from grpcio's releases.
... (truncated)
Commits
afb307f
[v1.53.x][Interop] Backport Python image update (#33864)7a9373b
[Backport] [dependency] Restrict cython to less than 3.X (#33770)fdb64a6
[v1.53][Build] Update Phusion baseimage (#33767) (#33836)cdf4186
[PSM Interop] Legacy tests: fix xDS test client build (v1.53.x backport) (#33...ce5b93a
[PSM Interop] Legacy test builds always pull the driver from master (v1.53.x ...b24b6ea
[release] Bump release version to 1.53.2 (#33709)1e86ca5
[backport][iomgr][EventEngine] Improve server handling of file descriptor exh...aff3066
[PSM interop] Don't fail url_map target if sub-target already failed (v1.53.x...539d75c
[PSM interop] Don't fail target if sub-target already failed (#33222) (v1.53....3e79c88
[Release] Bump version to 1.53.1 (on v1.53.x branch) (#33047)Updates
idna
from 3.3 to 3.7Release notes
Sourced from idna's releases.
Changelog
Sourced from idna's changelog.
Commits
1d365e1
Release v3.7c1b3154
Merge pull request #172 from kjd/optimize-contextj0394ec7
Merge branch 'master' into optimize-contextjcd58a23
Merge pull request #152 from elliotwutingfeng/dev5beb28b
More efficient resolution of joiner contexts1b12148
Update ossf/scorecard-action to v2.3.1d516b87
Update Github actions/checkout to v4c095c75
Merge branch 'master' into dev60a0a4c
Fix typo in GitHub Actions workflow key5918a0e
Merge branch 'master' into devUpdates
jinja2
from 3.1.2 to 3.1.5Release notes
Sourced from jinja2's releases.
Changelog
Sourced from jinja2's changelog.
... (truncated)
Commits
877f6e5
release version 3.1.58d58859
remove test pypieda8fe8
update dev dependenciesc8fdce1
Fix bug involving calling set on a template parameter within all branches of ...66587ce
Fix bug where set would sometimes fail within iffbc3a69
Add support for namespaces in tuple parsing (#1664)b8f4831
more comments about nsref assignmentee83219
Add support for namespaces in tuple assignment1d55cdd
Triple quotes in docs (#2064)8a8eafc
edit block assignment sectionUpdates
joblib
from 1.1.0 to 1.2.0Changelog
Sourced from joblib's changelog.
Commits
5991350
Release 1.2.03fa2188
MAINT cleanup numpy warnings related to np.matrix in tests (#1340)cea26ff
CI test the future loky-3.3.0 branch (#1338)8aca6f4
MAINT: remove pytest.warns(None) warnings in pytest 7 (#1264)067ed4f
XFAIL test_child_raises_parent_exits_cleanly with multiprocessing (#1339)ac4ebd5
MAINT add back pytest warnings plugin (#1337)a23427d
Test child raises parent exits cleanly more reliable on macos (#1335)ac09691
[MAINT] various test updates (#1334)4a314b1
Vendor loky 3.2.0 (#1333)bdf47e9
Make test_parallel_with_interactively_defined_functions_default_backend timeo...Updates
keras
from 2.9.0 to 2.13.1Release notes
Sourced from keras's releases.
... (truncated)
Commits
b3ffea6
Cherrypick Sequential serialization bug fix for r2.13 (#18258)87db506
Cherrypick the release script fix for RC. (#18082)a51c89a
Increase the version number for keras 2.13 (#18081)861ad74
Adds error for serializing metric using layer serialization.1b7c53d
Adds Keras v3 saving testing coverage to Keras layers tests.e7c4d09
Expands Keras internal testing coverage for the new v3 saving format for comm...d72829a
Change references fromdistribution_strategy_context.py
to `distribute_lib....605b2d7
Merge pull request #17961 from SamuelMarks:keras.layers.activation-defaults-toa64d0b7
Merge pull request #17955 from SamuelMarks:keras.datasets-defaults-tocb1e1a0
Merge pull request #17967 from SamuelMarks:keras.layers.preprocessing-default...Updates
oauthlib
from 3.2.0 to 3.2.2Release notes
Sourced from oauthlib's releases.
Changelog
Sourced from oauthlib's changelog.
Commits
e6c33e4
Add 3.2.2 version4a4d65f
Merge pull request #832 from oauthlib/3.2.188bb156
Updated date and authors2e40b41
Merge pull request from GHSA-3pgj-pg6c-r5p71a45d97
Prepare 3.2.1 releaseb4bdd09
Merge pull request #818 from dasm/master5d85c61
Fix IPV6 regex used to check redirect_urie514826
Add check of performance of ipv6 check0adbbe1
docs: fix typos6569ec3
docs: Fix a few typosUpdates
opencv-python
from 4.6.0.66 to 4.8.1.78Release notes
Sourced from opencv-python's releases.
Commits
Updates
protobuf
from 3.19.4 to 3.19.5Release notes
Sourced from protobuf's releases.
Commits
b464cfb
Updating changelog40859fb
Updating version.json and repo version numbers to: 19.53b175f1
Merge pull request #10543 from deannagarcia/3.19.xc05b5f3
Add missing includes0299c03
Apply patch0a722f1
Update version.json with "lts": true (#10533)d5eb60a
Merge pull request #10530 from protocolbuffers/deannagarcia-patch-66cf1f78
Update version.json97fc844
Merge pull request #10504 from deannagarcia/3.19.x29d60a2
Add version fileUpdates
requests
from 2.28.0 to 2.32.2Release notes
Sourced from requests's releases.