Bump the python-runtime-and-dev group with 10 updates#22
Open
dependabot[bot] wants to merge 1 commit into
Open
Bump the python-runtime-and-dev group with 10 updates#22dependabot[bot] wants to merge 1 commit into
dependabot[bot] wants to merge 1 commit into
Conversation
Bumps the python-runtime-and-dev group with 10 updates: | Package | From | To | | --- | --- | --- | | [liboqs-python](https://github.com/open-quantum-safe/liboqs-python) | `0.15.0` | `0.16.0` | | [streamlit](https://github.com/streamlit/streamlit) | `1.59.2` | `1.60.0` | | [pip-tools](https://github.com/jazzband/pip-tools) | `7.5.3` | `7.6.0` | | [docutils](https://github.com/rtfd/recommonmark) | `0.22.4` | `0.23` | | [cachetools](https://github.com/tkem/cachetools) | `7.1.4` | `7.1.6` | | [certifi](https://github.com/certifi/python-certifi) | `2026.6.17` | `2026.7.22` | | [gitpython](https://github.com/gitpython-developers/GitPython) | `3.1.52` | `3.1.55` | | [pyarrow](https://github.com/apache/arrow) | `24.0.0` | `25.0.0` | | [filelock](https://github.com/tox-dev/py-filelock) | `3.30.3` | `3.32.0` | | [platformdirs](https://github.com/tox-dev/platformdirs) | `4.10.0` | `4.11.0` | Updates `liboqs-python` from 0.15.0 to 0.16.0 - [Release notes](https://github.com/open-quantum-safe/liboqs-python/releases) - [Changelog](https://github.com/open-quantum-safe/liboqs-python/blob/main/CHANGES.md) - [Commits](https://github.com/open-quantum-safe/liboqs-python/commits/0.16.0) Updates `streamlit` from 1.59.2 to 1.60.0 - [Release notes](https://github.com/streamlit/streamlit/releases) - [Commits](streamlit/streamlit@1.59.2...1.60.0) Updates `pip-tools` from 7.5.3 to 7.6.0 - [Release notes](https://github.com/jazzband/pip-tools/releases) - [Changelog](https://github.com/jazzband/pip-tools/blob/main/CHANGELOG.md) - [Commits](jazzband/pip-tools@v7.5.3...v7.6.0) Updates `docutils` from 0.22.4 to 0.23 - [Changelog](https://github.com/readthedocs/recommonmark/blob/master/CHANGELOG.md) - [Commits](https://github.com/rtfd/recommonmark/commits) Updates `cachetools` from 7.1.4 to 7.1.6 - [Changelog](https://github.com/tkem/cachetools/blob/master/CHANGELOG.rst) - [Commits](tkem/cachetools@v7.1.4...v7.1.6) Updates `certifi` from 2026.6.17 to 2026.7.22 - [Commits](certifi/python-certifi@2026.06.17...2026.07.22) Updates `gitpython` from 3.1.52 to 3.1.55 - [Release notes](https://github.com/gitpython-developers/GitPython/releases) - [Changelog](https://github.com/gitpython-developers/GitPython/blob/main/CHANGES) - [Commits](gitpython-developers/GitPython@3.1.52...3.1.55) Updates `pyarrow` from 24.0.0 to 25.0.0 - [Release notes](https://github.com/apache/arrow/releases) - [Commits](apache/arrow@apache-arrow-24.0.0...apache-arrow-25.0.0) Updates `filelock` from 3.30.3 to 3.32.0 - [Release notes](https://github.com/tox-dev/py-filelock/releases) - [Changelog](https://github.com/tox-dev/filelock/blob/main/docs/changelog.rst) - [Commits](tox-dev/filelock@3.30.3...3.32.0) Updates `platformdirs` from 4.10.0 to 4.11.0 - [Release notes](https://github.com/tox-dev/platformdirs/releases) - [Changelog](https://github.com/tox-dev/platformdirs/blob/main/docs/changelog.rst) - [Commits](tox-dev/platformdirs@4.10.0...4.11.0) --- updated-dependencies: - dependency-name: liboqs-python dependency-version: 0.16.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: python-runtime-and-dev - dependency-name: streamlit dependency-version: 1.60.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: python-runtime-and-dev - dependency-name: pip-tools dependency-version: 7.6.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: python-runtime-and-dev - dependency-name: docutils dependency-version: '0.23' dependency-type: direct:development update-type: version-update:semver-minor dependency-group: python-runtime-and-dev - dependency-name: cachetools dependency-version: 7.1.6 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: python-runtime-and-dev - dependency-name: certifi dependency-version: 2026.7.22 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: python-runtime-and-dev - dependency-name: gitpython dependency-version: 3.1.55 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: python-runtime-and-dev - dependency-name: pyarrow dependency-version: 25.0.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: python-runtime-and-dev - dependency-name: filelock dependency-version: 3.32.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: python-runtime-and-dev - dependency-name: platformdirs dependency-version: 4.11.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: python-runtime-and-dev ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the python-runtime-and-dev group with 10 updates:
0.15.00.16.01.59.21.60.07.5.37.6.00.22.40.237.1.47.1.62026.6.172026.7.223.1.523.1.5524.0.025.0.03.30.33.32.04.10.04.11.0Updates
liboqs-pythonfrom 0.15.0 to 0.16.0Changelog
Sourced from liboqs-python's changelog.
... (truncated)
Commits
Updates
streamlitfrom 1.59.2 to 1.60.0Release notes
Sourced from streamlit's releases.
... (truncated)
Commits
70c32f1Up version to 1.60.05b2bbbe[bugfix] Fix widgets inside popover-in-dialog being unclickable (#16067)c5e4012[bugfix] Fix inconsistent checkbox margin in horizontal container within colu...96cf9d6[docs] Pause external pull request contributions (#16037)d71628c[bugfix] Include decorators in st.echo output (#16068)cc1676aBump the eslint group across 1 directory with 2 updates (#16083)4ccad5d[chore] Add typing test for st.pydeck_chart (#15801)fc2cb5dBump the codeql-action group with 2 updates (#16058)6022987Bump vite-bundle-analyzer from 1.3.8 to 1.3.9 in /frontend in the vite group ...db297c6Bump the protobufjs group in /frontend with 2 updates (#16073)Updates
pip-toolsfrom 7.5.3 to 7.6.0Release notes
Sourced from pip-tools's releases.
... (truncated)
Changelog
Sourced from pip-tools's changelog.
... (truncated)
Commits
27f6a96Merge pull request #2420 from sirosen/release/v7.6.0cbe77f0Apply suggestions from code review015146eUpdate changelog for version 7.6.09a2d2c1Merge pull request #2414 from jazzband/pre-commit-ci-update-configfc3f877Merge pull request #2418 from jazzband/dependabot/pip/docs/soupsieve-2.8.45247a6b[pre-commit.ci] pre-commit autoupdate3d1faf6Bump soupsieve from 2.8.3 to 2.8.4 in /docs57637dbMerge pull request #2419 from sirosen/fix-test-failure4695c37Fix thefake_with_depstest package24f4230Merge pull request #2413 from webknjaz/maintenance/nested-zizmor-gha-workflow...Updates
docutilsfrom 0.22.4 to 0.23Commits
Updates
cachetoolsfrom 7.1.4 to 7.1.6Changelog
Sourced from cachetools's changelog.
Commits
13bb86aMinor style improvements to keep ruff happy.e2250beFix RTD version handling.0d2a6eaRelease v7.1.5.d64cf80Prepare v7.1.5.fcbb0deFix #406: Merge branch 'gaoflow-fix-tlru-overwrite-expired-stale-value' into ...c0fdf6aFix TLRUCache silently keeping stale value on expired overwrite978d34dBump actions/setup-python from 6.2.0 to 6.3.0d5c7eeaReject negative cache item sizes578e976Update build environment.e164b70Bump codecov/codecov-action from 6.0.0 to 7.0.0Updates
certififrom 2026.6.17 to 2026.7.22Commits
f4bc6762026.07.22 (#428)4c91f9cBump actions/setup-python from 6.3.0 to 7.0.0 (#427)01a66c5Bump actions/checkout from 7.0.0 to 7.0.1 (#426)eb355f4Bump pypa/gh-action-pypi-publish from 1.14.0 to 1.14.1 (#425)474e6fcInclude tests in the source distribution (#424)a31ef39Bump actions/setup-python from 6.2.0 to 6.3.0 (#420)98eb2c7Bump actions/checkout from 6.0.3 to 7.0.0 (#419)Updates
gitpythonfrom 3.1.52 to 3.1.55Release notes
Sourced from gitpython's releases.
Commits
681c82cprepare releasee227e01Merge pull request #2181 from gitpython-developers/fix-env-var-exfiltration8634174fix: prevent environment expansion in remote URLse59d9baprepare next releasea4dc70dMerge pull request #2180 from gitpython-developers/single-char-kwarg1d51b89fix: guard diff output optionsffcb535fix: reject unsafe clone templatese8d0fbffix: validate split short-option valuesfaf3c09prepare for security fix6a5eb6aMerge pull request #2176 from gitpython-developers/fix-config-injectionUpdates
pyarrowfrom 24.0.0 to 25.0.0Release notes
Sourced from pyarrow's releases.
Commits
59bea6eMINOR: [Release] Update versions for 25.0.0381fab6MINOR: [Release] Update .deb/.rpm changelogs for 25.0.07f72d5bMINOR: [Release] Update CHANGELOG.md for 25.0.0fe2f85cGH-50336: [Release][Archery] Fix archery GitHub integration for release scrip...c658548GH-50293: [CI] Run check-labels for all triggers to avoid cancelling further ...f83c8caGH-50330: [C++][R][Parquet] Add missing typename in RleBitPackedDecoderGetRun...35e0f63GH-50318: [R][CI] Install missing libpng-dev for test-r-linux-as-cran (#50328)61ca7a9GH-50295: [C++][R] #include <ranges> in vector_select_k.cc breaks macOS CRAN ...1b6edb8GH-50291: [Python][Packaging] Stop using nightly build dependencies for build...e183ea9MINOR: [Docs] Add Timestamp With Offset to canonical extension types status (...Updates
filelockfrom 3.30.3 to 3.32.0Release notes
Sourced from filelock's releases.
Changelog
Sourced from filelock's changelog.
... (truncated)
Commits
76525e6Release 3.32.09824d15🐛 fix(packaging): let an unpacked sdist run the test suite (#685)f6c41e9👷 ci: add Python 3.15 to the test matrix (#683)caeb1c9Release 3.31.260eda0f🐛 fix(strict): tolerate an errno without ENOTSUP (#681)c1b2e6fRelease 3.31.19fd7de5scope a lease's claim to the context that acquired it (#680)2b3ad2c♻️ refactor(coverage): key exclusions on probed capability (#679)3b66fdcRelease 3.31.0166b2b5✨ feat(platform): support Termux/Android (#678)Updates
platformdirsfrom 4.10.0 to 4.11.0Release notes
Sourced from platformdirs's releases.
Changelog
Sourced from platformdirs's changelog.
... (truncated)
Commits
2140495Release 4.11.0a562df9👷 ci: run the test suite against Python 3.15 (#512)7c764c4[pre-commit.ci] pre-commit autoupdate (#511)2e74013Release 4.10.13076722📝 docs(changelog): rebuild against release history (#510)42751ce🚀 ci(release): towncrier changelog + publish on tag push (#509)d2e5756fix(windows): stop leaking ctypes pointer types on repeated calls (#507)4f52c4fbuild(deps): bump astral-sh/setup-uv from 8.3.1 to 8.3.2 in the all group (#506)f68e56fbuild(deps): bump astral-sh/setup-uv from 8.3.0 to 8.3.1 in the all group (#504)806560bbuild(deps): bump astral-sh/setup-uv from 8.2.0 to 8.3.0 in the all group (#502)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions