Bump the "pdfding" group with 3 updates across multiple ecosystems#301
Merged
Conversation
Bumps the pdfding group with 9 updates: | Package | From | To | | --- | --- | --- | | [django](https://github.com/django/django) | `5.2.12` | `5.2.13` | | [django-allauth](https://github.com/sponsors/pennersr) | `65.15.0` | `65.15.1` | | [gunicorn](https://github.com/benoitc/gunicorn) | `25.1.0` | `25.3.0` | | [nh3](https://github.com/messense/nh3) | `0.3.3` | `0.3.4` | | [pypdfium2](https://github.com/pypdfium2-team/pypdfium2) | `5.6.0` | `5.7.0` | | [pypdf](https://github.com/py-pdf/pypdf) | `6.9.2` | `6.10.0` | | [rapidfuzz](https://github.com/rapidfuzz/RapidFuzz) | `3.14.3` | `3.14.5` | | [pytest](https://github.com/pytest-dev/pytest) | `9.0.2` | `9.0.3` | | [pytest-cov](https://github.com/pytest-dev/pytest-cov) | `7.0.0` | `7.1.0` | Updates `django` from 5.2.12 to 5.2.13 - [Commits](django/django@5.2.12...5.2.13) Updates `django-allauth` from 65.15.0 to 65.15.1 - [Commits](https://github.com/sponsors/pennersr/commits) Updates `gunicorn` from 25.1.0 to 25.3.0 - [Release notes](https://github.com/benoitc/gunicorn/releases) - [Commits](benoitc/gunicorn@25.1.0...25.3.0) Updates `nh3` from 0.3.3 to 0.3.4 - [Release notes](https://github.com/messense/nh3/releases) - [Commits](messense/nh3@v0.3.3...v0.3.4) Updates `pypdfium2` from 5.6.0 to 5.7.0 - [Release notes](https://github.com/pypdfium2-team/pypdfium2/releases) - [Commits](pypdfium2-team/pypdfium2@5.6.0...5.7.0) Updates `pypdf` from 6.9.2 to 6.10.0 - [Release notes](https://github.com/py-pdf/pypdf/releases) - [Changelog](https://github.com/py-pdf/pypdf/blob/main/CHANGELOG.md) - [Commits](py-pdf/pypdf@6.9.2...6.10.0) Updates `rapidfuzz` from 3.14.3 to 3.14.5 - [Release notes](https://github.com/rapidfuzz/RapidFuzz/releases) - [Changelog](https://github.com/rapidfuzz/RapidFuzz/blob/main/CHANGELOG.rst) - [Commits](rapidfuzz/RapidFuzz@v3.14.3...v3.14.5) Updates `pytest` from 9.0.2 to 9.0.3 - [Release notes](https://github.com/pytest-dev/pytest/releases) - [Changelog](https://github.com/pytest-dev/pytest/blob/main/CHANGELOG.rst) - [Commits](pytest-dev/pytest@9.0.2...9.0.3) Updates `pytest-cov` from 7.0.0 to 7.1.0 - [Changelog](https://github.com/pytest-dev/pytest-cov/blob/master/CHANGELOG.rst) - [Commits](pytest-dev/pytest-cov@v7.0.0...v7.1.0) chore(deps): bump alpinejs from 3.15.8 to 3.15.11 in the pdfding group Bumps the pdfding group with 1 update: [alpinejs](https://github.com/alpinejs/alpine/tree/HEAD/packages/alpinejs). Updates `alpinejs` from 3.15.8 to 3.15.11 - [Release notes](https://github.com/alpinejs/alpine/releases) - [Commits](https://github.com/alpinejs/alpine/commits/v3.15.11/packages/alpinejs) chore(deps): bump node in the pdfding group Bumps the pdfding group with 1 update: node. Updates `node` from 22.22.1-bookworm-slim to 22.22.2-bookworm-slim --- updated-dependencies: - dependency-name: django dependency-version: 5.2.13 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: pdfding - dependency-name: django-allauth dependency-version: 65.15.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: pdfding - dependency-name: gunicorn dependency-version: 25.3.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: pdfding - dependency-name: nh3 dependency-version: 0.3.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: pdfding - dependency-name: pypdfium2 dependency-version: 5.7.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: pdfding - dependency-name: pypdf dependency-version: 6.10.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: pdfding - dependency-name: rapidfuzz dependency-version: 3.14.5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: pdfding - dependency-name: pytest dependency-version: 9.0.3 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: pdfding - dependency-name: pytest-cov dependency-version: 7.1.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: pdfding - dependency-name: alpinejs dependency-version: 3.15.11 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: pdfding - dependency-name: node dependency-version: 22.22.2-bookworm-slim dependency-type: direct:production update-type: version-update:semver-patch dependency-group: pdfding ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the pdfding group with 9 updates:
5.2.125.2.1365.15.065.15.125.1.025.3.00.3.30.3.45.6.05.7.06.9.26.10.03.14.33.14.59.0.29.0.37.0.07.1.0Updates
djangofrom 5.2.12 to 5.2.13Commits
7d831a9[5.2.x] Bumped version for 5.2.13 release.49e1e2b[5.2.x] Fixed CVE-2026-33034 -- Enforced DATA_UPLOAD_MAX_MEMORY_SIZE on body ...0b46789[5.2.x] Fixed CVE-2026-33033 -- Mitigated potential DoS in MultiPartParser.397c220[5.2.x] Fixed CVE-2026-4292 -- Disallowed instance creation via ModelAdmin.li...60ffa95[5.2.x] Fixed CVE-2026-4277 -- Checked add permissions in GenericInlineModelA...1cc2a76[5.2.x] Fixed CVE-2026-3902 -- Ignored headers with underscores in ASGIRequest.2a8a76a[5.2.x] Added stub release notes and release date for 5.2.13 and 4.2.30.90924f5[5.2.x] Bumped black to 26.3.1.0ee44c6[5.2.x] Applied Black's 2026 stable style.89b4d94[5.2.x] Combined scripts confirm_release.sh and test_new_version.sh into veri...Updates
django-allauthfrom 65.15.0 to 65.15.1Commits
Updates
gunicornfrom 25.1.0 to 25.3.0Release notes
Sourced from gunicorn's releases.
... (truncated)
Commits
9bce72cUpdate changelog with missing 25.3.0 changes2a15fdbFix pylint isinstance-second-argument-not-valid-type warning8d08aaaFix --limit-request-line 0 to mean unlimitedd40a374Fix pytest-asyncio configuration and treq_asgi hex escapesda8bd48Remove unused AsyncRequest classb00f125Integrate gunicorn_h1c 0.6.3 with InvalidChunkExtension supportbdb2ebdReject chunk extensions with bare CR bytes (RFC 9112)7057fc9Fix http_protocols documentation to use string syntaxd43acb8Update to gunicorn_h1c >= 0.6.2 for asgi_headers supportcbd27e8Merge pull request #3559 from benleembruggen/fix/http2-asgi-body-duplicationUpdates
nh3from 0.3.3 to 0.3.4Release notes
Sourced from nh3's releases.
Commits
c2ddb81Bump version to 0.3.4d19279aAccept frozenset and Mapping in type stubs (#119)b98f2c5Expose default clean_content_tags as module constant (#118)9fdfa76Validate rel attribute conflict with link_rel (#117)8af5eeeBump the github-actions group with 2 updates (#115)613bdaeBump pyo3 from 0.28.1 to 0.28.2 (#114)565c231Bump pyo3 from 0.28.0 to 0.28.1 (#113)Updates
pypdfium2from 5.6.0 to 5.7.0Release notes
Sourced from pypdfium2's releases.
... (truncated)
Commits
f2a5380[autorelease main] update 5.7.077f58a1Simplify sysfontinfo docs27c3a63Align doc param name with actual param namee3cc95cchangelog: break some lines3aefaa0Reland "Try to give GH API request a token"46795eeRevert "Try to give GH API request a token"47dffe8Try to fix macOS and python < 3.8de6a0d7Try to give GH API request a token3ca4b06Satisfycheck-wheel-contents3d8423bFix a typo that codespell didn't catchUpdates
pypdffrom 6.9.2 to 6.10.0Release notes
Sourced from pypdf's releases.
Changelog
Sourced from pypdf's changelog.
Commits
fd0aecaREL: 6.10.0b15a374SEC: Disallow custom XML entity declarations for XMP metadata (#3724)d0d9de6DEV: Update cryptography to 46.0.7 in ci.txt1e0e5beDOC: Include policies about AI and PoCs into security policy3155e04Bump cryptography from 46.0.6 to 46.0.7 in /requirements (#3723)696b978DEV: Bump codecov/codecov-action from 5 to 6 (#3701)5456731TST: Extending typing to tests; cover generic and scripts folder files (#3660)e00505eDOC: Add AI policy (#3717)bd95bd8Fix PdfReadError when xref table contains comments before trailer (#3710)f3f501bDEV: Update pygments version to 2.20.0 (#3707)Updates
rapidfuzzfrom 3.14.3 to 3.14.5Release notes
Sourced from rapidfuzz's releases.
Changelog
Sourced from rapidfuzz's changelog.