build(deps): bump the pip group across 1 directory with 10 updates #1
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the pip group with 10 updates in the / directory:
2.20.33.5.0rc075.8.278.1.13.18.03.20.13.1.03.1.14.56.04.60.25.29.35.29.52.32.32.32.46.4.26.52.3.02.6.33.1.33.1.4Updates
mlflowfrom 2.20.3 to 3.5.0rc0Release notes
Sourced from mlflow's releases.
... (truncated)
Changelog
Sourced from mlflow's changelog.
... (truncated)
Commits
19c618cRunpython3 dev/update_mlflow_versions.py pre-release ...(#18181)13115e4Support GEPA in mlflow.genai.optimize_prompt (#18031)fa83107Runpython3 dev/update_ml_package_versions.py(#18177)16fc22fAdduv lockcall afterpyproject.tomlgeneration in DEV branch (#18180)be2125aRunpython3 dev/update_requirements.py && python3 bin/...(#18176)2fd3145Dumpsql_warehouse_idinto trace UI mimebundle (#18165)5cb6a95Replace Docker with uv in tests/test_import.py for faster test execution (#18...eaadd39Add support for trace inputs to built-in scorers (#17943)30f2f55Add B012 (jump-statement-in-finally) rule to ruff configuration (#18170)97ac7e1Increase MAX_DOCSTRING_LENGTH_RATIO to 1.25 and remove redundant test docstri...Updates
setuptoolsfrom 75.8.2 to 78.1.1Changelog
Sourced from setuptools's changelog.
... (truncated)
Commits
8e4868aBump version: 78.1.0 → 78.1.1100e9a6Merge pull request #49518faf1d7Add news fragment.2ca4a9fRely on re.sub to perform the decision in one expression.e409e80Extract _sanitize method for sanitizing the filename.250a6d1Add a check to ensure the name resolves relative to the tmpdir.d8390feExtract _resolve_download_filename with test.4e1e893Merge https://github.com/jaraco/skeleton3a3144fFix typo:pyproject.license->project.license(#4931)d751068Fix typo: pyproject.license -> project.licenseUpdates
filelockfrom 3.18.0 to 3.20.1Release notes
Sourced from filelock's releases.
Commits
377f622[pre-commit.ci] pre-commit autoupdate (#460)4724d7fFix TOCTOU symlink vulnerability in lock file creation (#461)cb69414Bump actions/upload-artifact from 5 to 6 (#459)0769294Bump actions/download-artifact from 6 to 7 (#458)414193a[pre-commit.ci] pre-commit autoupdate (#457)1456797[pre-commit.ci] pre-commit autoupdate (#456)8d6bf90Bump actions/checkout from 5 to 6 (#455)f7edeeb[pre-commit.ci] pre-commit autoupdate (#454)fb09235[pre-commit.ci] pre-commit autoupdate (#453)f5825d8[pre-commit.ci] pre-commit autoupdate (#452)Updates
flaskfrom 3.1.0 to 3.1.1Release notes
Sourced from flask's releases.
Changelog
Sourced from flask's changelog.
Commits
7fff56frelease version 3.1.173d6504Merge commit from forkcbb6c36update docs about fallback orderfb54159secret key rotation: fix key list ordering941efd4use uv (#5727)0109e49use uve785166Async Iterable Response (#5659)410e5abAcceptAsyncIterablefor responsesbfffe87add ghsa links73ce26cremove tests about deprecated pkgutil.get_loader (#5702)Updates
fonttoolsfrom 4.56.0 to 4.60.2Release notes
Sourced from fonttools's releases.
... (truncated)
Changelog
Sourced from fonttools's changelog.
... (truncated)
Commits
78ba5e8Release 4.60.2c3f9979macos-13 runner is no more, use macos-15-intel8016403Revert "Merge pull request #3982 from fonttools/drop-py39"e691e3bRelease 4.61.0c2d540fUpdate NEWS.rst3859753Update NEWS.rst26eb070black5ff73afMerge commit from forka696d5bvarLib: only use the basename(vf.filename)b00bc45varLib_test: test path traversal in variable-font filenameUpdates
protobuffrom 5.29.3 to 5.29.5Commits
f5de0a0Updating version.json and repo version numbers to: 29.58563766Merge pull request #21858 from shaod2/py-cp-2905ba1a8Add recursion depth limits to pure python1ef3f01Internal pure python fixes69cca9bRemove fast-path check for non-clang compilers in MessageCreator. (#21612)21fdb7afix: contains check segfaults on empty map (#20446) (#20904)03c50e3Re-enable aarch64 tests. (#20853)128f0aaAdd volatile to featuresResolved (#20767)bdd49bbMerge pull request #20755 from protocolbuffers/29.x-202503192110c659468Updating version.json and repo version numbers to: 29.5-devUpdates
requestsfrom 2.32.3 to 2.32.4Release notes
Sourced from requests's releases.
Changelog
Sourced from requests's changelog.
Commits
021dc72Polish up release tooling for last manual release821770eBump version and add release notes for v2.32.459f8aa2Add netrc file search information to authentication documentation (#6876)5b4b64cAdd more tests to prevent regression of CVE 2024 470817bc4587Add new test to check netrc auth leak (#6962)96ba401Only use hostname to do netrc lookup instead of netloc7341690Merge pull request #6951 from tswast/patch-16716d7cremove linksa7e1c74Update docs/conf.pyc799b81docs: fix dead links to kenreitz.orgUpdates
tornadofrom 6.4.2 to 6.5Changelog
Sourced from tornado's changelog.
... (truncated)
Commits
ab5f354Merge pull request #3498 from bdarnell/final-6.53623024Final release notes for 6.5.0b39b892Merge pull request #3497 from bdarnell/multipart-log-spamcc61050httputil: Raise errors instead of logging in multipart/form-data parsingae4a4e4asyncio: Preserve contextvars across SelectorThread on Windows (#3479)197ff13Merge pull request #3496 from bdarnell/undeprecate-set-event-loopc3d906crequirements: Upgrade tox to 4.26.0a838977testing: Remove deprecation warning filter for set_event_loopd8e0d36build: Fix free-threaded build, mark speedups module as no-GILbfe7489Merge pull request #3492 from bdarnell/relnotes-6.5Updates
urllib3from 2.3.0 to 2.6.3Release notes
Sourced from urllib3's releases.