chore(deps): bump the python-minor-and-patch group across 1 directory with 4 updates - #630
Open
dependabot[bot] wants to merge 1 commit into
Open
Conversation
… with 4 updates Bumps the python-minor-and-patch group with 4 updates in the / directory: [gitpython](https://github.com/gitpython-developers/GitPython), [markdown](https://github.com/Python-Markdown/markdown), [bleach](https://github.com/mozilla/bleach) and [stix2-validator](https://github.com/oasis-open/cti-stix-validator). Updates `gitpython` from 3.1.54 to 3.1.57 - [Release notes](https://github.com/gitpython-developers/GitPython/releases) - [Changelog](https://github.com/gitpython-developers/GitPython/blob/main/CHANGES) - [Commits](gitpython-developers/GitPython@3.1.54...3.1.57) Updates `markdown` from 3.10.2 to 3.10.3 - [Release notes](https://github.com/Python-Markdown/markdown/releases) - [Changelog](https://github.com/Python-Markdown/markdown/blob/master/docs/changelog.md) - [Commits](Python-Markdown/markdown@3.10.2...3.10.3) Updates `bleach` from 6.3.0 to 6.4.0 - [Changelog](https://github.com/mozilla/bleach/blob/main/CHANGES) - [Commits](mozilla/bleach@v6.3.0...v6.4.0) Updates `stix2-validator` from 3.2.0 to 3.3.1 - [Release notes](https://github.com/oasis-open/cti-stix-validator/releases) - [Changelog](https://github.com/oasis-open/cti-stix-validator/blob/master/CHANGELOG) - [Commits](oasis-open/cti-stix-validator@v3.2.0...v3.3.1) --- updated-dependencies: - dependency-name: gitpython dependency-version: 3.1.57 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: python-minor-and-patch - dependency-name: markdown dependency-version: 3.10.3 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: python-minor-and-patch - dependency-name: bleach dependency-version: 6.4.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: python-minor-and-patch - dependency-name: stix2-validator dependency-version: 3.3.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: python-minor-and-patch ... Signed-off-by: dependabot[bot] <support@github.com>
|
Contributor
Author
|
Dependabot tried to update this pull request, but something went wrong. We're looking into it, but in the meantime you can retry the update by commenting |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.



Bumps the python-minor-and-patch group with 4 updates in the / directory: gitpython, markdown, bleach and stix2-validator.
Updates
gitpythonfrom 3.1.54 to 3.1.57Release notes
Sourced from gitpython's releases.
Commits
ccbd573prepare for new released1a631dMerge pull request #2193 from gitpython-developers/more-unsafe-optionsab33e33Merge pull request #2194 from gitpython-developers/fix-basedpyright52199b3address review comments60dec71Adopt basedpyright with a legacy baseline7a4f5dcBlock unsafe archive additions and bundle URI3af0c25Block unsafe checkout-index and tag file optionsfb5d584Merge pull request #2187 from pick7/codex/remote-progress-return-type951cc44Merge pull request #2188 from pick7/codex/redact-http-extraheader2e5b13fMerge pull request #2189 from pick7/codex/output-stream-timeoutUpdates
markdownfrom 3.10.2 to 3.10.3Release notes
Sourced from markdown's releases.
Changelog
Sourced from markdown's changelog.
Commits
bb50627Bump version to 3.10.38453df0Update Extension API documentation93ac448Document that all extensions are in maintenance moded38fd4aCreate AI Policyddead47Prevent mixed =/- chars in Setext-style headingsUpdates
bleachfrom 6.3.0 to 6.4.0Changelog
Sourced from bleach's changelog.
Commits
f0355a7fix: fix last release date in CHANGESae4e8a2chore: bleach 6.4.0 and final release970df58fix: uri-sanitization in formaction attributes7c4867cfix: xss bypass in allowed protocol test using unicode invisible characters913ab75fix: reduce redundancy in workflow jobs218c15afix: rework pip caching4f0b097fix: fix tox platform restrictionse95a79dchore: update pytest91539d4Bump actions/cache from 5.0.3 to 5.0.4cd47b4cfix: handle left-angle-bracket that's not a tag (#733)Updates
stix2-validatorfrom 3.2.0 to 3.3.1Release notes
Sourced from stix2-validator's releases.
... (truncated)
Changelog
Sourced from stix2-validator's changelog.
Commits
d3ef2a5Merge branch 'master' of github.com:oasis-open/cti-stix-validator3059025chg: [release] versionv3.3.1d9266a9Merge pull request #247 from chrisr3d/master7d4af31fix: [tests] Trying with a better assertion for error message raised with inv...b767784Merge branch 'master' of github.com:oasis-open/cti-stix-validatorae71357fix: Using latest pattern validator version9e4a1eaMerge pull request #246 from chrisr3d/master1885714chg: Bumped latest version and added required minimum python version503daa7Merge branch 'master' of github.com:chrisr3d/cti-stix-validatorfbcf543Merge branch 'master' of github.com:oasis-open/cti-stix-validatorDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions