chore(deps-dev): bump the python-dependencies group across 1 directory with 10 updates #699
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Updates the requirements on mangum, pre-commit, uvicorn, boto3, pypdf, cachetools, moto[proxy], black, mypy and poetry to permit the latest version.
Updates
mangumfrom 0.19.0 to 0.20.0Release notes
Sourced from mangum's releases.
Changelog
Sourced from mangum's changelog.
Commits
033d165Version 0.20.0 (#360)2e3ba33Support Python 3.14 (#354)97a25d6chore: use dependency-groups in pyproject (#352)d287d2dDrop support for Python 3.8 (#351)ee299b2Drop support for Python 3.7 (#350)fbd7835Create SECURITY.md34406b8Add uv installation requirement (#340)Updates
pre-commitfrom 4.5.0 to 4.5.1Release notes
Sourced from pre-commit's releases.
Changelog
Sourced from pre-commit's changelog.
Commits
8a0630cv4.5.1fcbc745Merge pull request #3597 from pre-commit/empty-setup-py51592eefix python local template when artifact dirs are present67e8fafMerge pull request #3596 from pre-commit/pre-commit-ci-update-configc251e6b[pre-commit.ci] pre-commit autoupdate98ccafaMerge pull request #3593 from pre-commit/pre-commit-ci-update-config4895355[pre-commit.ci] pre-commit autoupdate2cedd58Merge pull request #3588 from pre-commit/pre-commit-ci-update-config465192d[pre-commit.ci] pre-commit autoupdatefd42f96Merge pull request #3586 from pre-commit/zipapp-sha256-file-not-neededUpdates
uvicornto 0.40.0Release notes
Sourced from uvicorn's releases.
Changelog
Sourced from uvicorn's changelog.
... (truncated)
Commits
9ff6004Version 0.40.0 (#2773)19df042Drop Python 3.9 (#2772)865ce7cRun strict mypy on test suite (#2771)4f40b84Version 0.39.0 (#2770)5692dfcfix(websockets): Send close frame on ASGI return (#2769)4194764chore(deps): bump the github-actions group with 2 updates (#2763)d94bf28explicitly start ASGI run with empty context (#2742)8ae0bcbchore(deps): bump the github-actions group with 2 updates (#2748)4744ff9Add groups configuration for GitHub Actions (#2747)0391372chore(deps): bump astral-sh/setup-uv from 6.8.0 to 7.1.2 (#2746)Updates
boto3from 1.40.76 to 1.42.35Commits
d8f9058Merge branch 'release-1.42.35'3b240b9Bumping version to 1.42.35735e979Add changelog entries from botocorea587349Bump actions/setup-python from 6.1.0 to 6.2.0 (#4707)bcb29a8Merge pull request #4698 from RyanFitzSimmonsAK/develop74f1398Update inject.py9a285e6Merge branch 'release-1.42.34'62db55fMerge branch 'release-1.42.34' into develop2957415Bumping version to 1.42.348e1fd2eAdd changelog entries from botocoreUpdates
pypdffrom 6.4.1 to 6.6.2Release notes
Sourced from pypdf's releases.
... (truncated)
Changelog
Sourced from pypdf's changelog.
... (truncated)
Commits
ad47d50REL: 6.6.2b1282f8SEC: Detect cyclic references when retrieving outlines (#3610)f18e13cREL: 6.6.11973576DEV: Bump wheel from 0.44.0 to 0.46.2 (#3608)4740225ROB:/AcroFormmight be NullObject (#3601)26fd638ROB: Handle missing font bounding boxes gracefully (#3600)affe8edDEV: Bump virtualenv from 20.27.0 to 20.36.1 (#3597)df1b91dDEV: Add missing dependency to URL check10df9c7REL: 6.6.02941657SEC: Improve handling of partially broken PDF files (#3594)Updates
cachetoolsfrom 6.2.2 to 6.2.5Changelog
Sourced from cachetools's changelog.
Commits
7158a30Release v6.2.5.c9e3e26Fix #379: Improve@cachedmethodexample by using a lock.d99c023Bump copyright year.5a87ee0Add test cases for cache stampede scenarios.2e166d1Bump actions/checkout from 6.0.0 to 6.0.19c9f9e5Bump codecov/codecov-action from 5.5.1 to 5.5.2b8bec4aFix #345: Add GitHub pull request template.9983ef8Bump version for uploading with updated twine.c935468Release v6.2.3.94d1099Prepare v6.2.3.Updates
moto[proxy]from 5.1.18 to 5.1.20Changelog
Sourced from moto[proxy]'s changelog.
... (truncated)
Commits
11ff848Pre-Release: Up Version Numberbadb61cPrep release 5.1.20 (#9651)648c47bSQS: Ensure enable_iam_authentication works with SQS Queues (#9650)9a9e0e3ResourceGroups: Sync Tasks (#9627)4f8df27Batch: Add eksPropertiesOverride support for EKS jobs (#9647)81c9326[S3Control] Adding S3 Multi-Region Access Points Support (#9645)cbb647eSNS: Fix incomplete conversions of boolean values (#9644)0138b2e[Security Hub] Member methods (#9631)090affafeat(organizations): Add Resource Control Policy support (#9628)5f7182bFirehose: add Terraform testUpdates
blackfrom 25.12.0 to 26.1.0Release notes
Sourced from black's releases.
... (truncated)
Changelog
Sourced from black's changelog.
... (truncated)
Commits
6305bf1Prepare 2026.1.0 release (#4892)e71305bBump pypa/cibuildwheel from 3.3.0 to 3.3.1 (#4961)21a2a8cFix Shutdown multiprocessing Manager in schedule_formatting (#4952)e3146ceBump docker/setup-buildx-action from 3.11.1 to 3.12.0 (#4919)fe1fbc4Bump actions/upload-artifact from 5.0.0 to 6.0.0 (#4923)2b4b7fcBump actions/download-artifact from 6.0.0 to 7.0.0 (#4922)d745be6docs: document --force-exclude for pre-commit workflows (#4957)b41acd6Various CI and doc refactors (#4928)6f43612Handle pathspec v1 changes (#4958)200c550Bump furo from 2025.9.25 to 2025.12.19 in /docs (#4933)Updates
mypyfrom 1.19.0 to 1.19.1Changelog
Sourced from mypy's changelog.
... (truncated)
Commits
412c19aBump version to 1.19.120aea0aUpdate changelog for 1.19.1 (#20414)2b23b50Serialize raw errors in cache metas (#20372)f60f90fFail on PyPy in main instead of setup.py (#20389)58d485bFail with an explicit error on PyPy (#20384)a4b31a2Allowtypes.NoneTypein match cases (#20383)8a6eff4[mypyc] fix generator regression with empty tuple (#20371)70eceeaFix noncommutative joins with bounded TypeVars (#20345)3890fc4Fix crash involving Unpack-ed TypeVarTuple (#20323)c93d917Fix crash on star import of redefinition (#20333)Updates
poetryfrom 2.2.1 to 2.3.1Release notes
Sourced from poetry's releases.
... (truncated)
Changelog
Sourced from poetry's changelog.
... (truncated)
Commits
f3d239brelease: bump version to 2.3.16a81e60fix: ignore different URL in cache staleness check (#10699)697c170docs: document SHELL_VERBOSITY environment variable (#10678)e39f1f1release: bump version to 2.3.0c6d3537env activate: fallback to POSIX compatible builtin (#10696)ba73d18chore: update locked dependencies (#10694)a09b503chore: update actions (#10693)74e3d4edirect-origin: add size to file info (#10677)e29ac7arepository: bump cache version (#10677)ab293dcrepository: add size and upload-time to file info if available (#10677)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions