Deps: Bump the python-packages group with 11 updates - #149
Merged
Conversation
Bumps the python-packages group with 11 updates: | Package | From | To | | --- | --- | --- | | [shtab](https://github.com/tqdm/shtab) | `1.8.2` | `1.9.3` | | [uvicorn](https://github.com/Kludex/uvicorn) | `0.52.0` | `0.52.1` | | [coverage](https://github.com/coveragepy/coveragepy) | `7.15.2` | `7.15.4` | | [ast-serialize](https://github.com/mypyc/ast_serialize) | `0.6.0` | `0.7.0` | | [h2](https://github.com/python-hyper/h2) | `4.4.0` | `4.4.1` | | [librt](https://github.com/mypyc/librt) | `0.13.0` | `0.14.0` | | [packaging](https://github.com/pypa/packaging) | `26.2` | `26.3` | | [pydantic](https://github.com/pydantic/pydantic) | `2.14.0a1` | `2.14.0b1` | | [pydantic-core](https://github.com/pydantic/pydantic) | `2.47.0` | `2.48.0` | | [starlette](https://github.com/Kludex/starlette) | `1.3.1` | `1.4.1` | | [websockets](https://github.com/python-websockets/websockets) | `17.0` | `17.0.1` | Updates `shtab` from 1.8.2 to 1.9.3 - [Release notes](https://github.com/tqdm/shtab/releases) - [Commits](tqdm/shtab@v1.8.2...v1.9.3) Updates `uvicorn` from 0.52.0 to 0.52.1 - [Release notes](https://github.com/Kludex/uvicorn/releases) - [Changelog](https://github.com/Kludex/uvicorn/blob/main/docs/release-notes.md) - [Commits](Kludex/uvicorn@0.52.0...0.52.1) Updates `coverage` from 7.15.2 to 7.15.4 - [Release notes](https://github.com/coveragepy/coveragepy/releases) - [Changelog](https://github.com/coveragepy/coveragepy/blob/main/CHANGES.rst) - [Commits](coveragepy/coveragepy@7.15.2...7.15.4) Updates `ast-serialize` from 0.6.0 to 0.7.0 - [Commits](mypyc/ast_serialize@v0.6.0...v0.7.0) Updates `h2` from 4.4.0 to 4.4.1 - [Changelog](https://github.com/python-hyper/h2/blob/master/CHANGELOG.rst) - [Commits](python-hyper/h2@v4.4.0...v4.4.1) Updates `librt` from 0.13.0 to 0.14.0 - [Commits](mypyc/librt@v0.13.0...v0.14.0) Updates `packaging` from 26.2 to 26.3 - [Release notes](https://github.com/pypa/packaging/releases) - [Changelog](https://github.com/pypa/packaging/blob/main/CHANGELOG.rst) - [Commits](pypa/packaging@26.2...26.3) Updates `pydantic` from 2.14.0a1 to 2.14.0b1 - [Release notes](https://github.com/pydantic/pydantic/releases) - [Changelog](https://github.com/pydantic/pydantic/blob/main/HISTORY.md) - [Commits](pydantic/pydantic@v2.14.0a1...v2.14.0b1) Updates `pydantic-core` from 2.47.0 to 2.48.0 - [Release notes](https://github.com/pydantic/pydantic/releases) - [Changelog](https://github.com/pydantic/pydantic/blob/main/HISTORY.md) - [Commits](https://github.com/pydantic/pydantic/commits/core-v2.48.0) Updates `starlette` from 1.3.1 to 1.4.1 - [Release notes](https://github.com/Kludex/starlette/releases) - [Changelog](https://github.com/Kludex/starlette/blob/main/docs/release-notes.md) - [Commits](Kludex/starlette@1.3.1...1.4.1) Updates `websockets` from 17.0 to 17.0.1 - [Release notes](https://github.com/python-websockets/websockets/releases) - [Commits](python-websockets/websockets@17.0...17.0.1) --- updated-dependencies: - dependency-name: shtab dependency-version: 1.9.3 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: python-packages - dependency-name: uvicorn dependency-version: 0.52.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: python-packages - dependency-name: coverage dependency-version: 7.15.4 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: python-packages - dependency-name: ast-serialize dependency-version: 0.7.0 dependency-type: indirect update-type: version-update:semver-minor dependency-group: python-packages - dependency-name: h2 dependency-version: 4.4.1 dependency-type: indirect update-type: version-update:semver-patch dependency-group: python-packages - dependency-name: librt dependency-version: 0.14.0 dependency-type: indirect update-type: version-update:semver-minor dependency-group: python-packages - dependency-name: packaging dependency-version: '26.3' dependency-type: indirect update-type: version-update:semver-minor dependency-group: python-packages - dependency-name: pydantic dependency-version: 2.14.0b1 dependency-type: indirect update-type: version-update:semver-patch dependency-group: python-packages - dependency-name: pydantic-core dependency-version: 2.48.0 dependency-type: indirect update-type: version-update:semver-minor dependency-group: python-packages - dependency-name: starlette dependency-version: 1.4.1 dependency-type: indirect update-type: version-update:semver-minor dependency-group: python-packages - dependency-name: websockets dependency-version: 17.0.1 dependency-type: indirect update-type: version-update:semver-patch dependency-group: python-packages ... Signed-off-by: dependabot[bot] <[email protected]>
greenbonebot
enabled auto-merge (rebase)
August 10, 2026 04:12
bjoernricks
approved these changes
Aug 10, 2026
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the python-packages group with 11 updates:
1.8.21.9.30.52.00.52.17.15.27.15.40.6.00.7.04.4.04.4.10.13.00.14.026.226.32.14.0a12.14.0b12.47.02.48.01.3.11.4.117.017.0.1Updates
shtabfrom 1.8.2 to 1.9.3Release notes
Sourced from shtab's releases.
Commits
91e3130Merge pull request #238 from tqdm/devel33d031emisc tidyb0a498bMerge pull request #233 from ThomasWaldmann/fix-fish-descriptions4c664eamisc updates & tidy5cf4ddffish: expand argparse placeholders, fallback helpfc7fe03Merge pull request #237 from tqdm/tests-auto-caplogd892b3ftests: auto-caplog79536deMerge pull request #232 from ThomasWaldmann/fix-fish-backendd59f615CI: update fish>=4e885d27fish: drop Choice support, misc tidyUpdates
uvicornfrom 0.52.0 to 0.52.1Release notes
Sourced from uvicorn's releases.
Changelog
Sourced from uvicorn's changelog.
Commits
ee8e45cVersion 0.52.1 (#3056)b57926dRemove duplicate content headers from WebSocket denial responses on websocket...49de1b9chore(deps): bump pymdown-extensions from 10.21.3 to 11.0 (#3042)2f3fa3aComplete server-initiated closes in SansIO WebSocket protocols (#3053)8c59d55chore(deps): bump the github-actions group with 5 updates (#3054)e148451Handle connection loss during WebSocket write backpressure (#3050)e16a69bAdd missing write flow control towebsockets-sansio(#3048)ef1dd44Fold the zttp-only tests back into the HTTP test suite (#3046)Updates
coveragefrom 7.15.2 to 7.15.4Release notes
Sourced from coverage's releases.
Changelog
Sourced from coverage's changelog.
Commits
4c0e7ffdocs: sample HTML for 7.15.4db4cc32docs: prep for 7.15.4c33085cstyle: start gradual move to ruff 0.1653a0fd5fix: neutralize control characters in lcov report fields (#2226)b64d53dbuild: make 3.15 wheels53792abbuild: show the python version for kitsf6b03c7chore: make upgrade_one package=cibuildwheeld9b660achore: make upgradeb128a31docs: oops, move this entry to the correct placea7a2c15fix: escape filename urls in html report href attributes (#2227)Updates
ast-serializefrom 0.6.0 to 0.7.0Commits
74193f3Bump version to 0.7.05b7276cMinor update after adding wheels for Python 3.15 (#73)49e34a5Vendor Ruff crates (#70)fbca1afBuild musllinux wheels for ppc64le and riscv64 (#72)c2db11cBuild wheels for Python 3.15 (#71)Updates
h2from 4.4.0 to 4.4.1Changelog
Sourced from h2's changelog.
Commits
bc239afv4.4.192b925eadd test for duplicate host headers292a408reject duplicate Host headers in request headers04d3b87update changelog439b970prepare for next release cycle9a7ff74performance: remove consumed frames in place from data buffer (#1321)Updates
librtfrom 0.13.0 to 0.14.0Commits
3c133faSync mypy and bump versionc963cc9Build wheels for Python 3.15 (#43)Updates
packagingfrom 26.2 to 26.3Release notes
Sourced from packaging's releases.
... (truncated)
Changelog
Sourced from packaging's changelog.
... (truncated)
Commits
929fd4bBump for releasef300ebfchore(deps): bump the pre-commit group with 5 updates (#1357)f91d975ci(downstream): bump hatchling to 1.31.0 and fix its pytest rootdir (#1361)b1a7124chore(deps): bump the github-actions group with 7 updates (#1358)2d873ebfix(metadata): fold every line boundary when writing headers (#1356)413d006docs: changelog for 26.3 (#1343)4eb0753docs(metadata): explain selective field validation (#1342)77e9ed4feat(tags): add pure Python tag generator (#1346)7cea5e8ci: drop 3.13t on Windows (3.13.14t may fail to build, run takes 9 minutes) (...45a8b34docs: add missing versionadded/versionchanged directives (#1344)Updates
pydanticfrom 2.14.0a1 to 2.14.0b1Changelog
Sourced from pydantic's changelog.
... (truncated)
Commits
5922459Prepare release v2.14.0b1 (#13597)111c942Refactor model namespace inspection (#13596)b348cf0Add initial support for Python 3.15 (#13587)4792336Bump PyO3 to 0.29.2 (#13572)57d0ad8Raise explicitTypeErroron invalidindex_keyserialization wrap handler ...53b39c3Add anamed-tuplecore schema (#13505)98a08d3Revert movingpydantic-coretests (#13589)5f49d85AddAllowInfNantype to the field metadata gathering (#13586)2e5f0e2TryFormat.VALUEbeforeFORWARDREFwhen evaluating annotations in `ModelM...de3175cMigratepydantic-coretests to main tests directory (#13582)Updates
pydantic-corefrom 2.47.0 to 2.48.0Commits
Updates
starlettefrom 1.3.1 to 1.4.1Release notes
Sourced from starlette's releases.
Changelog
Sourced from starlette's changelog.
Commits
9c55062Version 1.4.1 (#3416)152cef4Defaultthread_minimum_sizeinGZipResponder(#3415)3d6d6c2Version 1.4.0 (#3413)cb824a1Offload large GZip compression (#3410)5567e27Run ASGI benchmarks on a real event loop (#3412)be5bf5eAdd GZip event-loop responsiveness benchmark (#3409)7ed6b26Usezlib.compressobjinstead ofGzipFileinGZipMiddleware(#3411)a375798Lazily allocate GZipMiddleware compression resources (#3407)0eb9ca8Exercise GZipMiddleware benchmarks through ASGI (#3408)08f29c9Add GZipMiddleware bypass benchmarks (#3406)Updates
websocketsfrom 17.0 to 17.0.1Release notes
Sourced from websockets's releases.
Commits
fd3f16cRelease version 17.0.1.3e4634aRemove superfluous "no cover" pragmas.b93ef1eAdd tests for the asyncio server.fef04d8Fix backpressure in the Trio implementation.eb3600cRestore compatibility of serve_forever with uvloop.8b5e767Simplify asyncio server implementation.94f6384Refactor connection handling outside of Server class.3826993Unpin sphinx.31ec002Add Trio to requirements for building docs.ff7a7fbIncrease timeout for building wheels.Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions