Skip to content

Conversation

@mwoehlke
Copy link
Member

Update Poetry packages. In particular, this resolves security alerts for jinja2 < 3.1.6, requests < 2.32.4 and urllib3 < 2.5.0.

Update Poetry packages. In particular, this resolves security alerts for
jinja2 < 3.1.6, requests < 2.32.4 and urllib3 < 2.5.0.
Copy link
Collaborator

@bretbrownjr bretbrownjr left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'm a little confused why the python-versions aren't consistent across the config, but I suppose that's not necessarily a problem.

There's no particular way to review this (like sha256 checksums?) as a human, but I'm in favor of keeping dependencies up-to-date.

@mwoehlke mwoehlke merged commit b0bb7f0 into master Jul 25, 2025
3 checks passed
@mwoehlke mwoehlke deleted the update-deps branch July 25, 2025 17:05
@mwoehlke
Copy link
Member Author

I'm a little confused why the python-versions aren't consistent across the config

I suspect Poetry is just blindly copying whatever is specified by each specific package-version.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants