8000 Bump the pip group across 1 directory with 5 updates by dependabot[bot] · Pull Request #1 · jmac122/Poker · GitHub
[go: up one dir, main page]
More Web Proxy on the site http://driver.im/
Skip to content

Bump the pip group across 1 directory with 5 updates #1

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

dependabot[bot]
Copy link
@dependabot dependabot bot commented on behalf of github Feb 28, 2025

Bumps the pip group with 5 updates in the / directory:

Package From To
pyinstaller 5.13.0 6.10.0
pymongo 4.3.3 4.6.3
numexpr 2.8.4 2.8.5
tensorflow 2.12.0 2.12.1
pyjwt 1.7.0 2.10.1

Updates pyinstaller from 5.13.0 to 6.10.0

Release notes

Sourced from pyinstaller's releases.

v6.10.0

Please see the v6.10.0 section of the changelog for a list of the changes since v6.9.0.

v6.9.0

Please see the v6.9.0 section of the changelog for a list of the changes since v6.8.0.

v6.8.0

Please see the v6.8.0 section of the changelog for a list of the changes since v6.7.0.

v6.7.0

Please see the v6.7.0 section of the changelog for a list of the changes since v6.6.0.

v6.6.0

Please see the v6.6.0 section of the changelog for a list of the changes since v6.5.0.

v6.5.0

Please see the v6.5.0 section of the changelog for a list of the changes since v6.4.0.

v6.4.0

Please see the v6.4.0 section of the changelog for a list of the changes since v6.3.0.

v6.3.0

Please see the v6.3.0 section of the changelog for a list of the changes since v6.2.0.

v6.2.0

Please see the v6.2.0 section of the changelog for a list of the changes since v6.1.0.

v6.1.0

Please see the v6.1.0 section of the changelog for a list of the changes since v6.0.0.

v6.0.0

Please see the v6.0.0 section of the changelog for a list of the changes since v5.13.2.

v5.13.2

Please see the v5.13.2 section of the changelog for a list of the changes since v5.13.1.

v5.13.1

Please see the v5.13.1 section of the changelog for a list of the changes since v5.13.0. Note that this is a bugfix only release. It's primary purpose is to publish pyinstaller/pyinstaller#7827.

Changelog

Sourced from pyinstaller's changelog.

6.10.0 (2024-08-10)

Features


* (Linux) Extend the mechanism for collection of ``.hmac`` files from
  :issue:`8288` to also include ``.hmac`` files in the ``fipscheck`` directory.
  (:issue:`8719`)
* Add support for Python 3.13. (:issue:`8198`)
  • Introduce new :envvar:PYINSTALLER_RESET_ENVIRONMENT environment variable, to be used by application developers when trying to launch :data:sys.executable-based process that is supposed to outlive the current application process (which includes the :ref:application restart scenario <independent subprocess>). This is considered the official and preferred approach at spawning new independent instances of the same application (as opposed to modifying the private :envvar:_PYI_ARCHIVE_FILE environment variable). (:issue:8634)
  • The splash screen in splash-screen enabled frozen application can now be disabled by the user at run-time, using the new :envvar:PYINSTALLER_SUPPRESS_SPLASH_SCREEN environment variable. If the environment variable is set to 1, the splash screen is not shown, and functions from :mod:pyi_splash become no-op without raising errors or displaying warning messages. (:issue:8634)

Bugfix


* (Windows) Attempt to work around the leak of ``VCRUNTIME140.dll`` in
  ``onefile`` applications with splash screen enabled in scenarios where
  the OS and/or anti-virus program injects additional DLLs into the process
  that also depend on ``VCRUNTIME140.dll``. (:issue:`7106`)
* (Windows) Fix regression in PyInstaller 6.x that caused console-enabled
  onefile to applications fail to clean up their temporary directory during
  system session shutdown (i.e., when user logs off or initiates system shutdown
  or restart). For console-enabled onefile applications, this used to work up
  until PyInstaller 6.0 by means of installed console handler; however, due to
  contemporary bootloader executables being linked against ``user32.dll``, the
  console handler does not receive ``CTRL_LOGOFF_EVENT`` and
  ``CTRL_SHUTDOWN_EVENT`` console events anymore (for the same reason, this did
  not work for builds with splash screen, even between v5.3 and 6.0). Instead,
  session shutdown is now handled by means of hidden window and handling of
  ``WM_QUERYENDSESSION`` and ``WM_ENDSESSION`` event messages. (:issue:`8648`)
* (Windows) Improve handling of ``CTRL_CLOSE_EVENT`` console event in
  ``onefile`` builds for compatibility with Windows Terminal in order to
  avoid leaking temporary files when user closes the terminal window
  (or tab). Upon receiving the event, the parent process now gives the child
  process a 500-millisecond grace period to exit, after which it terminates
</tr></table> 
</code></pre>
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>

<ul>
<li><a href="https://github.com/pyinstaller/pyinstaller/commit/085296f616a4b7eff4614710f9527b164c463c21&quot;&gt;&lt;code&gt;085296f&lt;/code&gt;&lt;/a> Release v6.10.0. [skip ci]</li>
<li><a href="https://github.com/pyinstaller/pyinstaller/commit/af549bb71d8c6c6a29577f1728e2ba4d0d9a6059&quot;&gt;&lt;code&gt;af549bb&lt;/code&gt;&lt;/a> misc: adjust for changes in _pyinstaller_hooks_contrib layout</li>
<li><a href="https://github.com/pyinstaller/pyinstaller/commit/86cfc103ff29eca938d5c07c5db65c417eae5b47&quot;&gt;&lt;code&gt;86cfc10&lt;/code&gt;&lt;/a> hookutils: Tcl/Tk: fix Tk data directory when using Tk framework bundle</li>
<li><a href="https://github.com/pyinstaller/pyinstaller/commit/709dbd224cc4a5823906f531714eda0502bdc2bb&quot;&gt;&lt;code&gt;709dbd2&lt;/code&gt;&lt;/a> hooks: tkinter: change Tcl/Tk script directory names to avoid conflicts</li>
<li><a href="https://github.com/pyinstaller/pyinstaller/commit/67f932ee66b3cf2bbb69108ab85d707b5ae1440c&quot;&gt;&lt;code&gt;67f932e&lt;/code&gt;&lt;/a> tests: add a full functional test for tkinter</li>
<li><a href="https://github.com/pyinstaller/pyinstaller/commit/bc3f2e0f286d3014061e3d9b5ae1fc3522750d2d&quot;&gt;&lt;code&gt;bc3f2e0&lt;/code&gt;&lt;/a> hookutils: robustify <code>can_import_module</code> against interpreter crashes</li>
<li><a href="https://github.com/pyinstaller/pyinstaller/commit/5c23105220e176e3300ab631412de735e725b481&quot;&gt;&lt;code&gt;5c23105&lt;/code&gt;&lt;/a> hookutils: rework the Tcl/Tk utility functions</li>
<li><a href="https://github.com/pyinstaller/pyinstaller/commit/c28e448c4d99fd6f0f1e877d7a3a968541749197&quot;&gt;&lt;code&gt;c28e448&lt;/code&gt;&lt;/a> hookutils: setuptools: fix couple of typos</li>
<li><a href="https://github.com/pyinstaller/pyinstaller/commit/80724ff94bc51fcb9115c28696b134a51a516097&quot;&gt;&lt;code&gt;80724ff&lt;/code&gt;&lt;/a> tests: add test for GIL setting in freethreading-enabled python builds</li>
<li><a href="https://github.com/pyinstaller/pyinstaller/commit/eb71f10d435019b65f852a41d218d89d0c00132c&quot;&gt;&lt;code&gt;eb71f10&lt;/code&gt;&lt;/a> README: add python 3.13 to list of supported versions</li>
<li>Additional commits viewable in <a href="https://github.com/pyinstaller/pyinstaller/compare/v5.13.0...v6.10.0&quot;&gt;compare view</a></li>
</ul>
</details>

<br />

Updates pymongo from 4.3.3 to 4.6.3

Release notes

Sourced from pymongo's releases.

PyMongo 4.6.3

Community notes: https://www.mongodb.com/community/forums/t/pymongo-4-6-3-release-for-cve-2024-5629/284348

PyMongo 4.6.2

Release notes: https://www.mongodb.com/community/forums/t/pymongo-4-6-2-released/267404

PyMongo 4.6.1

Release notes: https://www.mongodb.com/community/forums/t/pymongo-4-6-1-released/255752

PyMongo 4.6.0

Release notes: https://www.mongodb.com/community/forums/t/pymongo-4-6-0-released/251866

PyMongo 4.5.0

Release notes: https://www.mongodb.com/community/forums/t/pymongo-4-5-0-released/240662

PyMongo 4.4.1

Release notes: https://www.mongodb.com/community/forums/t/pymongo-4-4-1-released/235045

PyMongo 4.4.0

Release notes: https://www.mongodb.com/community/forums/t/pymongo-4-4-released/232211

PyMongo 4.4.0b0

Release notes: https://www.mongodb.com/community/forums/t/pymongo-4-4-0b0-release/210471

Changelog

Sourced from pymongo's changelog.

Changes in Version 4.6.3 (2024/03/27)

PyMongo 4.6.3 fixes the following bug:

  • Fixed a potential memory access violation when decoding invalid bson.

Issues Resolved ...............

See the PyMongo 4.6.3 release notes in JIRA_ for the list of resolved issues in this release.

.. _PyMongo 4.6.3 release notes in JIRA: https://jira.mongodb.org/secure/ReleaseNote.jspa?projectId=10004&version=38360

Changes in Version 4.6.2 (2024/02/21)

PyMongo 4.6.2 fixes the following bug:

  • Fixed a bug appearing in Python 3.12 where "RuntimeError: can't create new thread at interpreter shutdown" could be written to stderr when a MongoClient's thread starts as the python interpreter is shutting down.

Issues Resolved ...............

See the PyMongo 4.6.2 release notes in JIRA_ for the list of resolved issues in this release.

.. _PyMongo 4.6.2 release notes in JIRA: https://jira.mongodb.org/secure/ReleaseNote.jspa?projectId=10004&version=37906

Changes in Version 4.6.1 (2023/11/29)

PyMongo 4.6.1 fixes the following bug:

  • Ensure retryable read OperationFailure errors re-raise exception when 0 or NoneType error code is provided.

Issues Resolved ...............

See the PyMongo 4.6.1 release notes in JIRA_ for the list of resolved issues in this release.

.. _PyMongo 4.6.1 release notes in JIRA: https://jira.mongodb.org/secure/ReleaseNote.jspa?projectId=10004&version=37138

Changes in Version 4.6.0 (2023/11/01)

PyMongo 4.6 brings a number of improvements including:

... (truncated)

Commits
  • 8da192f BUMP 4.6.3
  • 56b6b6d PYTHON-4305 Fix bson size check (#1564)
  • 449d0f3 BUMP to 4.6.3.dev0
  • e04576d DEVPROD-3871 Use teardown_task when there is one function/command (#1533)
  • cf1c6a1 PYTHON-4219 Prep for 4.6.2 Release (#1530)
  • d29b2b7 PYTHON-4147 [v4.6]: Silence noisy thread.start() RuntimeError at shutdown (#1...
  • 0477b9b PYTHON-4077 [v4.6]: Ensure there is a MacOS wheel for Python 3.7 (#1527)
  • ecad17d BUMP 4.6.2.dev0
  • 485e0a5 BUMP 4.6.1
  • 995365c PYTHON-4038 [v4.6]: Ensure retryable read OperationFailures re-raise except...
  • Additional commits viewable in compare view

Updates numexpr from 2.8.4 to 2.8.5

Changelog

Sourced from numexpr's changelog.

Changes from 2.8.5 to 2.8.6

  • The sanitization can be turned off by default by setting an environment variable,

    set NUMEXPR_SANITIZE=0

  • Improved behavior of the blacklist to avoid triggering on private variables and scientific notation numbers.

Commits
  • 298134a Getting ready for release 2.8.5
  • 1c6bce1 Merge branch 'master' of https://github.com/pydata/numexpr
  • 00b035c Make more difficult sanitize of the expression string before eval
  • 67a1221 Merge pull request #443 from de11n/fix-libraries-parsing
  • c2dd659 Fix setup.py to respect numpy's parsing of libraries in site.cfg
  • 4b2d89c Add in protections against call to eval(expression)
  • 74d5973 Adding tests for validate and noticed that re_evaluate tests using `local...
  • 0032150 Apparently sphinx_rtd_theme is only compatible with Sphinx < 7.0
  • 6b6fd1d Also pin sphinx-rtd-theme
  • 0c22ea7 Try and pin Sphinx version for ReadtheDocs
  • Additional commits viewable in compare view

Updates tensorflow from 2.12.0 to 2.12.1

Release notes

Sourced from tensorflow's releases.

TensorFlow 2.12.1

Release 2.12.1

Bug Fixes and Other Changes

  • The use of the ambe config to build and test aarch64 is not needed. The ambe config will be removed in the future. Making cpu_arm64_pip.sh and cpu_arm64_nonpip.sh more similar for easier future maintenance.
Changelog

Sourced from tensorflow's changelog.

Release 2.12.1

Bug Fixes and Other Changes

  • The use of the ambe config to build and test aarch64 is not needed. The ambe config will be removed in the future. Making cpu_arm64_pip.sh and cpu_arm64_nonpip.sh more similar for easier future maintenance.
Commits
  • 8e2b665 Merge pull request #61094 from tensorflow/venkat-patch-444
  • 02478f0 Fix unit test failure caused by numpy update
  • 2cd9b41 Merge pull request #61082 from tensorflow/venkat-patch-333
  • 7995c95 Updating Simplified retry logic to DNS cache
  • 29479ed Merge pull request #60872 from tensorflow/r2.12-c45a6c0b1cb
  • e76a933 Simplified retry logic to DNS cache
  • 76addf7 Merge pull request #60850 from elfringham/non_pip_fix
  • 05987a8 [Linaro:ARM_CI] Fix permissions for running nonpip tests
  • 23724d2 Merge pull request #60842 from elfringham/r2.12
  • 496730b Limit typing_extensions to less than 4.6.0 until it works
  • Additional commits viewable in compare view

Updates pyjwt from 1.7.0 to 2.10.1

Release notes

Sourced from pyjwt's releases.

2.10.1

Fixed

Full Changelog: https://github.com/jpadilla/pyjwt/compare/2.10.0...2.10.1

2.10.0

What's Changed

New Contributors

Full Changelog: https://github.com/jpadilla/pyjwt/compare/2.9.0...2.10.0

... (truncated)

Changelog

Sourced from pyjwt's changelog.

v2.10.1 <https://github.com/jpadilla/pyjwt/compare/2.10.0...2.10.1>__

Fixed


- Prevent partial matching of `iss` claim by @fabianbadoi in `GHSA-75c5-xw7c-p5pm <https://github.com/jpadilla/pyjwt/security/advisories/GHSA-75c5-xw7c-p5pm>`__

v2.10.0 &lt;https://github.com/jpadilla/pyjwt/compare/2.9.0...2.10.0&gt;__

Changed

  • Remove algorithm requirement from JWT API, instead relying on JWS API for enforcement, by @​luhn in [#975](https://github.com/jpadilla/pyjwt/issues/975) <https://github.com/jpadilla/pyjwt/pull/975>__

  • Use Sequence for parameter types rather than List where applicable by @​imnotjames in [#970](https://github.com/jpadilla/pyjwt/issues/970) <https://github.com/jpadilla/pyjwt/pull/970>__

  • Add JWK support to JWT encode by @​luhn in [#979](https://github.com/jpadilla/pyjwt/issues/979) <https://github.com/jpadilla/pyjwt/pull/979>__

  • Encoding and decoding payloads using the none algorithm by @​jpadilla in #c2629f6 <https://github.com/jpadilla/pyjwt/commit/c2629f66c593459e02616048443231ccbe18be16>

    Before:

    .. code-block:: pycon

    import jwt jwt.encode({"payload": "abc"}, key=None, algorithm=None)

    After:

    .. code-block:: pycon

    import jwt jwt.encode({"payload": "abc"}, key=None, algorithm="none")

  • Added validation for 'sub' (subject) and 'jti' (JWT ID) claims in tokens by @​Divan009 in [#1005](https://github.com/jpadilla/pyjwt/issues/1005) <https://github.com/jpadilla/pyjwt/pull/1005>__

  • Refactor project configuration files from setup.cfg to pyproject.toml by @​cleder in [#995](https://github.com/jpadilla/pyjwt/issues/995) <https://github.com/jpadilla/pyjwt/pull/995>__

  • Ruff linter and formatter changes by @​gagandeepp in [#1001](https://github.com/jpadilla/pyjwt/issues/1001) <https://github.com/jpadilla/pyjwt/pull/1001>__

  • Drop support for Python 3.8 (EOL) by @​kkirsche in [#1007](https://github.com/jpadilla/pyjwt/issues/1007) <https://github.com/jpadilla/pyjwt/pull/1007>__

Fixed


- Encode EC keys with a fixed bit length by @etianen in `[#990](https://github.com/jpadilla/pyjwt/issues/990) <https://github.com/jpadilla/pyjwt/pull/990>`__
- Add an RTD config file to resolve Read the Docs build failures by @kurtmckee in `[#977](https://github.com/jpadilla/pyjwt/issues/977) <https://github.com/jpadilla/pyjwt/pull/977>`__
- Docs: Update ``iat`` exception docs by @pachewise in `[#974](https://github.com/jpadilla/pyjwt/issues/974) <https://github.com/jpadilla/pyjwt/pull/974>`__
- Docs: Fix ``decode_complete`` scope and algorithms by @RbnRncn in `[#982](https://github.com/jpadilla/pyjwt/issues/982) <https://github.com/jpadilla/pyjwt/pull/982>`__
- Fix doctest for ``docs/usage.rst`` by @pachewise in `[#986](https://github.com/jpadilla/pyjwt/issues/986) <https://github.com/jpadilla/pyjwt/pull/986>`__
</tr></table> 

... (truncated)

Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps the pip group with 5 updates in the / directory:

| Package | From | To |
| --- | --- | --- |
| [pyinstaller](https://github.com/pyinstaller/pyinstaller) | `5.13.0` | `6.10.0` |
| [pymongo](https://github.com/mongodb/mongo-python-driver) | `4.3.3` | `4.6.3` |
| [numexpr](https://github.com/pydata/numexpr) | `2.8.4` | `2.8.5` |
| [tensorflow](https://github.com/tensorflow/tensorflow) | `2.12.0` | `2.12.1` |
| [pyjwt](https://github.com/jpadilla/pyjwt) | `1.7.0` | `2.10.1` |



Updates `pyinstaller` from 5.13.0 to 6.10.0
- [Release notes](https://github.com/pyinstaller/pyinstaller/releases)
- [Changelog](https://github.com/pyinstaller/pyinstaller/blob/develop/doc/CHANGES.rst)
- [Commits](pyinstaller/pyinstaller@v5.13.0...v6.10.0)

Updates `pymongo` from 4.3.3 to 4.6.3
- [Release notes](https://github.com/mongodb/mongo-python-driver/releases)
- [Changelog](https://github.com/mongodb/mongo-python-driver/blob/master/doc/changelog.rst)
- [Commits](mongodb/mongo-python-driver@4.3.3...4.6.3)

Updates `numexpr` from 2.8.4 to 2.8.5
- [Release notes](https://github.com/pydata/numexpr/releases)
- [Changelog](https://github.com/pydata/numexpr/blob/master/RELEASE_NOTES.rst)
- [Commits](pydata/numexpr@v2.8.4...v2.8.5)

Updates `tensorflow` from 2.12.0 to 2.12.1
- [Release notes](https://github.com/tensorflow/tensorflow/releases)
- [Changelog](https://github.com/tensorflow/tensorflow/blob/master/RELEASE.md)
- [Commits](tensorflow/tensorflow@v2.12.0...v2.12.1)

Updates `pyjwt` from 1.7.0 to 2.10.1
- [Release notes](https://github.com/jpadilla/pyjwt/releases)
- [Changelog](https://github.com/jpadilla/pyjwt/blob/master/CHANGELOG.rst)
- [Commits](jpadilla/pyjwt@1.7.0...2.10.1)

---
updated-dependencies:
- dependency-name: pyinstaller
  dependency-type: direct:production
  dependency-group: pip
- dependency-name: pymongo
  dependency-type: direct:production
  dependency-group: pip
- dependency-name: numexpr
  dependency-type: direct:production
  dependency-group: pip
- dependency-name: tensorflow
  dependency-type: direct:production
  dependency-group: pip
- dependency-name: pyjwt
  dependency-type: direct:production
  dependency-group: pip
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Feb 28, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants
0