⬆ Bump the uv group across 1 directory with 5 updates#13
Open
dependabot[bot] wants to merge 1 commit into
Open
⬆ Bump the uv group across 1 directory with 5 updates#13dependabot[bot] wants to merge 1 commit into
dependabot[bot] wants to merge 1 commit into
Conversation
Bumps the uv group with 5 updates in the / directory: | Package | From | To | | --- | --- | --- | | [fastmcp](https://github.com/PrefectHQ/fastmcp) | `2.13.1` | `2.14.0` | | [lxml-html-clean](https://github.com/fedora-python/lxml_html_clean) | `0.3.1` | `0.4.4` | | [pypdf](https://github.com/py-pdf/pypdf) | `6.0.0` | `6.7.5` | | [torch](https://github.com/pytorch/pytorch) | `2.4.0` | `2.8.0` | | [unstructured](https://github.com/Unstructured-IO/unstructured) | `0.16.23` | `0.18.18` | Updates `fastmcp` from 2.13.1 to 2.14.0 - [Release notes](https://github.com/PrefectHQ/fastmcp/releases) - [Changelog](https://github.com/PrefectHQ/fastmcp/blob/main/docs/changelog.mdx) - [Commits](PrefectHQ/fastmcp@v2.13.1...v2.14.0) Updates `lxml-html-clean` from 0.3.1 to 0.4.4 - [Changelog](https://github.com/fedora-python/lxml_html_clean/blob/main/CHANGES.rst) - [Commits](fedora-python/lxml_html_clean@0.3.1...0.4.4) Updates `pypdf` from 6.0.0 to 6.7.5 - [Release notes](https://github.com/py-pdf/pypdf/releases) - [Changelog](https://github.com/py-pdf/pypdf/blob/main/CHANGELOG.md) - [Commits](py-pdf/pypdf@6.0.0...6.7.5) Updates `torch` from 2.4.0 to 2.8.0 - [Release notes](https://github.com/pytorch/pytorch/releases) - [Changelog](https://github.com/pytorch/pytorch/blob/main/RELEASE.md) - [Commits](pytorch/pytorch@v2.4.0...v2.8.0) Updates `unstructured` from 0.16.23 to 0.18.18 - [Release notes](https://github.com/Unstructured-IO/unstructured/releases) - [Changelog](https://github.com/Unstructured-IO/unstructured/blob/main/CHANGELOG.md) - [Commits](Unstructured-IO/unstructured@0.16.23...0.18.18) --- updated-dependencies: - dependency-name: fastmcp dependency-version: 2.14.0 dependency-type: direct:production dependency-group: uv - dependency-name: lxml-html-clean dependency-version: 0.4.4 dependency-type: direct:production dependency-group: uv - dependency-name: pypdf dependency-version: 6.7.5 dependency-type: direct:production dependency-group: uv - dependency-name: torch dependency-version: 2.8.0 dependency-type: direct:production dependency-group: uv - dependency-name: unstructured dependency-version: 0.18.18 dependency-type: direct:production dependency-group: uv ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the uv group with 5 updates in the / directory:
2.13.12.14.00.3.10.4.46.0.06.7.52.4.02.8.00.16.230.18.18Updates
fastmcpfrom 2.13.1 to 2.14.0Release notes
Sourced from fastmcp's releases.
... (truncated)
Changelog
Sourced from fastmcp's changelog.
... (truncated)
Commits
3d6fd46chore: remove tests/test_examples.py (#2593)03b62d2feat: handle error from the initialize middleware (#2531)95e58e8fix: preserve exception propagation through transport cleanup (#2591)855e01echore: Update SDK documentation (#2588)d56f55aAdd smart fallback for missing access token expiry (#2587)d35b867chore: Update SDK documentation (#2517)080ffa5Fix nested server mount routing for 3+ levels deep (#2586)0bcd69cRemove overly restrictive MIME type validation from Resource (#2585)9b41d16Remove deprecated mount/import argument order and separator params (#2582)95fb8b4Fix proxy tool result meta attribute forwarding (#2526)Updates
lxml-html-cleanfrom 0.3.1 to 0.4.4Changelog
Sourced from lxml-html-clean's changelog.
... (truncated)
Commits
fd10d79Add more tests for different combinations of backslashes and unicode5b7e228Restore the removal of all backslashes from styles after decoding of unicode ...88da8f9Prepare release 0.4.49c5612cRemove <base> tags to prevent URL hijacking attacks2ef7326Implement unicode escape decoding7c854afAdd missing Python 3.14 to classifiers80cebf7Continue using the package link1cef82eUpdate safe sanitizer recommendation79f35f4CI: Drop Python 3.8, add 3.14fab1dd4Release 0.4.3Updates
pypdffrom 6.0.0 to 6.7.5Release notes
Sourced from pypdf's releases.
... (truncated)
Changelog
Sourced from pypdf's changelog.
... (truncated)
Commits
7c2bcddREL: 6.7.5648c627SEC: Improve the performance of the ASCIIHexDecode filter (#3666)1aef6fbDEV: Update cache key handling in CI (#3665)1650bc3REL: 6.7.4f309c60SEC: Allow limiting output length for RunLengthDecode filter (#3664)993f052DEV: Bump actions/upload-artifact from 6 to 7 (#3662)a3c996bDEV: Bump actions/download-artifact from 7 to 8 (#3663)37de320ROB: Deal with invalid annotations in extract_links (#3659)05e6d3cREL: 6.7.37a4c824SEC: Use zlib decompression limit when retrieving XFA data (#3658)Updates
torchfrom 2.4.0 to 2.8.0Release notes
Sourced from torch's releases.
... (truncated)
Commits
ba56102Cherrypick: Add the RunLLM widget to the website (#159592)c525a02[dynamo, docs] cherry pick torch.compile programming model docs into 2.8 (#15...a1cb3cc[Release Only] Remove nvshmem from list of preload libraries (#158925)c76b235Move out super large one off foreach_copy test (#158880)20a0e22Revert "[Dynamo] Allow inlining into AO quantization modules (#152934)" (#158...9167ac8[MPS] Switch Cholesky decomp to column wise (#158237)5534685[MPS] Reimplementtri[ul]as Metal shaders (#158867)d19e08dCherry pick PR 158746 (#158801)a6c044a[cherry-pick] Unify torch.tensor and torch.ops.aten.scalar_tensor behavior (#...620ebd0[Dynamo] Use proper sources for constructing dataclass defaults (#158689)Updates
unstructuredfrom 0.16.23 to 0.18.18Release notes
Sourced from unstructured's releases.
... (truncated)
Changelog
Sourced from unstructured's changelog.
... (truncated)
Commits
b01d35bfix: sanitize MSG attachment filenames to prevent path traversal (GHS… (#4117)1c519efSecurity Fixes - CVE Remediation (#4115)c79cf3aupdated dependancies to resolve open CVEs and cut a new version (#4108)8fd07fdfeat: Add simple script to sync fork with local branch (#4102)ef68384enhancement: Speed up function _assign_hash_ids by 34% (#4101)2d44d73Luke/sept16 CVE (#4094)ab55d86⚡️ Speed up methodElementHtml._get_children_htmlby 234% (#4087)6aee131⚡️ Speed up functiongroup_broken_paragraphsby 30% (#4088)1030a69fix: update deps to resolve cve (#4093)e3854d2Setup Codeflash Github Actions to optimize all future code (#4082)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditionsYou can disable automated security fix PRs for this repo from the Security Alerts page.