6.3.0 - 2026-04-15
Summary
This release includes an update of action/upload-pages-artifact from v4 to v5.0.0. With this
change, now all actions used in the PTB run with Node.js 24. This is important as support
for Node.js 20 reaches it end-of-life in April 2026 and support for it in GitHub will end in
September 2026; for more details, see GitHub's deprecation notice.
The report.yml is also called after the checks.yml completes. This allows users
to get linting, security, and unit test coverage before running the slow-checks.yml,
as described in the Pull Request description.
This release also adds a vulnerabilities:resolved Nox session, which reports GitHub security issues resolved since the last release.
This release fixes a vulnerability by updating the poetry.lock file.
| Name | Version | ID | Fix Versions | Updated to |
|---|---|---|---|---|
| pytest | 9.0.2 | CVE-2025-71176 | 9.0.3 | 9.0.3 |
To ensure usage of secure packages, it is up to the user to similarly relock their dependencies.
Features
- #402: Created nox session
vulnerabilities:resolvedto report resolved GitHub security issues - #733: Adjusted structlog and log level for workflow generation
Refactoring
- #764: Updated
action/upload-pages-artifactfrom v4 to v5 - #768: Updated
merge-gate.ymlto execute thereport.ymlafter thechecks.ymlcompletes
Bugfix
- #766: Fixed
action/upload-pages-artifactfrom v5 to v5.0.0
Security
- #774: Fixed vulnerability by re-locking
pytestin thepoetry.lock
Dependency Updates
main
- Updated dependency
pytest:9.0.2to9.0.3