Skip to content

build(deps): bump werkzeug from 2.3.4 to 2.3.6#133

Closed
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/pip/werkzeug-2.3.6
Closed

build(deps): bump werkzeug from 2.3.4 to 2.3.6#133
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/pip/werkzeug-2.3.6

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jun 12, 2023

Copy link
Copy Markdown
Contributor

Bumps werkzeug from 2.3.4 to 2.3.6.

Release notes

Sourced from werkzeug's releases.

2.3.6

This is a fix release for the 2.3.x feature branch.

2.3.5

This is a fix release for the 2.3.x feature branch.

Changelog

Sourced from werkzeug's changelog.

Version 2.3.6

Released 2023-06-08

  • FileStorage.content_length does not fail if the form data did not provide a value. :issue:2726

Version 2.3.5

Released 2023-06-07

  • Python 3.12 compatibility. :issue:2704
  • Fix handling of invalid base64 values in Authorization.from_header. :issue:2717
  • The debugger escapes the exception message in the page title. :pr:2719
  • When binding routing.Map, a long IDNA server_name with a port does not fail encoding. :issue:2700
  • iri_to_uri shows a deprecation warning instead of an error when passing bytes. :issue:2708
  • When parsing numbers in HTTP request headers such as Content-Length, only ASCII digits are accepted rather than any format that Python's int and float accept. :issue:2716
Commits
  • c6f3c2a release version 2.3.6
  • f91304f remove docs links from docstrings
  • bb24506 FileStorage.content_length does not fail if no length was provided (#2727)
  • a184111 fix parsing error in FileStorage.content_length
  • 3a8de8d start version 2.3.6
  • 62b7ed6 release version 2.3.5 (#2724)
  • 2c9b513 release version 2.3.5
  • 86c5c78 fail on Python's extended int/float syntax (#2723)
  • 6290332 fail on Python's extended int/float syntax
  • 1892c10 show warning instead of error when passing bytes to iri_to_uri (#2709)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [werkzeug](https://github.com/pallets/werkzeug) from 2.3.4 to 2.3.6.
- [Release notes](https://github.com/pallets/werkzeug/releases)
- [Changelog](https://github.com/pallets/werkzeug/blob/main/CHANGES.rst)
- [Commits](pallets/werkzeug@2.3.4...2.3.6)

---
updated-dependencies:
- dependency-name: werkzeug
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python Pull requests that update Python code labels Jun 12, 2023
@codecov

codecov Bot commented Jun 12, 2023

Copy link
Copy Markdown

Codecov Report

Patch and project coverage have no change.

Comparison is base (df76a77) 56.17% compared to head (852f85f) 56.17%.

Additional details and impacted files
@@           Coverage Diff           @@
##           master     #133   +/-   ##
=======================================
  Coverage   56.17%   56.17%           
=======================================
  Files          11       11           
  Lines         632      632           
=======================================
  Hits          355      355           
  Misses        277      277           

☔ View full report in Codecov by Sentry.
📢 Do you have feedback about the report comment? Let us know in this issue.

@dependabot @github

dependabot Bot commented on behalf of github Aug 14, 2023

Copy link
Copy Markdown
Contributor Author

Superseded by #146.

@dependabot dependabot Bot closed this Aug 14, 2023
@dependabot dependabot Bot deleted the dependabot/pip/werkzeug-2.3.6 branch August 14, 2023 21:42
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python Pull requests that update Python code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant