Ashesh Vashi
5627944f87
chore(deps): bump JavaScript and Python third-party dependencies ( #10023 )
...
Combined fix for 8 packages flagged by GitHub Dependabot (collapsing
6 of them from open dependabot bump PRs and 4 from transitive
vulnerabilities with no existing PR). All eight are transitive — no
direct dep changes — so we override via `resolutions` in web/package.json
and let yarn collapse duplicate-version entries during install.
Resolved (pre → post via resolution):
Runtime:
ws 8.20.0 -> 8.21.0 (patched 8.20.1)
Dev:
@xmldom/xmldom 0.7.13 -> 0.8.13 (patched 0.8.13)
serialize-javascript 6.0.2,
7.0.5 -> 7.0.5 (patched 7.0.5)
ip-address 10.1.0,
10.2.0 -> 10.2.0 (patched 10.1.1)
postcss 8.5.8,
8.5.15 -> 8.5.15 (patched 8.5.10)
qs 6.15.0 -> 6.15.2 (patched 6.15.2)
@tootallnate/once 2.0.0 -> 2.0.1 (patched 2.0.1)
tar (7.x lineage) 7.5.13 -> 7.5.16 (patched 7.5.11)
The tar 6.2.1 lineage (consumed via ^6.1.2/^6.1.11) is unaffected by
these CVEs (alert ranges are 7.x-only), so the resolution is scoped
`tar@npm:^7.5.4` to leave it on 6.2.1.
Supersedes open dependabot PRs #9956 (ws), #9962 (tar), #9966
(@tootallnate/once), and #9974 (qs) — one CI cycle instead of four.
Verification:
- yarn install — clean (only pre-existing peer-dep warnings about
@mui/system, aspen-core, eve, etc.; no new ones)
- yarn run test:js-once — 824 / 824 pass across 140 test suites
- yarn run bundle:dev — webpack compiled successfully
- All 8 packages confirmed at safe versions via lockfile audit;
duplicate entries collapsed (yarn.lock net -64 lines)
Out of scope (cannot fix here):
- paramiko (#276 #278 ): no patched version exists; bump-to-5.0.0
PRs #9927/#9930 audited 2026-05-20 and deferred to Q4 2026 over
SSH bastion compat risk
- elliptic (#176 ): no patched version, dev-only, low severity
- flatted (#224 ): alert is stale; lockfile already at 3.4.2 (patched);
will auto-dismiss on next dependabot rescan
* chore(deps): bump Python deps to latest 3.9-compatible
Picks up five Python dependency bumps that are 3.9-safe (still resolve
under Python 3.9 per PyPI requires_python). Four supersede open
dependabot PRs:
- certifi 2026.4.22 -> 2026.5.20
(no gate; CA bundle refresh; supersedes dependabot #9977 / #9979 )
- typer 0.25.* -> 0.26.*
(py > 3.9 row only; supersedes dependabot #9995 / #9999 )
- testscenarios 0.6.1 -> 0.6.2
(py > 3.9 row only; supersedes dependabot #9980 )
- urllib3 2.6.* -> 2.7.* (py > 3.9 row only)
Picks up two HIGH-severity security fixes in urllib3 2.7.0
(2026-05-07): GHSA-mf9v-mfxr-j63j (decompression-bomb safeguards
bypassed under drain_conn / Brotli stream patterns) and
GHSA-qccp-gfcp-xxvc (ProxyManager.connection_from_url did not
strip sensitive headers on cross-host redirects). 2.7.0 requires
Python >=3.10, which the existing 'python_version > 3.9' gate
already enforces.
- Flask-Security-Too 5.4.* -> 5.6.* (py <= 3.9 row only)
Closes a roughly 2-year gap between the 3.9 row (last pin from
March 2024) and the py > 3.9 row (already on 5.8.*). 5.5/5.6
only touched flows pgAdmin doesn't use (register V2, MFA / WebAuthn
templates, username recovery/changing, secret_key rotation) and
config pgAdmin overrides (default hash bcrypt->argon2 sidestepped
by SECURITY_PASSWORD_HASH = 'pbkdf2_sha512'). The contract changes
that mattered (LoginForm.validate -> is_active, UserMixin.is_locked
hook, single-kwarg find_user) are all already exercised in
production via the existing FST 5.8.* / Python 3.10+ deployments.
2026-06-08 16:02:43 +05:30
Ashesh Vashi
aad2dfd725
chore: Apply non-breaking dependency updates from open dependabot PRs ( #9954 )
...
Python:
- requirements.txt: google-auth-oauthlib 1.3.1 -> 1.4.0
(#9929 / #9931 ), gated so Python 3.9 stays on 1.3.1 (1.4.0
requires python_version >= 3.10). Mirrors the existing
boto3 1.42.*/1.43.* split.
- tools/requirements.txt: requests >=2.33.1 -> >=2.34.2 on
python_version > '3.9' (#9943 / #9944 ).
- web/regression/requirements.txt: selenium 4.43.0 -> 4.44.0
(#9946 ). The selenium pin already requires Python >=3.10 in
master, so the bump introduces no new 3.9 gap.
JavaScript (web/package.json, web/yarn.lock):
- postcss 8.5.12 -> 8.5.14 (#9874 / #9889 )
- @tanstack/react-query 5.100.5 -> 5.100.9 (#9878 )
- ip-address 10.1.0 -> 10.1.1 (#9918 )
- packageManager pin yarn@4.14 .0 -> yarn@4.15 .0 and regenerate
yarn.lock at lockfile __metadata.version 10. CI runs yarn
4.15.0 with hardened mode on public PRs and refuses to migrate
the lockfile from version 9 (yarn 4.14.x) to 10; master passes
today only because hardened mode is PR-only.
Electron runtime (runtime/package.json, runtime/yarn.lock):
- axios 1.16.0 -> 1.16.1 (#9948 )
- eslint 10.3.0 -> 10.4.0 (#9947 )
Skipped (genuine breaking changes, deferred to follow-up PRs):
- @mui/material 7 -> 9 (#9843 )
- @mui/x-date-pickers 8 -> 9 (#9888 )
- cryptography 47.0.* -> 48.0.* (#9926 / #9932 )
- paramiko 3.5.1 -> 5.0.0 (#9927 / #9930 )
- electron 41.5.0 -> 42.1.0 (#9945 )
Verified in an isolated worktree:
- jest: 140/0/0 suites, 824/0/0 tests
- eslint: clean (web + runtime, both silent)
- pycodestyle: 0 violations project-wide
Each version was cross-checked against the corresponding
dependabot PR diff via `gh pr diff`. Each Python bump was
cross-checked against PyPI's requires_python so Python 3.9
support stays intact.
2026-05-20 14:53:04 +05:30
Ashesh Vashi
d55ffe405b
fix: Apply non-breaking dependency updates from open dependabot PRs
...
Python (requirements.txt, tools/, web/regression/):
- cryptography 46.0 -> 47.0 (move CFB8 import to decrepit module to
silence the 47.0 deprecation warning and survive 49.0 removal)
- typer 0.24 -> 0.25 for python>3.9 (drop removed [all] extra)
- safety >=1.9.0 -> >=3.7.0 (CI audit tool)
- requests >=2.21.0 -> >=2.33.1
- testtools 2.8.7 -> 2.9.1
- pycodestyle >=2.5.0 -> >=2.14.0
JavaScript (web/package.json, web/yarn.lock):
- postcss 8.5.6 -> 8.5.12
- moment-timezone 0.6.0 -> 0.6.2
- @tanstack/react-query 5.90 -> 5.100.5
Skipped (genuine breaking changes): @mui/material 7->9 (#9843 ),
@mui/x-date-pickers 8->9 (#9888 ).
2026-05-02 00:18:47 +05:30
Ashesh Vashi
d112dc3b96
fix: Fixed the resql tests - use <OWNER> placeholder instead of hardcoded 'postgres' role ( #9873 )
...
The reverse-engineered SQL tests hardcoded 'postgres' as the role name
in test JSON data and expected SQL files. This fails on systems where
the superuser is not 'postgres' (e.g. 'ashesh.vashi').
Changes:
- Replace hardcoded 'postgres' with '<OWNER>' placeholder in ~400 test
JSON, SQL, and MSQL files across all browser module tests
- Extend test_resql.py to resolve '<OWNER>' in scenario data sent to
API endpoints (not just in expected SQL)
- Handle identifier quoting for usernames containing special characters
(dots, etc.) by normalizing both expected and actual SQL
- Fix test_domain_sql.py to use qtIdent for username in expected SQL
- Split Authlib version pin: 1.6.x for Python <=3.9, 1.7.x for >3.9
2026-04-24 21:18:38 +05:30
Ashesh Vashi
b70d4c9857
fix: Bump runtime and development dependencies ( #9870 )
...
Python (requirements.txt):
- Authlib 1.6.9 -> 1.7.0
- Flask-Security-Too 5.7.* -> 5.8.* (py>3.9)
- certifi 2026.2.25 -> 2026.4.22
- Flask-WTF 1.2.* -> 1.3.*
Python test (web/regression/requirements.txt):
- selenium 4.41.0 -> 4.43.0
- testscenarios 0.5.0 -> 0.6.1
- testtools 2.8.7 -> 2.9.0
JavaScript web (web/package.json):
- @mui/material ^7.3.7 -> ^7.3.10
- @mui/x-date-pickers ^8.27.2 -> ^8.28.3
- @mui/icons-material ^7.3.6 -> ^7.3.10
- dompurify ^3.3.3 -> ^3.4.1
- axios ^1.13.5 -> ^1.15.2
- react ^19.2.3 -> ^19.2.5
- react-dom ^19.2.3 -> ^19.2.5
- typescript ^5.9.2 -> ^6.0.3
- marked ^17.0.1 -> ^18.0.2
- react-checkbox-tree ^1.7.2 -> ^2.0.1
- eslint ^9.39.2 -> ^9.39.4
- and ~60 more minor/patch bumps across build, test, and runtime deps
JavaScript runtime (runtime/package.json):
- electron 41.2.0 -> 41.3.0
- axios ^1.15.0 -> ^1.15.2
- eslint ^10.2.0 -> ^10.2.1
- globals ^17.4.0 -> ^17.5.0
2026-04-24 14:28:36 +05:30
Ashesh Vashi
872d5ac0b3
fix: Bump python & javascript dependencies ( #9827 )
...
* Update Python dependencies:
- google-auth-oauthlib 1.3.0 → 1.3.1
- sphinxcontrib-youtube 1.4.1 → 1.5.0
- fixtures 4.3.1 → 4.3.2
- Add missing newline at end of requirements files
* Update JavaScript dependencies:
- Replace deprecated @babel/plugin-proposal-* packages with @babel/plugin-transform-* equivalents
- Remove unused @types/classnames dependency
- Update yarn.lock
- Pin the 'react-frame-component' to '~5.2.6'
* fix: Use PostGIS 36 for EPAS 18 in CI workflow
- EPAS 18 ships with edb-as18-postgis36 instead of postgis34.
- Add a postgisver matrix variable to support mixed versions.
- Add exclude+include for EPAS 18 PostGIS matrix to fix empty runs-on
* Moving '@babel/plugin-transform-class-properties', '@babel/preset-react' to devDependencies section
2026-04-08 17:31:56 +05:30
Akshay Joshi
257654849b
Updated Javascript and Python dependencies.
2026-03-17 12:12:00 +05:30
Akshay Joshi
08b0f6fe7b
1) Updated Python and Javascripts dependencies.
...
2) Created new release note files for v9.14
2026-03-05 17:56:33 +05:30
Aditya Toshniwal
b78fc884e3
Fixed an issue in file dialog where rename was not working. #9651
2026-02-27 18:24:54 +05:30
Akshay Joshi
4bb6b72377
Updated Python and JavaScript dependencies.
2026-02-24 11:54:19 +05:30
Akshay Joshi
93605c0baa
Updated Python and Javascript dependencies.
2026-01-19 17:46:22 +05:30
Akshay Joshi
19532f534f
Updated Python and Javascript dependencies.
2026-01-05 13:23:38 +05:30
Akshay Joshi
1457f08343
Updated Python and Javascript dependencies.
2025-12-11 16:02:44 +05:30
Akshay Joshi
5e472ec42a
Updated Python and Javascript dependencies.
2025-11-12 18:14:25 +05:30
Akshay Joshi
e6f6a90d2f
Updated Python and JavaScript dependencies.
2025-11-03 18:39:10 +05:30
Akshay Joshi
55c5e86fe0
1) Updated version of Authlib, psycopg[c], typer[all] and selenium.
...
2) Updated release note.
2025-10-28 11:45:57 +05:30
Aditya Toshniwal
c20d035f1b
Update Python and JS packages.
2025-10-24 08:37:55 +05:30
Akshay Joshi
b30520adc0
Updated Python and Javascript dependencies.
2025-10-06 17:33:12 +05:30
Akshay Joshi
ade57d4ec4
Updated Python and JavaScript dependencies.
2025-08-28 12:56:20 +05:30
Akshay Joshi
a5557b466c
Updated Python and Javascript dependencies.
2025-08-21 13:54:07 +05:30
Akshay Joshi
4d078ab747
Updated Python and JavaScript dependecies.
2025-08-05 13:10:42 +05:30
Akshay Joshi
536191cef6
Downgrade selenium version, as latest version don't support urllib3 v2.5.*
2025-06-24 15:55:19 +05:30
Akshay Joshi
79ec042e0d
Updated Python and Javascript dependencies.
2025-05-29 13:37:21 +05:30
Akshay Joshi
fb4d25d907
1) Updated Python and JavaScript dependencies.
...
2) Updated release note.
2025-05-06 19:07:29 +05:30
Akshay Joshi
829876c2e0
1) Sorted requirements.txt alphabetically.
...
2) Remove packages for Python 3.8.
3) Update JavaScript dependencies.
4) Update Python packages.
2025-04-30 12:43:02 +05:30
Akshay Joshi
1934a75eee
Updated Javascript packages.
2025-01-06 12:23:10 +05:30
dependabot[bot]
a5a5503821
Python dependency: Bump selenium in /web/regression
2024-11-28 10:53:29 +05:30
dependabot[bot]
2e098c487a
Python dependency: Bump selenium in /web/regression
2024-11-06 11:39:05 +05:30
Akshay Joshi
b757d26933
1) Update JS and Python dependencies from Dependabot.
...
2) Added new release note file.
2024-09-23 16:33:20 +05:30
Akshay Joshi
a0f7d0d50f
Update JS and Python dependenies.
2024-08-29 10:35:51 +05:30
dependabot[bot] and dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
6bf522da0f
Python dependency: Bump python-mimeparse in /web/regression
...
Bumps [python-mimeparse](https://github.com/falconry/python-mimeparse ) from 1.6.0 to 2.0.0.
- [Release notes](https://github.com/falconry/python-mimeparse/releases )
- [Commits](https://github.com/falconry/python-mimeparse/compare/1.6.0...2.0.0 )
---
updated-dependencies:
- dependency-name: python-mimeparse
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-27 11:38:30 +05:30
Akshay Joshi
636c224bd0
Updated JavaScript and Python packages according to Dependabot recommendations
2024-07-29 19:34:43 +05:30
dependabot[bot] and dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
754cd223c1
Python dependency: Bump selenium in /web/regression
...
Bumps [selenium](https://github.com/SeleniumHQ/Selenium ) from 4.21.0 to 4.22.0.
- [Release notes](https://github.com/SeleniumHQ/Selenium/releases )
- [Commits](https://github.com/SeleniumHQ/Selenium/compare/selenium-4.21.0...selenium-4.22.0 )
---
updated-dependencies:
- dependency-name: selenium
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-27 13:23:57 +05:30
dependabot[bot] and dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
bc3052ed1b
Python dependency: Bump testtools from 2.7.1 to 2.7.2 in /web/regression
...
Bumps [testtools](https://github.com/testing-cabal/testtools ) from 2.7.1 to 2.7.2.
- [Release notes](https://github.com/testing-cabal/testtools/releases )
- [Changelog](https://github.com/testing-cabal/testtools/blob/master/NEWS )
- [Commits](https://github.com/testing-cabal/testtools/compare/2.7.1...2.7.2 )
---
updated-dependencies:
- dependency-name: testtools
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-12 11:44:31 +05:30
Akshay Joshi
b3cf9ce185
Unpin dnspython from 'regression/requirements.txt' as eventlet issue is fixed.
2024-06-07 17:52:46 +05:30
dependabot[bot] and dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
18deb16e36
Python dependency: Bump pbr from 5.11.1 to 6.0.0 in /web/regression
...
Bumps [pbr](https://docs.openstack.org/pbr/latest/ ) from 5.11.1 to 6.0.0.
---
updated-dependencies:
- dependency-name: pbr
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-07 16:53:22 +05:30
dependabot[bot] and dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
bc1a2a0b4d
Python dependency: Bump selenium in /web/regression
...
Bumps [selenium](https://github.com/SeleniumHQ/Selenium ) from 4.19.0 to 4.21.0.
- [Release notes](https://github.com/SeleniumHQ/Selenium/releases )
- [Commits](https://github.com/SeleniumHQ/Selenium/compare/selenium-4.19.0...selenium-4.21.0 )
---
updated-dependencies:
- dependency-name: selenium
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-07 16:39:53 +05:30
dependabot[bot] and dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
c6739ebd6b
Python dependency: Bump dnspython from 2.3.0 to 2.6.1 in /web/regression
...
Bumps [dnspython](https://github.com/rthalley/dnspython ) from 2.3.0 to 2.6.1.
- [Release notes](https://github.com/rthalley/dnspython/releases )
- [Changelog](https://github.com/rthalley/dnspython/blob/main/doc/whatsnew.rst )
- [Commits](https://github.com/rthalley/dnspython/compare/v2.3.0...v2.6.1 )
---
updated-dependencies:
- dependency-name: dnspython
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-06 18:11:47 +05:30
dependabot[bot] and dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
db23330939
Python dependency: Bump selenium in /web/regression ( #7325 )
...
Bumps [selenium](https://github.com/SeleniumHQ/Selenium ) from 4.10.0 to 4.19.0.
- [Release notes](https://github.com/SeleniumHQ/Selenium/releases )
- [Commits](https://github.com/SeleniumHQ/Selenium/compare/selenium-4.10.0...selenium-4.19.0 )
---
updated-dependencies:
- dependency-name: selenium
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-18 14:03:28 +05:30
Khushboo Vashi
adab656a79
Fixes for Python 3.12 compatibility:
...
- Upgrade testtools package
- Use platstdlib instead of stdlib to get the path
2023-12-18 13:27:05 +05:30
Aditya Toshniwal
9f35728c6a
Pin dnspython==2.3.0 to fix test cases.
2023-07-19 17:59:34 +05:30
Yogesh Mahajan
eef295f9d8
Fixed feature tests failing due to selenium upgrade to 4.10.0.
2023-06-19 11:43:28 +05:30
Akshay Joshi
b8377be1b5
Pin selenium=4.9.1 as latest version having some issues.
2023-06-15 17:58:08 +05:30
dependabot[bot] and dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
22f2ac0507
Python dependency: Bump coverage from 7.2.3 to 7.2.7 in /web/regression ( #6413 )
...
Bumps [coverage](https://github.com/nedbat/coveragepy ) from 7.2.3 to 7.2.7.
- [Release notes](https://github.com/nedbat/coveragepy/releases )
- [Changelog](https://github.com/nedbat/coveragepy/blob/master/CHANGES.rst )
- [Commits](https://github.com/nedbat/coveragepy/compare/7.2.3...7.2.7 )
---
updated-dependencies:
- dependency-name: coverage
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-06-09 17:26:13 +05:30
dependabot[bot] and dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
e385aec7f7
Python dependency: Bump fixtures from 4.0.1 to 4.1.0 in /web/regression ( #6410 )
...
Bumps [fixtures](https://github.com/testing-cabal/fixtures ) from 4.0.1 to 4.1.0.
- [Changelog](https://github.com/testing-cabal/fixtures/blob/master/NEWS )
- [Commits](https://github.com/testing-cabal/fixtures/compare/4.0.1...4.1.0 )
---
updated-dependencies:
- dependency-name: fixtures
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-06-09 17:24:43 +05:30
dependabot[bot] and dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
c42e00a090
Python dependency: Bump selenium from 4.9.1 to 4.10.0 in /web/regression ( #6409 )
...
Bumps [selenium](https://github.com/SeleniumHQ/Selenium ) from 4.9.1 to 4.10.0.
- [Release notes](https://github.com/SeleniumHQ/Selenium/releases )
- [Commits](https://github.com/SeleniumHQ/Selenium/compare/selenium-4.9.1...selenium-4.10.0 )
---
updated-dependencies:
- dependency-name: selenium
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-06-09 17:23:39 +05:30
dependabot[bot] and dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
05eb956aab
Python dependency: Bump selenium from 4.8.3 to 4.9.1 in /web/regression ( #6265 )
...
Bumps [selenium](https://github.com/SeleniumHQ/Selenium ) from 4.8.3 to 4.9.1.
- [Release notes](https://github.com/SeleniumHQ/Selenium/releases )
- [Commits](https://github.com/SeleniumHQ/Selenium/commits/selenium-4.9.1 )
---
updated-dependencies:
- dependency-name: selenium
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-06-02 10:53:00 +05:30
dependabot[bot] and dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
569bf4d5a2
Python dependency: Bump coverage from 7.2.2 to 7.2.3 in /web/regression ( #6103 )
...
Bumps [coverage](https://github.com/nedbat/coveragepy ) from 7.2.2 to 7.2.3.
- [Release notes](https://github.com/nedbat/coveragepy/releases )
- [Changelog](https://github.com/nedbat/coveragepy/blob/master/CHANGES.rst )
- [Commits](https://github.com/nedbat/coveragepy/compare/7.2.2...7.2.3 )
---
updated-dependencies:
- dependency-name: coverage
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-04-17 12:23:36 +05:30
dependabot[bot] and dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
b47c9039d7
Python dependency: Bump selenium in /web/regression
...
Bumps [selenium](https://github.com/SeleniumHQ/Selenium ) from 4.0.0a6 to 4.8.3.
- [Release notes](https://github.com/SeleniumHQ/Selenium/releases )
- [Commits](https://github.com/SeleniumHQ/Selenium/commits )
---
updated-dependencies:
- dependency-name: selenium
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-31 11:29:07 +05:30
dependabot[bot] and dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
78a48bbe7e
Python dependency: Bump coverage from 5.0.1 to 7.2.2 in /web/regression
...
Bumps [coverage](https://github.com/nedbat/coveragepy ) from 5.0.1 to 7.2.2.
- [Release notes](https://github.com/nedbat/coveragepy/releases )
- [Changelog](https://github.com/nedbat/coveragepy/blob/master/CHANGES.rst )
- [Commits](https://github.com/nedbat/coveragepy/compare/coverage-5.0.1...7.2.2 )
---
updated-dependencies:
- dependency-name: coverage
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-31 10:44:23 +05:30