Commit 642c300
authored
Bump the python group with 7 updates (#842)
Bumps the python group with 7 updates:
| Package | From | To |
| --- | --- | --- |
| [attrs](https://github.com/sponsors/hynek) | `25.3.0` | `25.4.0` |
| [certifi](https://github.com/certifi/python-certifi) | `2025.8.3` |
`2025.10.5` |
| [charset-normalizer](https://github.com/jawah/charset_normalizer) |
`3.4.3` | `3.4.4` |
| [cryptography](https://github.com/pyca/cryptography) | `46.0.1` |
`46.0.3` |
| [idna](https://github.com/kjd/idna) | `3.10` | `3.11` |
| [markupsafe](https://github.com/pallets/markupsafe) | `3.0.2` |
`3.0.3` |
| [referencing](https://github.com/python-jsonschema/referencing) |
`0.36.2` | `0.37.0` |
Updates `attrs` from 25.3.0 to 25.4.0
<details>
<summary>Commits</summary>
<ul>
<li>See full diff in <a
href="https://github.com/sponsors/hynek/commits">compare view</a></li>
</ul>
</details>
<br />
Updates `certifi` from 2025.8.3 to 2025.10.5
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/certifi/python-certifi/commit/fb14ac49a976b1695d84b1ac1307276a20b3aac9"><code>fb14ac4</code></a>
2025.10.05 (<a
href="https://redirect.github.com/certifi/python-certifi/issues/371">#371</a>)</li>
<li><a
href="https://github.com/certifi/python-certifi/commit/2c7c7ee6b76a118191b685a4cc028d4241f22eb7"><code>2c7c7ee</code></a>
Add Python 3.14 classifier in setup.py</li>
<li><a
href="https://github.com/certifi/python-certifi/commit/1a5cb7b3771bba256755f88b3dcf3ac13f064622"><code>1a5cb7b</code></a>
Bump actions/setup-python from 5.6.0 to 6.0.0 (<a
href="https://redirect.github.com/certifi/python-certifi/issues/367">#367</a>)</li>
<li><a
href="https://github.com/certifi/python-certifi/commit/dea59605ef2b266c2e0e67938e8c8535a04b1211"><code>dea5960</code></a>
Bump pypa/gh-action-pypi-publish from 1.12.4 to 1.13.0 (<a
href="https://redirect.github.com/certifi/python-certifi/issues/366">#366</a>)</li>
<li><a
href="https://github.com/certifi/python-certifi/commit/83566b7c993eef772facdaff59c7bba105675329"><code>83566b7</code></a>
Bump actions/checkout from 4.2.2 to 5.0.0</li>
<li><a
href="https://github.com/certifi/python-certifi/commit/ca2e121bdb304fd01f802d3b1ee6a65684f569f2"><code>ca2e121</code></a>
Bump actions/download-artifact from 4.3.0 to 5.0.0</li>
<li>See full diff in <a
href="https://github.com/certifi/python-certifi/compare/2025.08.03...2025.10.05">compare
view</a></li>
</ul>
</details>
<br />
Updates `charset-normalizer` from 3.4.3 to 3.4.4
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/jawah/charset_normalizer/releases">charset-normalizer's
releases</a>.</em></p>
<blockquote>
<h2>Version 3.4.4</h2>
<h2><a
href="https://github.com/Ousret/charset_normalizer/compare/3.4.3...3.4.4">3.4.4</a>
(2025-10-13)</h2>
<h3>Changed</h3>
<ul>
<li>Bound <code>setuptools</code> to a specific constraint
<code>setuptools>=68,<=81</code>.</li>
<li>Raised upper bound of mypyc for the optional pre-built extension to
v1.18.2</li>
</ul>
<h3>Removed</h3>
<ul>
<li><code>setuptools-scm</code> as a build dependency.</li>
</ul>
<h3>Misc</h3>
<ul>
<li>Enforced hashes in <code>dev-requirements.txt</code> and created
<code>ci-requirements.txt</code> for security purposes.</li>
<li>Additional pre-built wheels for riscv64, s390x, and armv7l
architectures.</li>
<li>Restore <code>multiple.intoto.jsonl</code> in GitHub releases in
addition to individual attestation file per wheel.</li>
</ul>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/jawah/charset_normalizer/blob/master/CHANGELOG.md">charset-normalizer's
changelog</a>.</em></p>
<blockquote>
<h2><a
href="https://github.com/Ousret/charset_normalizer/compare/3.4.2...3.4.4">3.4.4</a>
(2025-10-13)</h2>
<h3>Changed</h3>
<ul>
<li>Bound <code>setuptools</code> to a specific constraint
<code>setuptools>=68,<=81</code>.</li>
<li>Raised upper bound of mypyc for the optional pre-built extension to
v1.18.2</li>
</ul>
<h3>Removed</h3>
<ul>
<li><code>setuptools-scm</code> as a build dependency.</li>
</ul>
<h3>Misc</h3>
<ul>
<li>Enforced hashes in <code>dev-requirements.txt</code> and created
<code>ci-requirements.txt</code> for security purposes.</li>
<li>Additional pre-built wheels for riscv64, s390x, and armv7l
architectures.</li>
<li>Restore <code> multiple.intoto.jsonl</code> in GitHub releases in
addition to individual attestation file per wheel.</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/jawah/charset_normalizer/commit/b30ffdcc2f11043c0d34e60fe66d3815cd49b32b"><code>b30ffdc</code></a>
:wrench: fix checksum step in cd.yml</li>
<li><a
href="https://github.com/jawah/charset_normalizer/commit/d3fbfcfad7dfe3c640886f1a6a6351da527f6634"><code>d3fbfcf</code></a>
:wrench: fix cd.yml</li>
<li><a
href="https://github.com/jawah/charset_normalizer/commit/dafbb95f8c00d3cc8b99158caa63006ffab98749"><code>dafbb95</code></a>
Release 3.4.4 (<a
href="https://redirect.github.com/jawah/charset_normalizer/issues/658">#658</a>)</li>
<li><a
href="https://github.com/jawah/charset_normalizer/commit/1f18ffaa69d2c84fea7abedb8840197ba9c14562"><code>1f18ffa</code></a>
:arrow_up: raise mypy upper bound to 1.18.2</li>
<li><a
href="https://github.com/jawah/charset_normalizer/commit/ef4ac69ad203891f24e26b2422ab3a08053044fa"><code>ef4ac69</code></a>
Merge branch 'release-3.4.4' of github.com:jawah/charset_normalizer into
rele...</li>
<li><a
href="https://github.com/jawah/charset_normalizer/commit/4b35dda053db5e2e60a247e80a116e4ef04f439b"><code>4b35dda</code></a>
:pencil: write changelog for 3.4.4</li>
<li><a
href="https://github.com/jawah/charset_normalizer/commit/0ec6452f1a34cbc77a55b237c4118807b44c2a33"><code>0ec6452</code></a>
:wrench: update cd.yml workflow (add riscv64, s390x and armv7l)</li>
<li><a
href="https://github.com/jawah/charset_normalizer/commit/f341edec8a828dda394abfa011b1ded8b4b102e2"><code>f341ede</code></a>
:arrow_up: upgrade dependencies (dev, ci)</li>
<li><a
href="https://github.com/jawah/charset_normalizer/commit/a308841e660a4d61ea6c448e7b8bf97415ecdc4a"><code>a308841</code></a>
:pencil: write changelog for 3.4.4</li>
<li><a
href="https://github.com/jawah/charset_normalizer/commit/9c906da611d5ca5ef076d6bf7f60e629f661d0b0"><code>9c906da</code></a>
:wrench: update cd.yml workflow (add riscv64, s390x and armv7l)</li>
<li>Additional commits viewable in <a
href="https://github.com/jawah/charset_normalizer/compare/3.4.3...3.4.4">compare
view</a></li>
</ul>
</details>
<br />
Updates `cryptography` from 46.0.1 to 46.0.3
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/pyca/cryptography/blob/main/CHANGELOG.rst">cryptography's
changelog</a>.</em></p>
<blockquote>
<p>46.0.3 - 2025-10-15</p>
<pre><code>
* Fixed compilation when using LibreSSL 4.2.0.
<p>.. _v46-0-2:</p>
<p>46.0.2 - 2025-09-30<br />
</code></pre></p>
<ul>
<li>Updated Windows, macOS, and Linux wheels to be compiled with OpenSSL
3.5.4.</li>
</ul>
<p>.. _v46-0-1:</p>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/pyca/cryptography/commit/c0af4dd7b75921bbe9f1d41a03dbd4b64a9e3403"><code>c0af4dd</code></a>
release 46.0.3 (<a
href="https://redirect.github.com/pyca/cryptography/issues/13681">#13681</a>)</li>
<li><a
href="https://github.com/pyca/cryptography/commit/99efe5ad150a56efadafacaffd0e3ee319373904"><code>99efe5a</code></a>
bump version for 46.0.2 (<a
href="https://redirect.github.com/pyca/cryptography/issues/13531">#13531</a>)</li>
<li>See full diff in <a
href="https://github.com/pyca/cryptography/compare/46.0.1...46.0.3">compare
view</a></li>
</ul>
</details>
<br />
Updates `idna` from 3.10 to 3.11
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/kjd/idna/blob/master/HISTORY.rst">idna's
changelog</a>.</em></p>
<blockquote>
<p>3.11 (2025-10-12)</p>
<ul>
<li>Update to Unicode 16.0.0, including significant changes to UTS46
processing. As a result of Unicode ending support for it, transitional
processing no longer has an effect and returns the same result.</li>
<li>Add support for Python 3.14, lowest supported version is Python
3.8.</li>
<li>Various updates to packaging, including PEP 740 support.</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/kjd/idna/commit/ad949ee3052c2265c66e3df2dd8871a5832ba327"><code>ad949ee</code></a>
Release v3.11</li>
<li><a
href="https://github.com/kjd/idna/commit/cae4ba779e0a543823894bd4136651c187944da8"><code>cae4ba7</code></a>
Second release candidate for 3.11</li>
<li><a
href="https://github.com/kjd/idna/commit/8adb305165c77c4a45d1568a70ead75d2197692c"><code>8adb305</code></a>
Add space in RST link</li>
<li><a
href="https://github.com/kjd/idna/commit/74cb2b652bb06133b0c4ab52cc98221be63162cf"><code>74cb2b6</code></a>
Release candidate for 3.11</li>
<li><a
href="https://github.com/kjd/idna/commit/05dab09fdde5bbf7d52f757c4dc62e0ba934cca8"><code>05dab09</code></a>
Format idna-data with ruff</li>
<li><a
href="https://github.com/kjd/idna/commit/90eac78b737d26613776b490432fc6d926b15c55"><code>90eac78</code></a>
Apply ruff formatting</li>
<li><a
href="https://github.com/kjd/idna/commit/a31ce7ecc0b767e40abb5ce28744ac567b73f366"><code>a31ce7e</code></a>
Remove errant test vectors</li>
<li><a
href="https://github.com/kjd/idna/commit/81f03334211c78c1832991ce70ebafb3cbfbb79c"><code>81f0333</code></a>
Omit vectors known to be broken in test suite</li>
<li><a
href="https://github.com/kjd/idna/commit/a0f32578c0cac28c7ffbb4c860c92eb2b9b579bd"><code>a0f3257</code></a>
Merge branch 'master' into unicode-16-uts46-changes</li>
<li><a
href="https://github.com/kjd/idna/commit/38d98860e6a1ab92fd35ab09ea4739feabf339a3"><code>38d9886</code></a>
Remove extra UTS46 test vector</li>
<li>Additional commits viewable in <a
href="https://github.com/kjd/idna/compare/v3.10...v3.11">compare
view</a></li>
</ul>
</details>
<br />
Updates `markupsafe` from 3.0.2 to 3.0.3
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/pallets/markupsafe/releases">markupsafe's
releases</a>.</em></p>
<blockquote>
<h2>3.0.3</h2>
<p>This is the MarkupSafe 3.0.3 fix release, which fixes bugs but does
not otherwise change behavior and should not result in breaking changes
compared to the latest feature release.</p>
<p>PyPI: <a
href="https://pypi.org/project/MarkupSafe/3.0.3/">https://pypi.org/project/MarkupSafe/3.0.3/</a>
Changes: <a
href="https://markupsafe.palletsprojects.com/page/changes/#version-3-0-3">https://markupsafe.palletsprojects.com/page/changes/#version-3-0-3</a>
Milestone: <a
href="https://github.com/pallets/markupsafe/milestone/15?closed=1">https://github.com/pallets/markupsafe/milestone/15?closed=1</a></p>
<ul>
<li><code>__version__</code> raises <code>DeprecationWarning</code>
instead of <code>UserWarning</code>. <a
href="https://redirect.github.com/pallets/markupsafe/issues/487">#487</a></li>
<li>Adopt multi-phase initialization PEP 489 for the C extension. <a
href="https://redirect.github.com/pallets/markupsafe/issues/494">#494</a></li>
<li>Build Windows ARM64 wheels. <a
href="https://redirect.github.com/pallets/markupsafe/issues/485">#485</a></li>
<li>Build Python 3.14 wheels. <a
href="https://redirect.github.com/pallets/markupsafe/issues/503">#503</a></li>
<li>Build riscv64 wheels. <a
href="https://redirect.github.com/pallets/markupsafe/issues/505">#505</a></li>
</ul>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/pallets/markupsafe/blob/main/CHANGES.rst">markupsafe's
changelog</a>.</em></p>
<blockquote>
<h2>Version 3.0.3</h2>
<p>Released 2025-09-27</p>
<ul>
<li><code>__version__</code> raises <code>DeprecationWarning</code>
instead of <code>UserWarning</code>.
:issue:<code>487</code></li>
<li>Adopt multi-phase initialisation (:pep:<code>489</code>) for the C
extension.
:issue:<code>494</code></li>
<li>Build Windows ARM64 wheels. :issue:<code>485</code></li>
<li>Build Python 3.14 wheels. :issue:<code>503</code></li>
<li>Build riscv64 wheels. :issue:<code>505</code></li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/pallets/markupsafe/commit/297fc8e356e6836a62087949245d09a28e9f1b13"><code>297fc8e</code></a>
release version 3.0.3</li>
<li><a
href="https://github.com/pallets/markupsafe/commit/7e4e6ce249107c5f27fa6fe890e29da7a8dc8f0c"><code>7e4e6ce</code></a>
Free-threading: run with pytest-run-paralell (<a
href="https://redirect.github.com/pallets/markupsafe/issues/507">#507</a>)</li>
<li><a
href="https://github.com/pallets/markupsafe/commit/6100b9c0d466495a08d55b33cb172d7b5d8e9aa1"><code>6100b9c</code></a>
enable riscv64 wheels (<a
href="https://redirect.github.com/pallets/markupsafe/issues/506">#506</a>)</li>
<li><a
href="https://github.com/pallets/markupsafe/commit/c9d5ecfc7eec6f611b19cdc8e1cde1aaa65cb8eb"><code>c9d5ecf</code></a>
enable riscv64 wheels</li>
<li><a
href="https://github.com/pallets/markupsafe/commit/2f9b33753052e7c6df1464a7c900787d04ae9daf"><code>2f9b337</code></a>
tox for 3.14</li>
<li><a
href="https://github.com/pallets/markupsafe/commit/78d951a9549dee9fc901c55fc79a74a5f01e96fc"><code>78d951a</code></a>
update dev dependencies</li>
<li><a
href="https://github.com/pallets/markupsafe/commit/bb6744e392e79611b110c5ba022238eb1b855cc2"><code>bb6744e</code></a>
add entry</li>
<li><a
href="https://github.com/pallets/markupsafe/commit/65c4134ab16a3faccbcac2cba90da0db2b799542"><code>65c4134</code></a>
upgrade cibuildwheel, add <code>cp314</code> wheels and test on CPython
3.14 (<a
href="https://redirect.github.com/pallets/markupsafe/issues/504">#504</a>)</li>
<li><a
href="https://github.com/pallets/markupsafe/commit/3a9bd88b84c9edba8b922bb12b84a59feed98788"><code>3a9bd88</code></a>
add cp314 wheels</li>
<li><a
href="https://github.com/pallets/markupsafe/commit/aafe44d87bd7974bc82af8c4010dea9938441edf"><code>aafe44d</code></a>
remove slsa provenance (<a
href="https://redirect.github.com/pallets/markupsafe/issues/501">#501</a>)</li>
<li>Additional commits viewable in <a
href="https://github.com/pallets/markupsafe/compare/3.0.2...3.0.3">compare
view</a></li>
</ul>
</details>
<br />
Updates `referencing` from 0.36.2 to 0.37.0
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/python-jsonschema/referencing/releases">referencing's
releases</a>.</em></p>
<blockquote>
<h2>v0.37.0</h2>
<!-- raw HTML omitted -->
<h2>What's Changed</h2>
<ul>
<li>Declare support for Python 3.14 and 3.14t by <a
href="https://github.com/cclauss"><code>@cclauss</code></a> in <a
href="https://redirect.github.com/python-jsonschema/referencing/pull/270">python-jsonschema/referencing#270</a></li>
<li>Drop support for Python 3.9</li>
</ul>
<h2>New Contributors</h2>
<ul>
<li><a href="https://github.com/cclauss"><code>@cclauss</code></a> made
their first contribution in <a
href="https://redirect.github.com/python-jsonschema/referencing/pull/270">python-jsonschema/referencing#270</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/python-jsonschema/referencing/compare/v0.36.2...v0.37.0">https://github.com/python-jsonschema/referencing/compare/v0.36.2...v0.37.0</a></p>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/python-jsonschema/referencing/blob/main/docs/changes.rst">referencing's
changelog</a>.</em></p>
<blockquote>
<h2>v0.37.0</h2>
<ul>
<li>Declare support for Python 3.14.</li>
<li>Drop support for Python 3.9 which is near EOL.</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/python-jsonschema/referencing/commit/944ed5a20bc5125f2349156cbdc365daac0e67e6"><code>944ed5a</code></a>
Style.</li>
<li><a
href="https://github.com/python-jsonschema/referencing/commit/63825328455b553ef93ba9705cfb94423c72bd7e"><code>6382532</code></a>
Prepare the CHANGELOG for v0.37.</li>
<li><a
href="https://github.com/python-jsonschema/referencing/commit/91b4bf5b717e6990434faad72525b35a642024a2"><code>91b4bf5</code></a>
Drop support for 3.9, which is near EOL.</li>
<li><a
href="https://github.com/python-jsonschema/referencing/commit/0c14d461f50fc141279a94c5c0881d32039d56b0"><code>0c14d46</code></a>
Update requirements.</li>
<li><a
href="https://github.com/python-jsonschema/referencing/commit/2928df538b61713b2c732e13ee6485e53fb5e548"><code>2928df5</code></a>
Add the 3.14 classifier.</li>
<li><a
href="https://github.com/python-jsonschema/referencing/commit/3ce7f9ac10248147029805f499da0fb30fb3ffb3"><code>3ce7f9a</code></a>
Merge pull request <a
href="https://redirect.github.com/python-jsonschema/referencing/issues/270">#270</a>
from cclauss/patch-1</li>
<li><a
href="https://github.com/python-jsonschema/referencing/commit/b6fc4257617e98470ba7d44ad7e275d6d0dbda36"><code>b6fc425</code></a>
ci: Add Python 3.14 and 3.14t to the testing</li>
<li><a
href="https://github.com/python-jsonschema/referencing/commit/9d1efc5cecbc512172aecf9df5f0d19dc0bbdfda"><code>9d1efc5</code></a>
Merge pull request <a
href="https://redirect.github.com/python-jsonschema/referencing/issues/265">#265</a>
from python-jsonschema/pre-commit-ci-update-config</li>
<li><a
href="https://github.com/python-jsonschema/referencing/commit/1513a51413ed4cf891c9795385b4febc4e90bf5a"><code>1513a51</code></a>
Merge pull request <a
href="https://redirect.github.com/python-jsonschema/referencing/issues/268">#268</a>
from python-jsonschema/dependabot/submodules/suite-79...</li>
<li><a
href="https://github.com/python-jsonschema/referencing/commit/8ebb38f25bd841e17319fc167a392ccf9ae93d58"><code>8ebb38f</code></a>
Merge pull request <a
href="https://redirect.github.com/python-jsonschema/referencing/issues/269">#269</a>
from python-jsonschema/dependabot/github_actions/astr...</li>
<li>Additional commits viewable in <a
href="https://github.com/python-jsonschema/referencing/compare/v0.36.2...v0.37.0">compare
view</a></li>
</ul>
</details>
<br />
Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.
[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)
---
<details>
<summary>Dependabot commands and options</summary>
<br />
You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore <dependency name> major version` will close this
group update PR and stop Dependabot creating any more for the specific
dependency's major version (unless you unignore this specific
dependency's major version or upgrade to it yourself)
- `@dependabot ignore <dependency name> minor version` will close this
group update PR and stop Dependabot creating any more for the specific
dependency's minor version (unless you unignore this specific
dependency's minor version or upgrade to it yourself)
- `@dependabot ignore <dependency name>` will close this group update PR
and stop Dependabot creating any more for the specific dependency
(unless you unignore this specific dependency or upgrade to it yourself)
- `@dependabot unignore <dependency name>` will remove all of the ignore
conditions of the specified dependency
- `@dependabot unignore <dependency name> <ignore condition>` will
remove the ignore condition of the specified dependency and ignore
conditions
</details>
Signed-off-by: dependabot[bot] <[email protected]>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>1 parent f98de0c commit 642c300
2 files changed
+487
-363
lines changed
0 commit comments