Skip to content

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Aug 9, 2021

Bumps flask from 1.1.2 to 1.1.4.

Changelog

Sourced from flask's changelog.

Version 1.1.4

Released 2021-05-13

  • Update static_folder to use _compat.fspath instead of os.fspath to continue supporting Python < 3.6 :issue:4050

Version 1.1.3

Released 2021-05-13

  • Set maximum versions of Werkzeug, Jinja, Click, and ItsDangerous. :issue:4043
  • Re-add support for passing a pathlib.Path for static_folder. :pr:3579
Commits
  • 1ca199f Merge pull request #4051 from pallets/release-1.1.4
  • 64a5d7a release version 1.1.4
  • 5f8d3ea Merge pull request #4049 from brettlangdon/fix.os.fspath
  • 3ace642 Use compat fspath instead of os.fspath
  • c04b0de Merge pull request #4048 from pallets/release-1.1.3
  • 661bbcd release version 1.1.3
  • ae647b5 Merge pull request #4047 from pallets/maximum-versions
  • 6d8b4ce set maximum versions of pallets dependencies
  • 1672c5f Merge pull request #3939 from kangetsu121/fix_link_and_typo
  • 6eeaa2e fix a broken link
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [flask](https://github.com/pallets/flask) from 1.1.2 to 1.1.4.
- [Release notes](https://github.com/pallets/flask/releases)
- [Changelog](https://github.com/pallets/flask/blob/main/CHANGES.rst)
- [Commits](pallets/flask@1.1.2...1.1.4)

---
updated-dependencies:
- dependency-name: flask
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Aug 9, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants