Skip to content

Bump requests from 2.25.1 to 2.26.0#564

Merged
eshaan7 merged 1 commit intodevelopfrom
dependabot/pip/develop/requests-2.26.0
Jul 27, 2021
Merged

Bump requests from 2.25.1 to 2.26.0#564
eshaan7 merged 1 commit intodevelopfrom
dependabot/pip/develop/requests-2.26.0

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jul 23, 2021

Bumps requests from 2.25.1 to 2.26.0.

Changelog

Sourced from requests's changelog.

2.26.0 (2021-07-13)

Improvements

  • Requests now supports Brotli compression, if either the brotli or brotlicffi package is installed. (#5783)

  • Session.send now correctly resolves proxy configurations from both the Session and Request. Behavior now matches Session.request. (#5681)

Bugfixes

  • Fixed a race condition in zip extraction when using Requests in parallel from zip archive. (#5707)

Dependencies

  • Instead of chardet, use the MIT-licensed charset_normalizer for Python3 to remove license ambiguity for projects bundling requests. If chardet is already installed on your machine it will be used instead of charset_normalizer to keep backwards compatibility. (#5797)

    You can also install chardet while installing requests by specifying [use_chardet_on_py3] extra as follows:

    pip install "requests[use_chardet_on_py3]"

    Python2 still depends upon the chardet module.

  • Requests now supports idna 3.x on Python 3. idna 2.x will continue to be used on Python 2 installations. (#5711)

Deprecations

  • The requests[security] extra has been converted to a no-op install. PyOpenSSL is no longer the recommended secure option for Requests. (#5867)

  • Requests has officially dropped support for Python 3.5. (#5867)

Commits
  • a1a6a54 v2.26.0
  • e253eba Stop abusing pytest-httpbin to test commonName support
  • f6c0619 Disable requests[security] and remove 3.5 support references
  • 33cf965 Allow idna 3.x to be installed on Python 3.x
  • 5351469 Add support for brotli decoding (#5783)
  • 2463074 Avoid zip extract racing condition by using read+write instead extract (#5707)
  • 2ed84f5 Switch LGPL'd chardet for MIT licensed charset_normalizer (#5797)
  • 33d448e Pin Flask to <2.0 to fix the test suite
  • 1466ad7 Fix GitHub links (#5835)
  • f6d43b0 Updated to new be-cordial-or-be-on-your-way URL and CoC now references Python...
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Jul 23, 2021
@codecov
Copy link

codecov bot commented Jul 23, 2021

Codecov Report

Merging #564 (d44f414) into develop (aa8820f) will increase coverage by 2.08%.
The diff coverage is 72.51%.

Impacted file tree graph

@@             Coverage Diff             @@
##           develop     #564      +/-   ##
===========================================
+ Coverage    66.75%   68.84%   +2.08%     
===========================================
  Files           95      105      +10     
  Lines         3706     4134     +428     
  Branches       519      588      +69     
===========================================
+ Hits          2474     2846     +372     
- Misses         941      948       +7     
- Partials       291      340      +49     
Impacted Files Coverage Δ
api_app/crons.py 70.27% <ø> (ø)
api_app/helpers.py 60.00% <ø> (ø)
api_app/permissions.py 100.00% <ø> (ø)
api_app/script_analyzers/file_analyzers/apkid.py 100.00% <ø> (ø)
..._app/script_analyzers/file_analyzers/boxjs_scan.py 100.00% <ø> (ø)
...i_app/script_analyzers/file_analyzers/capa_info.py 100.00% <ø> (ø)
...pi_app/script_analyzers/file_analyzers/doc_info.py 50.00% <ø> (ø)
api_app/script_analyzers/file_analyzers/floss.py 77.41% <ø> (ø)
...pp/script_analyzers/file_analyzers/intezer_scan.py 68.42% <ø> (ø)
...pi_app/script_analyzers/file_analyzers/manalyze.py 100.00% <ø> (ø)
... and 106 more

Continue to review full report at Codecov.

Legend - Click here to learn more
Δ = absolute <relative> (impact), ø = not affected, ? = missing data
Powered by Codecov. Last update 748d283...d44f414. Read the comment docs.

@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Jul 23, 2021

Dependabot tried to update this pull request, but something went wrong. We're looking into it, but in the meantime you can retry the update by commenting @dependabot rebase.

@eshaan7 eshaan7 merged commit 876e026 into develop Jul 27, 2021
@eshaan7 eshaan7 deleted the dependabot/pip/develop/requests-2.26.0 branch July 27, 2021 13:51
federicofantini pushed a commit that referenced this pull request Aug 20, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant