chore(deps): bump pypdf from 5.8.0 to 6.10.0 in /packages/uipath-llamaindex/testcases/quickstart-agent
Closed
Number: #277
Type: Pull Request
State: Closed
Type: Pull Request
State: Closed
Author:
dependabot[bot]
Association: Unknown
Comments: 1
Association: Unknown
Comments: 1
Created:
April 10, 2026 at 09:38 PM UTC
(2 months ago)
(2 months ago)
Updated:
April 15, 2026 at 08:19 PM UTC
(2 months ago)
(2 months ago)
Closed:
April 15, 2026 at 08:19 PM UTC
(2 months ago)
(2 months ago)
Time to Close:
5 days
Labels:
dependencies python:uv
dependencies python:uv
Description:
Bumps pypdf from 5.8.0 to 6.10.0.
Release notes
Sourced from pypdf's releases.
Version 6.10.0, 2026-04-10
What's new
Security (SEC)
- Disallow custom XML entity declarations for XMP metadata (#3724) by
@stefan6419846New Features (ENH)
Bug Fixes (BUG)
- Use remove_orphans in compress_identical_objects (#3310) by
@j-t-1- Fix PdfReadError when xref table contains comments before trailer (#3710) by
@rassie- Correctly verify AES padding during decryption (#3699) by
@stefan6419846- Fix stale object cache from non-authoritative object streams (#3698) by
@astahlman- Fix extract_links pairing when annotations include non-links (#3687) by
@ReinerBRODocumentation (DOC)
- Add AI policy (#3717) by
@stefan6419846Version 6.9.2, 2026-03-23
What's new
Security (SEC)
- Avoid infinite loop in read_from_stream for broken files (#3693) by
@stefan6419846Robustness (ROB)
- Resolve UnboundLocalError for xobjs in _get_image (#3684) by
@Yuki9814Version 6.9.1, 2026-03-17
What's new
Security (SEC)
- Improve performance and limit length of array-based content streams (#3686) by
@stefan6419846Version 6.9.0, 2026-03-15
What's new
New Features (ENH)
- Expose /Perms verification result on Encryption object (#3672) by
@costajohntPerformance Improvements (PI)
- Fix O(n²) performance in NameObject read/write (#3679) by
@dmitry-kostin- Batch-parse all objects in ObjStm on first access (#3677) by
@dmitry-kostin
... (truncated)
Changelog
Sourced from pypdf's changelog.
Version 6.10.0, 2026-04-10
Security (SEC)
- Disallow custom XML entity declarations for XMP metadata (#3724)
New Features (ENH)
- Skip MD5 key derivation for AES-256 encrypted PDFs (#3694)
Bug Fixes (BUG)
- Use remove_orphans in compress_identical_objects (#3310)
- Fix PdfReadError when xref table contains comments before trailer (#3710)
- Correctly verify AES padding during decryption (#3699)
- Fix stale object cache from non-authoritative object streams (#3698)
- Fix extract_links pairing when annotations include non-links (#3687)
Documentation (DOC)
- Add AI policy (#3717)
Version 6.9.2, 2026-03-23
Security (SEC)
- Avoid infinite loop in read_from_stream for broken files (#3693)
Robustness (ROB)
- Resolve UnboundLocalError for xobjs in _get_image (#3684)
Version 6.9.1, 2026-03-17
Security (SEC)
- Improve performance and limit length of array-based content streams (#3686)
Version 6.9.0, 2026-03-15
New Features (ENH)
- Expose /Perms verification result on Encryption object (#3672)
Performance Improvements (PI)
- Fix O(n²) performance in NameObject read/write (#3679)
- Batch-parse all objects in ObjStm on first access (#3677)
Bug Fixes (BUG)
... (truncated)
Commits
fd0aecaREL: 6.10.0b15a374SEC: Disallow custom XML entity declarations for XMP metadata (#3724)d0d9de6DEV: Update cryptography to 46.0.7 in ci.txt1e0e5beDOC: Include policies about AI and PoCs into security policy3155e04Bump cryptography from 46.0.6 to 46.0.7 in /requirements (#3723)696b978DEV: Bump codecov/codecov-action from 5 to 6 (#3701)5456731TST: Extending typing to tests; cover generic and scripts folder files (#3660)e00505eDOC: Add AI policy (#3717)bd95bd8Fix PdfReadError when xref table contains comments before trailer (#3710)f3f501bDEV: Update pygments version to 2.20.0 (#3707)- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
You can disable automated security fix PRs for this repo from the Security Alerts page.
Package Dependencies
Package:
pypdf
Ecosystem:
pip
pip
Version Change:
5.8.0 → 6.10.0
Update Type:
Major
Major
Path:
/packages/uipath-llamaindex/testcases/quickstart-agent
Technical Details
| ID: | 15327437 |
| UUID: | 4241858921 |
| Node ID: | PR_kwDOOs0RVs7Rk2Ei |
| Host: | GitHub |
| Repository: | UiPath/uipath-integrations-python |