chore(deps-dev): bump yarl from 1.20.0 to 1.20.1
Type: Pull Request
State: Open
![dependabot[bot]](https://github.com/dependabot.png)
Association: Contributor
Comments: 0
(3 months ago)
(3 months ago)
dependencies python
Bumps yarl from 1.20.0 to 1.20.1.
Release notes
Sourced from yarl's releases.
1.20.1
Bug fixes
Started raising a :exc:
ValueError
exception raised for corrupted IPv6 URL values.These fixes the issue where exception :exc:
IndexError
was leaking from the internal code because of not being handled and transformed into a user-facing error. The problem was happening under the following conditions: empty IPv6 URL, brackets in reverse order.-- by :user:
MaelPic
.Related issues and pull requests on GitHub: #1512.
Packaging updates and notes for downstreams
Updated to use Cython 3.1 universally across the build path -- by :user:
lysnikolaou
.Related issues and pull requests on GitHub: #1514.
Made Cython line tracing opt-in via the
with-cython-tracing
build config setting -- by :user:bdraco
.Previously, line tracing was enabled by default in :file:
pyproject.toml
, which caused build issues for some users and made wheels nearly twice as slow. Now line tracing is only enabled when explicitly requested viapip install . --config-setting=with-cython-tracing=true
or by setting theYARL_CYTHON_TRACING
environment variable.Related issues and pull requests on GitHub: #1521.
Changelog
Sourced from yarl's changelog.
1.20.1
(2025-06-09)
Bug fixes
Started raising a :exc:
ValueError
exception raised for corrupted IPv6 URL values.These fixes the issue where exception :exc:
IndexError
was leaking from the internal code because of not being handled and transformed into a user-facing error. The problem was happening under the following conditions: empty IPv6 URL, brackets in reverse order.-- by :user:
MaelPic
.Related issues and pull requests on GitHub: :issue:
1512
.Packaging updates and notes for downstreams
Updated to use Cython 3.1 universally across the build path -- by :user:
lysnikolaou
.Related issues and pull requests on GitHub: :issue:
1514
.Made Cython line tracing opt-in via the
with-cython-tracing
build config setting -- by :user:bdraco
.Previously, line tracing was enabled by default in :file:
pyproject.toml
, which caused build issues for some users and made wheels nearly twice as slow. Now line tracing is only enabled when explicitly requested viapip install . --config-setting=with-cython-tracing=true
or by setting theYARL_CYTHON_TRACING
environment variable.Related issues and pull requests on GitHub: :issue:
1521
.
Commits
- See full diff in compare view
Most Recent Ignore Conditions Applied to This Pull Request
Dependency Name | Ignore Conditions |
---|---|
yarl | [>= 1.18.dev0, < 1.19] |
yarl | [>= 1.17.dev0, < 1.18] |
yarl | [>= 1.16.dev0, < 1.17] |
yarl | [>= 1.15.5.dev0, < 1.15.6] |
yarl | [< 1.16, > 1.15.2] |
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase
.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore this major version
will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor version
will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependency
will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Pull Request Statistics
1
1
+1
-1
Package Dependencies
Technical Details
ID: | 1404646 |
UUID: | 2580005306 |
Node ID: | PR_kwDODnmQMs6Zx8G6 |
Host: | GitHub |
Repository: | microsoftgraph/msgraph-sdk-python-core |
Merge State: | Unknown |