From 351b7ce9497325c39210b3366aa84da47fe0d7d9 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Fri, 25 Aug 2023 19:12:19 +0000 Subject: [PATCH] [DEPENDABOT]: Bump safety from 1.10.3 to 2.3.5 Bumps [safety](https://github.com/pyupio/safety) from 1.10.3 to 2.3.5. - [Release notes](https://github.com/pyupio/safety/releases) - [Changelog](https://github.com/pyupio/safety/blob/main/CHANGELOG.md) - [Commits](https://github.com/pyupio/safety/compare/1.10.3...2.3.5) --- updated-dependencies: - dependency-name: safety dependency-type: direct:development update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] --- poetry.lock | 36 ++++++++++++++++++++++-------------- pyproject.toml | 2 +- 2 files changed, 23 insertions(+), 15 deletions(-) diff --git a/poetry.lock b/poetry.lock index 9b360d9..82b29c0 100644 --- a/poetry.lock +++ b/poetry.lock @@ -2391,15 +2391,18 @@ files = [ [[package]] name = "packaging" -version = "23.1" +version = "21.3" description = "Core utilities for Python packages" optional = false -python-versions = ">=3.7" +python-versions = ">=3.6" files = [ - {file = "packaging-23.1-py3-none-any.whl", hash = "sha256:994793af429502c4ea2ebf6bf664629d07c1a9fe974af92966e4b8d2df7edc61"}, - {file = "packaging-23.1.tar.gz", hash = "sha256:a392980d2b6cffa644431898be54b0045151319d1e7ec34f0cfed48767dd334f"}, + {file = "packaging-21.3-py3-none-any.whl", hash = "sha256:ef103e05f519cdc783ae24ea4e2e0f508a9c99b2d4969652eed6a2e1ea5bd522"}, + {file = "packaging-21.3.tar.gz", hash = "sha256:dd47c42927d89ab911e606518907cc2d3a1f38bbd026385970643f9c5b8ecfeb"}, ] +[package.dependencies] +pyparsing = ">=2.0.2,<3.0.5 || >3.0.5" + [[package]] name = "pandas" version = "1.3.5" @@ -3409,21 +3412,26 @@ files = [ [[package]] name = "safety" -version = "1.10.3" -description = "Checks installed dependencies for known vulnerabilities." +version = "2.3.5" +description = "Checks installed dependencies for known vulnerabilities and licenses." optional = false -python-versions = ">=3.5" +python-versions = "*" files = [ - {file = "safety-1.10.3-py2.py3-none-any.whl", hash = "sha256:5f802ad5df5614f9622d8d71fedec2757099705c2356f862847c58c6dfe13e84"}, - {file = "safety-1.10.3.tar.gz", hash = "sha256:30e394d02a20ac49b7f65292d19d38fa927a8f9582cdfd3ad1adbbc66c641ad5"}, + {file = "safety-2.3.5-py3-none-any.whl", hash = "sha256:2227fcac1b22b53c1615af78872b48348661691450aa25d6704a5504dbd1f7e2"}, + {file = "safety-2.3.5.tar.gz", hash = "sha256:a60c11f8952f412cbb165d70cb1f673a3b43a2ba9a93ce11f97e6a4de834aa3a"}, ] [package.dependencies] -Click = ">=6.0" -dparse = ">=0.5.1" -packaging = "*" +Click = ">=8.0.2" +dparse = ">=0.6.2" +packaging = ">=21.0,<22.0" requests = "*" -setuptools = "*" +"ruamel.yaml" = ">=0.17.21" +setuptools = ">=19.3" + +[package.extras] +github = ["jinja2 (>=3.1.0)", "pygithub (>=1.43.3)"] +gitlab = ["python-gitlab (>=1.3.0)"] [[package]] name = "scanpy" @@ -4433,4 +4441,4 @@ testing = ["big-O", "flake8 (<5)", "jaraco.functools", "jaraco.itertools", "more [metadata] lock-version = "2.0" python-versions = ">=3.7.1,<3.10" -content-hash = "87006bfc64f0e64ff8a8809ef0d4a1cae6921a40f520c7af851bc58c09062127" +content-hash = "d7077956ccb64feb9b55bb11db41c45d8d6318a86719483f284b5ec7f2723a43" diff --git a/pyproject.toml b/pyproject.toml index a16c1b6..c2079fa 100644 --- a/pyproject.toml +++ b/pyproject.toml @@ -42,7 +42,7 @@ UpSetPlot = "^0.6.0" [tool.poetry.dev-dependencies] pytest = "^6.2.4" coverage = {extras = ["toml"], version = "^6.2"} -safety = "^1.9.0" +safety = "^2.3.5" mypy = "^0.910" typeguard = "^2.13.2" xdoctest = {extras = ["colors"], version = "^0.15.5"}