Bump flask from 2.1.3 to 2.3.2 in /tests#9666
Conversation
Bumps [flask](https://github.com/pallets/flask) from 2.1.3 to 2.3.2. - [Release notes](https://github.com/pallets/flask/releases) - [Changelog](https://github.com/pallets/flask/blob/main/CHANGES.rst) - [Commits](pallets/flask@2.1.3...2.3.2) --- updated-dependencies: - dependency-name: flask dependency-type: direct:production ... Signed-off-by: dependabot[bot] <support@github.com>
|
@maskit points out that now that the use of httpbin has been replaced by go-httpbin, and flask was pinned for httpbin, that we can probably just remove this item from the Pipfile. That sounds correct. I'm trying that here: If all the tests pass for #9688, then we should simply close this PR in favor of the latter. |
|
I'm closing this in favor of simply removing the flask dependency entirely: |
|
OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting If you change your mind, just re-open this PR and I'll resolve any conflicts on it. |
Bumps flask from 2.1.3 to 2.3.2.
Release notes
Sourced from flask's releases.
Changelog
Sourced from flask's changelog.
... (truncated)
Commits
f3b8f57release version 2.3.2c990bbaupdate min test envadedb2aMerge pull request #5101 from pallets/update-werkzeuge1aedecupdate werkzeug37badc3update changelog70f906cMerge pull request from GHSA-m2qf-hxjv-5gpq8705dd3setVary: Cookieheader consistently for session9532cbafix mypy finding0bc7356start version 2.3.2f07fb2bMerge pull request #5086 from pallets/release-2.3.1Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)You can disable automated security fix PRs for this repo from the Security Alerts page.