i-dot-ai / redbox

Bringing Generative AI to the way the Civil Service works
https://i-dot-ai.github.io/redbox/
MIT License
85 stars 28 forks source link

Bump the minor-patch group across 5 directories with 5 updates #925

Closed dependabot[bot] closed 1 month ago

dependabot[bot] commented 1 month ago

Bumps the minor-patch group with 4 updates in the / directory: boto3-stubs, boto3, mlflow and pyyaml. Bumps the minor-patch group with 2 updates in the /core-api directory: boto3 and pyyaml. Bumps the minor-patch group with 4 updates in the /django_app directory: boto3-stubs, boto3, django and pyyaml. Bumps the minor-patch group with 2 updates in the /redbox-core directory: boto3 and pyyaml. Bumps the minor-patch group with 3 updates in the /worker directory: boto3-stubs, boto3 and pyyaml.

Updates boto3-stubs from 1.34.154 to 1.34.155

Commits


Updates boto3 from 1.34.154 to 1.34.155

Commits
  • 904f334 Merge branch 'release-1.34.155'
  • ccd90ea Bumping version to 1.34.155
  • bc4b203 Add changelog entries from botocore
  • 7fcd936 Merge branch 'release-1.34.154' into develop
  • See full diff in compare view


Updates mlflow from 2.15.0 to 2.15.1

Release notes

Sourced from mlflow's releases.

MLflow 2.15.1 is a patch release that addresses several bug fixes.

Bug fixes:

  • [Tracking] Fix silent disabling of LangChain autologging for LangChain >= 0.2.10. (#12779, @​B-Step62)
  • [Tracking] Fix mlflow.evaluate crash on binary classification with data subset only contains single class (#12825, @​serena-ruan)
  • [Tracking] Fix incompatibility of MLflow Tracing with LlamaIndex >= 0.10.61 (#12890, @​B-Step62)
  • [Tracking] Record exceptions in OpenAI autolog tracing (#12841, @​B-Step62)
  • [Tracking] Fix regression of connecting to MLflow tracking server on other Databricks workspace (#12861, @​WeichenXu123)
  • [UI] Fix refresh button for model metrics on Experiment and Run pages (#12869, @​beomsun0829)

Documentation updates:

  • [Docs] Update doc for Spark ML vector type (#12827, @​WeichenXu123) Small bug fixes and documentation updates:

#12823, #12860, #12844, #12843, @​B-Step62; #12863, #12828, @​harupy; #12845, @​djliden; #12820, @​annzhang-db; #12831, #12873, @​chenmoneygithub

Changelog

Sourced from mlflow's changelog.

2.15.1 (2024-08-06)

MLflow 2.15.1 is a patch release that addresses several bug fixes.

Bug fixes:

Documentation updates:

Small bug fixes and documentation updates:

#12823, #12860, #12844, #12843, @​B-Step62; #12863, #12828, @​harupy; #12845, @​djliden; #12820, @​annzhang-db; #12831, @​chenmoneygithub

Commits
  • 608f334 Run python3 dev/update_mlflow_versions.py pre-release ... (#12891)
  • 28985ae Bump OpenAI version in LangChain tests (#12823)
  • 605fcd7 Add **kwargs to the new span handler in the LlamaIndex Tracer (#12890)
  • 74158c1 [BUG] able to refresh model metrics chart manually (#12869)
  • 7f1c34c Add note for external vector store limitation (#12860)
  • 9256363 Fix url with e2 proxy (#12873)
  • aee4757 Fix: Regression connecting to MLFlow tracking server on other Databricks work...
  • 49abe2c Fix disable_for_unsupported_versions value (#12863)
  • 82771d8 Add label_list in evaluator_config (#12825)
  • 6fe5e77 Wrap async logging batch submit by try except (#12831)
  • Additional commits viewable in compare view


Updates pyyaml from 6.0.1 to 6.0.2

Release notes

Sourced from pyyaml's releases.

6.0.2

What's Changed

  • Support for Cython 3.x and Python 3.13.

Full Changelog: https://github.com/yaml/pyyaml/compare/6.0.1...6.0.2

6.0.2rc1

  • Support for extension build with Cython 3.x
  • Support for Python 3.13
  • Added PyPI wheels for musllinux on aarch64
Changelog

Sourced from pyyaml's changelog.

6.0.2 (2024-08-06)

Commits


Updates boto3 from 1.34.154 to 1.34.155

Commits
  • 904f334 Merge branch 'release-1.34.155'
  • ccd90ea Bumping version to 1.34.155
  • bc4b203 Add changelog entries from botocore
  • 7fcd936 Merge branch 'release-1.34.154' into develop
  • See full diff in compare view


Updates pyyaml from 6.0.1 to 6.0.2

Release notes

Sourced from pyyaml's releases.

6.0.2

What's Changed

  • Support for Cython 3.x and Python 3.13.

Full Changelog: https://github.com/yaml/pyyaml/compare/6.0.1...6.0.2

6.0.2rc1

  • Support for extension build with Cython 3.x
  • Support for Python 3.13
  • Added PyPI wheels for musllinux on aarch64
Changelog

Sourced from pyyaml's changelog.

6.0.2 (2024-08-06)

Commits


Updates boto3-stubs from 1.34.154 to 1.34.155

Commits


Updates boto3 from 1.34.154 to 1.34.155

Commits
  • 904f334 Merge branch 'release-1.34.155'
  • ccd90ea Bumping version to 1.34.155
  • bc4b203 Add changelog entries from botocore
  • 7fcd936 Merge branch 'release-1.34.154' into develop
  • See full diff in compare view


Updates django from 5.0.7 to 5.0.8

Commits
  • 84d1102 [5.0.x] Bumped version for 5.0.8 release.
  • 32ebcbf [5.0.x] Fixed CVE-2024-42005 -- Mitigated QuerySet.values() SQL injection att...
  • 523da87 [5.0.x] Fixed CVE-2024-41991 -- Prevented potential ReDoS in django.utils.htm...
  • 7b7b909 [5.0.x] Fixed CVE-2024-41990 -- Mitigated potential DoS in urlize and urlizet...
  • 27900fe [5.0.x] Fixed CVE-2024-41989 -- Prevented excessive memory consumption in flo...
  • d7f9554 [5.0.x] Fixed #35657 -- Made FileField handle db_default values.
  • 333cfab [5.0.x] Fixed #35638 -- Updated validate_constraints to consider db_default.
  • e88ef6a [5.0.x] Refs #35638 -- Avoided wrapping expressions with Value in get_field...
  • c822ad6 [5.0.x] Fixed #35628 -- Allowed compatible GeneratedFields for ModelAdmin.dat...
  • 3aa9acd [5.0.x] Added stub release notes and release date for 5.0.8 and 4.2.15.
  • Additional commits viewable in compare view


Updates pyyaml from 6.0.1 to 6.0.2

Release notes

Sourced from pyyaml's releases.

6.0.2

What's Changed

  • Support for Cython 3.x and Python 3.13.

Full Changelog: https://github.com/yaml/pyyaml/compare/6.0.1...6.0.2

6.0.2rc1

  • Support for extension build with Cython 3.x
  • Support for Python 3.13
  • Added PyPI wheels for musllinux on aarch64
Changelog

Sourced from pyyaml's changelog.

6.0.2 (2024-08-06)

Commits


Updates boto3 from 1.34.154 to 1.34.155

Commits
  • 904f334 Merge branch 'release-1.34.155'
  • ccd90ea Bumping version to 1.34.155
  • bc4b203 Add changelog entries from botocore
  • 7fcd936 Merge branch 'release-1.34.154' into develop
  • See full diff in compare view


Updates pyyaml from 6.0.1 to 6.0.2

Release notes

Sourced from pyyaml's releases.

6.0.2

What's Changed

  • Support for Cython 3.x and Python 3.13.

Full Changelog: https://github.com/yaml/pyyaml/compare/6.0.1...6.0.2

6.0.2rc1

  • Support for extension build with Cython 3.x
  • Support for Python 3.13
  • Added PyPI wheels for musllinux on aarch64
Changelog

Sourced from pyyaml's changelog.

6.0.2 (2024-08-06)

Commits


Updates boto3-stubs from 1.34.154 to 1.34.155

Commits


Updates boto3 from 1.34.154 to 1.34.155

Commits
  • 904f334 Merge branch 'release-1.34.155'
  • ccd90ea Bumping version to 1.34.155
  • bc4b203 Add changelog entries from botocore
  • 7fcd936 Merge branch 'release-1.34.154' into develop
  • See full diff in compare view


Updates pyyaml from 6.0.1 to 6.0.2

Release notes

Sourced from pyyaml's releases.

6.0.2

What's Changed

  • Support for Cython 3.x and Python 3.13.

Full Changelog: https://github.com/yaml/pyyaml/compare/6.0.1...6.0.2

6.0.2rc1

  • Support for extension build with Cython 3.x
  • Support for Python 3.13
  • Added PyPI wheels for musllinux on aarch64
Changelog

Sourced from pyyaml's changelog.

6.0.2 (2024-08-06)

Commits


Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself) - `@dependabot ignore minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself) - `@dependabot ignore ` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself) - `@dependabot unignore ` will remove all of the ignore conditions of the specified dependency - `@dependabot unignore ` will remove the ignore condition of the specified dependency and ignore conditions
dependabot[bot] commented 1 month ago

Looks like these dependencies are updatable in another way, so this is no longer needed.