megasanjay / electron-vue3-flask

A simple template for combining Electron with Vue3 and Flask
MIT License
30 stars 2 forks source link

Bump pyinstaller from 4.5.1 to 5.13.1 in /src/pyflask #36

Open dependabot[bot] opened 7 months ago

dependabot[bot] commented 7 months ago

Bumps pyinstaller from 4.5.1 to 5.13.1.

Release notes

Sourced from pyinstaller's releases.

v5.13.1

Please see the v5.13.1 section of the changelog for a list of the changes since v5.13.0. Note that this is a bugfix only release. It's primary purpose is to publish pyinstaller/pyinstaller#7827.

v5.13.0

Please see the v5.13.0 section of the changelog for a list of the changes since v5.12.0.

Note that this is intended to be the last v5.x release. v6.0 will contain breaking changes from #7619, #7713 and #6999. If you want to avoid unexpected disruption, you may wish to pin pyinstaller (e.g. pip install "pyinstaller<6").

v5.12.0

Please see the v5.12.0 section of the changelog for a list of the changes since v5.11.0.

v5.11.0

Please see the v5.11.0 section of the changelog for a list of the changes since v5.10.1.

v5.10.1

Please see the v5.10.1 section of the changelog for a list of the changes since v5.10.0.

v5.10.0

Please see the v5.10.0 section of the changelog for a list of the changes since v5.9.0.

v5.9.0

Please see the v5.9.0 section of the changelog for a list of the changes since v5.8.0.

v5.8.0

Please see the v5.8.0 section of the changelog for a list of the changes since v5.7.0.

v5.7.0

Please see the v5.7.0 section of the changelog for a list of the changes since v5.6.2.

v5.6.2

Please see the v5.6.2 section of the changelog for a list of the changes since v5.6.1.

v5.6.1

Please see the v5.6.1 section of the changelog for a list of the changes since v5.6.

v5.6

Please see the v5.6 section of the changelog for a list of the changes since v5.5.

v5.5

Please see the v5.5 section of the changelog for a list of the changes since v5.4.1.

v5.4.1

Please see the v5.4.1 section of the changelog for a list of the changes since v5.4.

v5.4

Please see the v5.4 section of the changelog for a list of the changes since v5.3.

v5.3

Please see the v5.3 section of the changelog for a list of the changes since v5.2.

... (truncated)

Changelog

Sourced from pyinstaller's changelog.

5.13.1 (2023-08-26)

Security


* (Windows) Ensure that the access to temporary directories created by the
  ``matplotlib`` and ``win32com`` run-time hooks is restricted to the user
  running the frozen application, even if the directory in the ``TMP`` or
  ``TEMP`` variables points to a system-wide *world writable* location that can
  be accessed by all users. (:issue:`7827`)

Bugfix


* (macOS) Fix :func:`pkgutil.iter_modules` failing to find submodules of a
  package that contains data files when running as a macOS .app bundle.
  (:issue:`7884`)
* (Windows) Fix ``win32com`` run-time hook to fully isolate the ``gen_py``
  cache. This prevents access to the global cache, which results in errors when
  the global cache contains some, but not all, required modules. (:issue:`6257`)
* (Windows) Fix splash screen not being able to locate collected Tk resources in
  onefile applications created in MSYS2 python environment. (:issue:`7828`)
* (Windows) Fixed bug where GdkPixbuf loaders.cache dll paths are absolute paths
  (e.g. ``C:/tools/msys64/mingw64/lib/gdk-pixbuf-2.0/2.10.0/loaders/*.dll``) and
  not relative paths (e.g.
  ``lib\\gdk-pixbuf\\loaders\\libpixbufloader-png.dll``) when the file is
  generated in the MSYS2/mingw64 environment. This results in the program
  crashing when run on another Windows machine because it cannot find the
  GdkPixbuf loader DLLs. (:issue:`7842`)
* Exclude NVIDIA graphics driver libraries from vendoring. (:issue:`7746`)
* Fix error handling in Glib schema compilation helper function. Ignore
  character encoding errors when reading stdout/stderr from
  ``glib-schema-compile`` process; this fixes errors in MSYS2/mingw64
  environment, caused by ``U+201C`` and ``U+201D`` quotation marks in the
  output. (:issue:`7833`)
* Implement a work-around for un-initialized ``sys._stdlib_dir`` and ensure that
  python-frozen stdlib modules in Python &gt;= 3.11 have ``__file__`` attribute
  set. (:issue:`7847`)

Hooks
~~~~~

* Add support for commercial PyQt5 and PyQt6 wheels. (:issue:`7770`)

Bootloader
</code></pre>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>

<ul>
<li><a href="https://github.com/pyinstaller/pyinstaller/commit/bc49d00b6f246d793e01bfa7a99a66e3d3fcfa73"><code>bc49d00</code></a> Release v5.13.1. [skip ci]</li>
<li><a href="https://github.com/pyinstaller/pyinstaller/commit/550b9271c085a73cbced9a601a234d54cecb8d06"><code>550b927</code></a> bootloader: always call Py_GetPath before Py_SetPath</li>
<li><a href="https://github.com/pyinstaller/pyinstaller/commit/4f2e0302584d0aea0834f24ba8b1c6cd05143f3b"><code>4f2e030</code></a> Add Nvidia libraries to Unix exclusion list (<a href="https://redirect.github.com/pyinstaller/pyinstaller/issues/7746">#7746</a>)</li>
<li><a href="https://github.com/pyinstaller/pyinstaller/commit/330ab13bb5e207589a8c875c730a481b1e4f31a0"><code>330ab13</code></a> hookutils: qt: look for commercial pyqt to determine layout</li>
<li><a href="https://github.com/pyinstaller/pyinstaller/commit/4c2652cd744fc0c392e1882a212ed1105a3583cd"><code>4c2652c</code></a> Make _pyi_rth_utils Python 3.7 compatible.</li>
<li><a href="https://github.com/pyinstaller/pyinstaller/commit/2ecfedf1b3cf160856baa7872be4e96ef196f0bb"><code>2ecfedf</code></a> Fix readthedocs building theme selection. [skip ci]</li>
<li><a href="https://github.com/pyinstaller/pyinstaller/commit/dcb2b177cb71fb8bc5a9d958a84031831e40de62"><code>dcb2b17</code></a> Fix pkgutil.iter_modules for symbolically linked packages</li>
<li><a href="https://github.com/pyinstaller/pyinstaller/commit/65fd7c40d5393d17bee55233776af637fb7e6ab7"><code>65fd7c4</code></a> Fix msys2 dll paths in GdkPixbuf loaders.cache gen (<a href="https://redirect.github.com/pyinstaller/pyinstaller/issues/7842">#7842</a>)</li>
<li><a href="https://github.com/pyinstaller/pyinstaller/commit/1e8484b203b01f3ff5a4d18ac6e56c271b7da810"><code>1e8484b</code></a> hookutils: gi: fix error handling in compile_glib_schema_files</li>
<li><a href="https://github.com/pyinstaller/pyinstaller/commit/e7f63805e823036767b2d70ad320427270c2214b"><code>e7f6380</code></a> bootstrap: add a work-around for sys._stdlib_dir not being set</li>
<li>Additional commits viewable in <a href="https://github.com/pyinstaller/pyinstaller/compare/v4.5.1...v5.13.1">compare view</a></li>
</ul>
</details>

<br />
[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=pyinstaller&package-manager=pip&previous-version=4.5.1&new-version=5.13.1)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) ---
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/megasanjay/electron-vue3-flask/network/alerts).
sonarcloud[bot] commented 7 months ago

Quality Gate Passed Quality Gate passed

Issues
0 New issues
0 Accepted issues

Measures
0 Security Hotspots
No data about Coverage
No data about Duplication

See analysis details on SonarCloud