Skip to content

Bump the django group across 1 directory with 2 updates#470

Open
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot-pip-django-7e232f016e
Open

Bump the django group across 1 directory with 2 updates#470
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot-pip-django-7e232f016e

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Mar 10, 2025

Bumps the django group with 2 updates in the / directory: django and django-stubs.

Updates django from 4.2.30 to 5.2.13

Commits
  • 7d831a9 [5.2.x] Bumped version for 5.2.13 release.
  • 49e1e2b [5.2.x] Fixed CVE-2026-33034 -- Enforced DATA_UPLOAD_MAX_MEMORY_SIZE on body ...
  • 0b46789 [5.2.x] Fixed CVE-2026-33033 -- Mitigated potential DoS in MultiPartParser.
  • 397c220 [5.2.x] Fixed CVE-2026-4292 -- Disallowed instance creation via ModelAdmin.li...
  • 60ffa95 [5.2.x] Fixed CVE-2026-4277 -- Checked add permissions in GenericInlineModelA...
  • 1cc2a76 [5.2.x] Fixed CVE-2026-3902 -- Ignored headers with underscores in ASGIRequest.
  • 2a8a76a [5.2.x] Added stub release notes and release date for 5.2.13 and 4.2.30.
  • 90924f5 [5.2.x] Bumped black to 26.3.1.
  • 0ee44c6 [5.2.x] Applied Black's 2026 stable style.
  • 89b4d94 [5.2.x] Combined scripts confirm_release.sh and test_new_version.sh into veri...
  • Additional commits viewable in compare view

Updates django-stubs from 4.2.4 to 6.0.3

Commits

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python Pull requests that update Python code labels Mar 10, 2025
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch 4 times, most recently from 5a1f2b7 to 305b0c5 Compare March 10, 2025 13:35
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch 4 times, most recently from 936222a to a7cdd5b Compare March 24, 2025 11:15
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch 2 times, most recently from 5af05c4 to f19f468 Compare April 7, 2025 09:04
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch from f19f468 to cbf457a Compare April 7, 2025 11:17
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch from cbf457a to 609bef9 Compare April 21, 2025 09:16
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch 2 times, most recently from 13dd4cc to d4774f1 Compare May 12, 2025 08:25
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch 2 times, most recently from 16c82bf to 50b878a Compare June 9, 2025 08:54
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch from 50b878a to 76460c8 Compare June 16, 2025 08:44
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch from 76460c8 to 1d6c575 Compare June 23, 2025 09:18
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch from 1d6c575 to 4711d54 Compare June 30, 2025 09:55
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch from 4711d54 to 17a9f22 Compare July 14, 2025 09:53
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch 2 times, most recently from 416754c to ece0536 Compare August 4, 2025 11:46
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch from ece0536 to e00af93 Compare August 11, 2025 12:30
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch from e00af93 to f7755ec Compare August 25, 2025 14:38
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch 2 times, most recently from 6ea1e1b to 1090f17 Compare September 2, 2025 05:31
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch from 1090f17 to e94be40 Compare September 15, 2025 08:52
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch 2 times, most recently from d1a1ee5 to de347ae Compare October 20, 2025 08:18
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch from de347ae to 799ad5a Compare November 3, 2025 08:03
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch from 799ad5a to da3a38e Compare November 10, 2025 08:03
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch from da3a38e to 3c96eae Compare November 17, 2025 08:03
@dependabot @github
Copy link
Copy Markdown
Contributor Author

dependabot Bot commented on behalf of github Nov 17, 2025

Dependabot tried to update this pull request, but something went wrong. We're looking into it, but in the meantime you can retry the update by commenting @dependabot recreate.

@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch from 3c96eae to a2f2287 Compare November 24, 2025 08:03
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch 2 times, most recently from 243b05d to 3a8671a Compare December 8, 2025 08:03
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch from 3a8671a to f915d8c Compare December 15, 2025 08:02
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch 2 times, most recently from 24cbf0b to c3831b6 Compare December 29, 2025 08:02
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch 2 times, most recently from 858ba14 to 6d010f4 Compare January 19, 2026 08:34
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch 2 times, most recently from 6d010f4 to 4278670 Compare January 26, 2026 08:20
@dependabot @github
Copy link
Copy Markdown
Contributor Author

dependabot Bot commented on behalf of github Feb 2, 2026

Dependabot tried to update this pull request, but something went wrong. We're looking into it, but in the meantime you can retry the update by commenting @dependabot recreate.

@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch 2 times, most recently from 325d853 to 484052d Compare February 16, 2026 08:03
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch 2 times, most recently from de6d272 to 1f01ed1 Compare March 2, 2026 08:03
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch 2 times, most recently from 51f3e1e to d21e3bc Compare March 16, 2026 08:04
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch from d21e3bc to 63c2348 Compare March 23, 2026 08:02
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch 2 times, most recently from d2cf01c to 89b08ff Compare April 6, 2026 08:04
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch from 89b08ff to 470d3bf Compare April 13, 2026 08:08
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch from 470d3bf to df46929 Compare April 20, 2026 08:20
Bumps the django group with 2 updates in the / directory: [django](https://github.com/django/django) and [django-stubs](https://github.com/typeddjango/django-stubs).


Updates `django` from 4.2.30 to 5.2.13
- [Commits](django/django@4.2.30...5.2.13)

Updates `django-stubs` from 4.2.4 to 6.0.3
- [Release notes](https://github.com/typeddjango/django-stubs/releases)
- [Commits](typeddjango/django-stubs@4.2.4...6.0.3)

---
updated-dependencies:
- dependency-name: django
  dependency-version: 5.1.7
  dependency-type: direct:production
  update-type: version-update:semver-major
  dependency-group: django
- dependency-name: django-stubs
  dependency-version: 5.1.3
  dependency-type: direct:development
  update-type: version-update:semver-major
  dependency-group: django
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot-pip-django-7e232f016e branch from df46929 to 6bf03d8 Compare May 4, 2026 08:55
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python Pull requests that update Python code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants