Skip to content

build(deps-dev): Bump the patch group across 1 directory with 2 updates - #560

Open
dependabot[bot] wants to merge 1 commit into
v1.x.xfrom
dependabot/pip/patch-0c1fbf577e
Open

dependabot[bot] wants to merge 1 commit into
v1.x.xfrom
dependabot/pip/patch-0c1fbf577e

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 1, 2026 •

Copy link
Copy Markdown
Contributor

Bumps the patch group with 2 updates in the / directory: mkdocstrings-python and pylint.

Updates mkdocstrings-python from 2.0.7 to 2.0.9

Release notes

Sourced from mkdocstrings-python's releases.

2.0.9

2.0.9 - 2026-09-22

Compare with 2.0.8

Bug Fixes

  • Improve inventory object types (incorrectly called roles in mkdocstrings) (d754326 by Timothée Mazzucotelli). Issue-339, PR-340
  • Expand relative cross-references against the object the docstring was written on (a9a4ca3 by Dev M). Issue-341, PR-342

Performance Improvements

  • Small performance improvement when getting aliases and formatting/highlighting signatures (2263163 by Timothée Mazzucotelli).

2.0.8

2.0.8 - 2026-08-31

Compare with 2.0.7

Performance Improvements

  • Make template existence test (for locale templates) faster (c0424f2 by Timothée Mazzucotelli).
Changelog

Sourced from mkdocstrings-python's changelog.

2.0.9 - 2026-09-22

Compare with 2.0.8

Bug Fixes

  • Improve inventory object types (incorrectly called roles in mkdocstrings) (d754326 by Timothée Mazzucotelli). Issue-339, PR-340
  • Expand relative cross-references against the object the docstring was written on (a9a4ca3 by Dev M). Issue-341, PR-342

Performance Improvements

  • Small performance improvement when getting aliases and formatting/highlighting signatures (2263163 by Timothée Mazzucotelli).

2.0.8 - 2026-08-31

Compare with 2.0.7

Performance Improvements

  • Make template existence test (for locale templates) faster (c0424f2 by Timothée Mazzucotelli).
Commits
  • c888dc2 chore: Prepare release 2.0.9
  • 2263163 perf: Small performance improvement when getting aliases and formatting/highl...
  • d754326 fix: Improve inventory object types (incorrectly called roles in mkdocstrings)
  • a9a4ca3 fix: Expand relative cross-references against the object the docstring was wr...
  • 8125b0d chore: Prepare release 2.0.8
  • 5054240 chore: Be a bit more minijinja compatible
  • c0424f2 perf: Make template existence test (for locale templates) faster
  • See full diff in compare view

Updates pylint from 4.0.8 to 4.0.9

Release notes

Sourced from pylint's releases.

v4.0.9

What's new in Pylint 4.0.9?

Release date: 2026-09-23

Security Fixes

  • Someone without access to the configuration or linted code, but with access to the cache directory (predictable PYLINT_HOME on a multi-user host) can no longer write a crafted pickle that will runs arbitrary code when pylint access its stat cache. The result cache is now stored as JSON instead of pickle, preventing code-execution. The workaround is upgrading or not pointing PYLINT_HOME to an untrusted, shared, or group-writable directory. The default value, ~/.cache/pylint, is writable only by the user running pylint. (CVE with the same information pending)

False Positives Fixed

  • Fixed a false positive for no-self-use on a method that only uses self before a locally defined class (or other nested method), because the checker's could-be-a-function tracking state was not restored after visiting the nested method.

    Closes #3705

  • Fix a false positive for :ref:not-callable when calling functions constructed with types.FunctionType or types.LambdaType.

    Closes #7500

  • Fix a false positive for unnecessary-direct-lambda-call when a directly called lambda in a class body wraps a comprehension containing an assignment expression. PEP 572 makes that a SyntaxError without the lambda's scope, so following the message produced code that would not compile.

    Closes #9294

  • Fix a false positive for :ref:unnecessary-ellipsis when an ellipsis is the sole body statement of a method defined on a Protocol.

    Closes #9319

  • Fix a false positive for :ref:bad-exception-cause when the bases of the class being raised from cannot be inferred, such as an exception deriving from a C extension class. :ref:raising-non-exception and :ref:catching-non-exception already guard the same inherit_from_std_ex

... (truncated)

Commits
  • 303703f Bump pylint to 4.0.9, update changelog (#11448)
  • b342384 Fix block-scoped disable leaking into sibling elif/else blocks (#11429) (#11445)
  • 58c87cf Store the results cache as JSON instead of pickle
  • e3f4942 [Backport maintenance/4.0.x] Fix crash on failed attribute inference (#11443)
  • faf47f9 [Backport maintenance/4.0.x] Fix false positive no-self-use when a method con...
  • 20c7bb9 [Backport maintenance/4.0.x] Fix a crash in method-hidden for methods named a...
  • 47e6757 [Backport maintenance/4.0.x] Fix bad-exception-cause false positive when the ...
  • ae3ee53 [Backport maintenance/4.0.x] Fix not-callable false positive for types.Functi...
  • 3e444be [Backport maintenance/4.0.x] Fix a crash in unnecessary-default-type-args for...
  • 8f2dd4f [Backport maintenance/4.0.x] Fix declare-non-slot false positives for ClassVa...
  • Additional commits viewable in compare view

@dependabot dependabot Bot added part:tooling Affects the development tooling (CI, deployment, dependency management, etc.) type:tech-debt Improves the project without visible changes for users labels Oct 1, 2026
@dependabot
dependabot Bot requested a review from a team as a code owner October 1, 2026 23:33
@dependabot dependabot Bot added the part:tooling Affects the development tooling (CI, deployment, dependency management, etc.) label Oct 1, 2026
@dependabot
dependabot Bot requested review from daniel-zullo-frequenz and removed request for a team October 1, 2026 23:33
@dependabot dependabot Bot added the type:tech-debt Improves the project without visible changes for users label Oct 1, 2026
@frequenz-auto-dependabot frequenz-auto-dependabot Bot added the tool:auto-merged PR was auto-merged by automation label Oct 1, 2026
Bumps the patch group with 2 updates in the / directory: [mkdocstrings-python](https://github.com/mkdocstrings/python) and [pylint](https://github.com/pylint-dev/pylint).


Updates `mkdocstrings-python` from 2.0.7 to 2.0.9
- [Release notes](https://github.com/mkdocstrings/python/releases)
- [Changelog](https://github.com/mkdocstrings/python/blob/main/CHANGELOG.md)
- [Commits](mkdocstrings/python@2.0.7...2.0.9)

Updates `pylint` from 4.0.8 to 4.0.9
- [Release notes](https://github.com/pylint-dev/pylint/releases)
- [Commits](pylint-dev/pylint@v4.0.8...v4.0.9)

---
updated-dependencies:
- dependency-name: mkdocstrings-python
  dependency-version: 2.0.9
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: patch
- dependency-name: pylint
  dependency-version: 4.0.9
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot changed the title build(deps-dev): Bump the patch group with 2 updates build(deps-dev): Bump the patch group across 1 directory with 2 updates Oct 1, 2026
@dependabot
dependabot Bot force-pushed the dependabot/pip/patch-0c1fbf577e branch from 57afae7 to 9a8bc3b Compare October 1, 2026 23:43

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

part:tooling Affects the development tooling (CI, deployment, dependency management, etc.) tool:auto-merged PR was auto-merged by automation type:tech-debt Improves the project without visible changes for users

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants