build(deps-dev): bump mkdocs-material from 9.6.17 to 9.7.7 - #2073
Conversation
|
@dependabot recreate |
|
Sneaky feeling we will have the same issue here as in Relay. |
7b8641c to
dfbed01
Compare
There was a problem hiding this comment.
Cursor Bugbot has reviewed your changes and found 1 potential issue.
❌ Bugbot Autofix is OFF. To automatically fix reported issues with cloud agents, enable autofix in the Cursor dashboard.
Reviewed by Cursor Bugbot for commit dfbed01. Configure here.
| name = "babel" | ||
| version = "2.17.0" | ||
| source = { registry = "https://pypi.devinfra.sentry.io/simple" } | ||
| source = { registry = "https://sfw.security.sentry.io/pypi/simple" } |
There was a problem hiding this comment.
Lockfile rewritten to wrong registry
High Severity
Dependabot rewrote every package source and download URL in uv.lock from pypi.devinfra.sentry.io to sfw.security.sentry.io, while pyproject.toml still pins the former as the default index. uv sync --frozen in CI and devenv will fetch from the wrong host, and the lockfile no longer matches the project index.
Additional Locations (1)
Reviewed by Cursor Bugbot for commit dfbed01. Configure here.
Relay PR for reference: getsentry/relay#6460 seeing the same issue now here (#2072, #2073).
|
@dependabot recreate |
Bumps [mkdocs-material](https://github.com/squidfunk/mkdocs-material) from 9.6.17 to 9.7.7. - [Release notes](https://github.com/squidfunk/mkdocs-material/releases) - [Changelog](https://github.com/squidfunk/mkdocs-material/blob/master/CHANGELOG) - [Commits](squidfunk/mkdocs-material@9.6.17...9.7.7) --- updated-dependencies: - dependency-name: mkdocs-material dependency-version: 9.7.7 dependency-type: direct:development ... Signed-off-by: dependabot[bot] <support@github.com>
dfbed01 to
113296f
Compare


Bumps mkdocs-material from 9.6.17 to 9.7.7.
Release notes
Sourced from mkdocs-material's releases.
... (truncated)
Changelog
Sourced from mkdocs-material's changelog.
... (truncated)
Commits
b3e6dd8Prepare 9.7.7 release52fb6beMerge commit from fork901e633AddedSECURITY.mdwith EOL notice5b36f2aBump js-yaml from 4.1.1 to 4.2.0 (#8598)2d11e7bBump form-data from 3.0.4 to 3.0.5 (#8597)ae05a53Bump esbuild from 0.27.2 to 0.28.1 (#8596)434af93Bump shell-quote from 1.7.3 to 1.8.4 (#8593)4447cdaDocumentation (#8590)8f8d551Updated copyright year (#8588)08d8514Bump fast-uri from 3.0.3 to 3.1.2 (#8587)