Skip to content

python: update to GitPython 3.1.47#315

Merged
VJanKraemer merged 2 commits intomainfrom
update_gitpython
Apr 29, 2026
Merged

python: update to GitPython 3.1.47#315
VJanKraemer merged 2 commits intomainfrom
update_gitpython

Conversation

@VJanKraemer
Copy link
Copy Markdown
Contributor

Subject

Description

GitPython 3.1.47 fixes severe security issues outlined in GHSA-rpm5-65cw-6hj4

Instructions for review / testing

Developer checklist (address before review)

  • Changelog.md updated
  • Prepared update for depending repositories
  • Documentation updated (public API changes only)
  • API docstrings updated (public API changes only)
  • Rebase → commit history clean
  • Squash and merge → proper PR title

* adds fixes to GitPython in response to security advisor
  GHSA-rpm5-65cw-6hj4

Signed-off-by: Jan Kraemer <jan.kraemer@vector.com>
Copy link
Copy Markdown
Member

@VDanielEdwards VDanielEdwards left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM 👍

Comment thread Demos/tools/Benchmark/PerformanceTests.py Outdated
Comment thread Demos/tools/Benchmark/PerformanceTests.py Outdated
Comment thread Demos/tools/Benchmark/PerformanceTests.py Outdated
@VJanKraemer VJanKraemer force-pushed the update_gitpython branch 3 times, most recently from 8845f6f to 6998f83 Compare April 28, 2026 13:21
* tomllib is only available starting from Python 3.11.0

Signed-off-by: Jan Kraemer <jan.kraemer@vector.com>
Co-authored-by: Daniel Edwards <daniel.edwards@vector.com>
Copy link
Copy Markdown
Member

@VDanielEdwards VDanielEdwards left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM 👍

@VJanKraemer VJanKraemer merged commit 4d8dca2 into main Apr 29, 2026
15 checks passed
@VJanKraemer VJanKraemer deleted the update_gitpython branch April 29, 2026 07:30
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants