build(deps): bump the cargo group across 1 directory with 10 updates - #21
Open
dependabot[bot] wants to merge 1 commit into
Open
build(deps): bump the cargo group across 1 directory with 10 updates#21dependabot[bot] wants to merge 1 commit into
dependabot[bot] wants to merge 1 commit into
Conversation
Bumps the cargo group with 8 updates in the /codex-rs directory: | Package | From | To | | --- | --- | --- | | [gix](https://github.com/GitoxideLabs/gitoxide) | `0.81.0` | `0.83.0` | | [jsonwebtoken](https://github.com/Keats/jsonwebtoken) | `9.3.1` | `10.3.0` | | [opentelemetry_sdk](https://github.com/open-telemetry/opentelemetry-rust) | `0.31.0` | `0.32.1` | | [rmcp](https://github.com/modelcontextprotocol/rust-sdk) | `0.15.0` | `1.4.0` | | [serde_with](https://github.com/jonasbb/serde_with) | `3.17.0` | `3.21.0` | | [tar](https://github.com/composefs/tar-rs) | `0.4.45` | `0.4.46` | | [actix-http](https://github.com/actix/actix-web) | `3.11.2` | `3.13.1` | | [openssl](https://github.com/rust-openssl/rust-openssl) | `0.10.75` | `0.10.81` | Updates `gix` from 0.81.0 to 0.83.0 - [Release notes](https://github.com/GitoxideLabs/gitoxide/releases) - [Changelog](https://github.com/GitoxideLabs/gitoxide/blob/main/CHANGELOG.md) - [Commits](GitoxideLabs/gitoxide@gix-v0.81.0...gix-v0.83.0) Updates `jsonwebtoken` from 9.3.1 to 10.3.0 - [Changelog](https://github.com/Keats/jsonwebtoken/blob/master/CHANGELOG.md) - [Commits](Keats/jsonwebtoken@v9.3.1...v10.3.0) Updates `opentelemetry_sdk` from 0.31.0 to 0.32.1 - [Release notes](https://github.com/open-telemetry/opentelemetry-rust/releases) - [Changelog](https://github.com/open-telemetry/opentelemetry-rust/blob/main/docs/release_0.32.md) - [Commits](open-telemetry/opentelemetry-rust@v0.31.0...opentelemetry-semantic-conventions-0.32.1) Updates `rmcp` from 0.15.0 to 1.4.0 - [Release notes](https://github.com/modelcontextprotocol/rust-sdk/releases) - [Changelog](https://github.com/modelcontextprotocol/rust-sdk/blob/main/release-plz.toml) - [Commits](modelcontextprotocol/rust-sdk@rmcp-v0.15.0...rmcp-v1.4.0) Updates `serde_with` from 3.17.0 to 3.21.0 - [Release notes](https://github.com/jonasbb/serde_with/releases) - [Commits](jonasbb/serde_with@v3.17.0...v3.21.0) Updates `tar` from 0.4.45 to 0.4.46 - [Release notes](https://github.com/composefs/tar-rs/releases) - [Commits](composefs/tar-rs@0.4.45...0.4.46) Updates `actix-http` from 3.11.2 to 3.13.1 - [Release notes](https://github.com/actix/actix-web/releases) - [Changelog](https://github.com/actix/actix-web/blob/main/CHANGES.md) - [Commits](actix/actix-web@http-v3.11.2...http-v3.13.1) Updates `gix-fs` from 0.19.2 to 0.21.2 - [Release notes](https://github.com/GitoxideLabs/gitoxide/releases) - [Changelog](https://github.com/GitoxideLabs/gitoxide/blob/main/CHANGELOG.md) - [Commits](GitoxideLabs/gitoxide@gix-fs-v0.19.2...gix-fs-v0.21.2) Updates `gix-pack` from 0.68.0 to 0.70.0 - [Release notes](https://github.com/GitoxideLabs/gitoxide/releases) - [Changelog](https://github.com/GitoxideLabs/gitoxide/blob/main/CHANGELOG.md) - [Commits](GitoxideLabs/gitoxide@gix-pack-v0.68.0...gix-pack-v0.70.0) Updates `openssl` from 0.10.75 to 0.10.81 - [Release notes](https://github.com/rust-openssl/rust-openssl/releases) - [Commits](rust-openssl/rust-openssl@openssl-v0.10.75...openssl-v0.10.81) --- updated-dependencies: - dependency-name: gix dependency-version: 0.83.0 dependency-type: direct:production dependency-group: cargo - dependency-name: jsonwebtoken dependency-version: 10.3.0 dependency-type: direct:production dependency-group: cargo - dependency-name: opentelemetry_sdk dependency-version: 0.32.1 dependency-type: direct:production dependency-group: cargo - dependency-name: rmcp dependency-version: 1.4.0 dependency-type: direct:production dependency-group: cargo - dependency-name: serde_with dependency-version: 3.21.0 dependency-type: direct:production dependency-group: cargo - dependency-name: tar dependency-version: 0.4.46 dependency-type: direct:production dependency-group: cargo - dependency-name: actix-http dependency-version: 3.13.1 dependency-type: indirect dependency-group: cargo - dependency-name: gix-fs dependency-version: 0.21.2 dependency-type: indirect dependency-group: cargo - dependency-name: gix-pack dependency-version: 0.70.0 dependency-type: indirect dependency-group: cargo - dependency-name: openssl dependency-version: 0.10.81 dependency-type: indirect dependency-group: cargo ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the cargo group with 8 updates in the /codex-rs directory:
0.81.00.83.09.3.110.3.00.31.00.32.10.15.01.4.03.17.03.21.00.4.450.4.463.11.23.13.10.10.750.10.81Updates
gixfrom 0.81.0 to 0.83.0Release notes
Sourced from gix's releases.
... (truncated)
Commits
53f880cRelease gix-error v0.2.3, gix-date v0.15.3, gix-actor v0.41.0, gix-path v0.12...09687ebfix CI - and probably preventcan't connect to localhostin journey testsd5f9bf5feat: addCategory::is_remote_tracking_branch().87b2da8address auto-review731248ffeat!: addsha-256support togix-ref.91bfab0Adapt to changes ingix-objectd4439cdfix!: Limit Commit and Tag parsing to a givengix_hash::Kind5127973fix: Allow more pathological cases during parsing just like Git91c854efix!: removewinnowand replace it with hand-implemented parsers everywhere.b060eb2fix!: removewinnowfrom the publicgix-actorAPI for parsing (#2545)Updates
jsonwebtokenfrom 9.3.1 to 10.3.0Changelog
Sourced from jsonwebtoken's changelog.
Commits
abbc307Fix type confusione99740dfix: bump minimal version requirements (#481)50d15e0Use try_sign to avoid panics (#479)245858fBump some dep122c2edBump action number in CI72e0c7fExpose cryptography backends via CryptoProvider (#452)53a3fc2Do not fail for clippy3226cfcPrepare for releasedfe58f9Remove unnecessary Clone bounds from decode functions (#458)9b3e19cFix function names in README (#457)Updates
opentelemetry_sdkfrom 0.31.0 to 0.32.1Changelog
Sourced from opentelemetry_sdk's changelog.
... (truncated)
Commits
74cb6f3chore: Release opentelemetry-semantic-conventions 0.32.1 (#3562)10dde18chore(sdk): add missing changelog entry (#3550)ec2da12refactor: leverage static str key when possible (#3529)90a39a0feat(api): accept quoted-key fields in otel logging macros (#3567)8c922bcfeat(appender-tracing): add builder support for custom instrumentation scope ...fb2af9dfeat(metrics): add BoundUpDownCounter under experimental_metrics_bound_instru...1b3846cfeat(metrics): add BoundGauge under experimental_metrics_bound_instruments (#...ee359dbfix: remove reqwest-rustls-webpki-roots (#3524)4d4fd4dchore: Bump semantic-conventions to v1.42.0 (#3561)69213f2fix(prometheus-exporter): Concatenate metric attributes with Scope during col...Updates
rmcpfrom 0.15.0 to 1.4.0Release notes
Sourced from rmcp's releases.
... (truncated)
Commits
4628720chore: release v1.4.0 (#779)65d2b29fix(server): remove initialized notification gate to support Streamable HTTP ...a7b5700fix: pass GIT_TOKEN to release-plz CLI (#798)8a8c036chore: update Rust toolchain to 1.92 (#797)34d0bc6fix: upgrade rustc in actions (#796)45a4cc5feat: add Default and constructors to ServerSseMessage (#794)5f43283feat: add meta to elicitation results (#792)be321a4feat(macros): auto-generate get_info and default router (#785)5891b45refactor: unify IntoCallToolResult Result impls (#787)d98248aci: add --locked to release-plz install (#786)Updates
serde_withfrom 3.17.0 to 3.21.0Release notes
Sourced from serde_with's releases.
Commits
0f4ca67Update changelog for 3.21.0 (#967)7654841Update changelog for 3.21.0c8a1d82Protect all collection creations against capacity overflow by using `size_hin...6ad5fa5Properly feature gate thevec_with_capacity_cautiousfunctionef7d141Protect all collection creations against capacity overflow by using `size_hin...a348da3Add serde_as deserialize_as explain (#958)2e5bc20Bump the github-actions group with 3 updates (#965)927a3d6Bump the github-actions group with 3 updates62d14ecEnable link-to-definition on docs.rs again, after the upstream issue was reso...4584d94Enable link-to-definition on docs.rs again, after the upstream issue was reso...Updates
tarfrom 0.4.45 to 0.4.46Release notes
Sourced from tar's releases.
Commits
fc459c1Release 0.4.4643e05a8ci: Add crates.io trusted publishing workflowbba5666Update repo linkscd94c46docs: Document TOCTOU / concurrent-mutation threat model1b4997cbuilder: Expand docs for follow_symlinks and append_dir_allbab14ddarchive: Fix another PAX header desync (GHSA-3cv2-h65g-fgmm)2349b49Add support of absolute paths39d0311Update some links59d803eUpdate astral-tokio-tar requirement from 0.5 to 0.68296b9aci: Fix and re-enable reverse dependency testing (#444)Updates
actix-httpfrom 3.11.2 to 3.13.1Release notes
Sourced from actix-http's releases.
Commits
a945e09fix(http): fix sending responses for upgraded ones on WS (#4117)a928601chore: updatercgento 0.14 (#4113)696b1fechore(web): prepare 4.14.0 release (#4114)6c65c46chore(http): prepare 3.13.0 release (#4112)afd2df2test(multipart,derive): move trybuild tests (#4028)7ded7eebuild(deps): bump memchr from 2.8.1 to 2.8.2 (#4107)55cf2e0build(deps): bump bytesize from 2.3.1 to 2.4.0 (#4104)565b179build(deps): bump smallvec from 1.15.1 to 1.15.2 (#4106)1605dd0build(deps): bump taiki-e/install-action from 2.81.7 to 2.81.10 (#4105)5c79f55build(deps): bump regex from 1.12.3 to 1.12.4 (#4103)Updates
gix-fsfrom 0.19.2 to 0.21.2Changelog
Sourced from gix-fs's changelog.
... (truncated)
Commits
10c58bbRelease gix-error v0.2.4, gix-date v0.15.4, gix-actor v0.41.1, gix-trace v0.1...b6c41cbMontly report for May 2026faecc23Merge pull request #2607 from SarthakB11/fix/issue-18428323858fix: Derive$0forsh -cfrom the shell's basenamed62e33cAdd tests for$0deriving from the actually-running shellf6433acUpdate downstream test assertions for sh $0 change6752a96Pass sh (not --) as $0 to sh -c4377485Merge pull request #2612 from GitoxideLabs/improvements123cdafspawn_git_daemonnow spawns the git daemon on a free port automaticallycad26e9fix: disable automatic Git maintenance in gix-testtools, add `apply_git_confi...Updates
gix-packfrom 0.68.0 to 0.70.0Commits
53f880cRelease gix-error v0.2.3, gix-date v0.15.3, gix-actor v0.41.0, gix-path v0.12...09687ebfix CI - and probably preventcan't connect to localhostin journey testsd5f9bf5feat: addCategory::is_remote_tracking_branch().87b2da8address auto-review731248ffeat!: addsha-256support togix-ref.91bfab0Adapt to changes ingix-objectd4439cdfix!: Limit Commit and Tag parsing to a givengix_hash::Kind5127973fix: Allow more pathological cases during parsing just like Git91c854efix!: removewinnowand replace it with hand-implemented parsers everywhere.b060eb2fix!: removewinnowfrom the publicgix-actorAPI for parsing (#2545)Updates
opensslfrom 0.10.75 to 0.10.81Release notes
Sourced from openssl's releases.
... (truncated)
Commits
db9c9e2Release openssl 0.10.81 and openssl-sys 0.9.117 (#2655)3a7fb56Bump actions/checkout from 6.0.2 to 6.0.3 (#2653)d059c43Fix verify_mode() panic on unmodeled verify mode bits (#2651)8b1519eDeprecate Asn1StringRef::as_utf8 in favor of a NUL-safe to_string (#2652)d5713d6add mldsa.h to the boringssl bindgen (#2650)9fac317Merge pull request #2538 from ocdlroux/feat/crl-full4dae20bx509: adding minimal support for X509CrlBuilder47f7777Add brainpoolP224r1 and brainpoolP224t1 NID constants (#2642)659da17Bump aws-ls-sys to 0.41 (#2640)35be7aeRelease openssl 0.10.80 and openssl-sys 0.9.116 (#2639)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditionsYou can disable automated security fix PRs for this repo from the Security Alerts page.