Skip to content

Conversation

@renovate
Copy link
Contributor

@renovate renovate bot commented Oct 1, 2023

This PR contains the following updates:

Package Change Age Confidence
Flask (changelog) ^2.0.1 -> ^3.0.0 age confidence

Release Notes

pallets/flask (Flask)

v3.1.2

Compare Source

Released 2025-08-19

  • stream_with_context does not fail inside async views. :issue:5774
  • When using follow_redirects in the test client, the final state
    of session is correct. :issue:5786
  • Relax type hint for passing bytes IO to send_file. :issue:5776

v3.1.1

Compare Source

Released 2025-05-13

  • Fix signing key selection order when key rotation is enabled via
    SECRET_KEY_FALLBACKS. :ghsa:4grg-w6v8-c28g
  • Fix type hint for cli_runner.invoke. :issue:5645
  • flask --help loads the app and plugins first to make sure all commands
    are shown. :issue:5673
  • Mark sans-io base class as being able to handle views that return
    AsyncIterable. This is not accurate for Flask, but makes typing easier
    for Quart. :pr:5659

v3.1.0

Compare Source

Released 2024-11-13

  • Drop support for Python 3.8. :pr:5623
  • Update minimum dependency versions to latest feature releases.
    Werkzeug >= 3.1, ItsDangerous >= 2.2, Blinker >= 1.9. :pr:5624,5633
  • Provide a configuration option to control automatic option
    responses. :pr:5496
  • Flask.open_resource/open_instance_resource and
    Blueprint.open_resource take an encoding parameter to use when
    opening in text mode. It defaults to utf-8. :issue:5504
  • Request.max_content_length can be customized per-request instead of only
    through the MAX_CONTENT_LENGTH config. Added
    MAX_FORM_MEMORY_SIZE and MAX_FORM_PARTS config. Added documentation
    about resource limits to the security page. :issue:5625
  • Add support for the Partitioned cookie attribute (CHIPS), with the
    SESSION_COOKIE_PARTITIONED config. :issue:5472
  • -e path takes precedence over default .env and .flaskenv files.
    load_dotenv loads default files in addition to a path unless
    load_defaults=False is passed. :issue:5628
  • Support key rotation with the SECRET_KEY_FALLBACKS config, a list of old
    secret keys that can still be used for unsigning. Extensions will need to
    add support. :issue:5621
  • Fix how setting host_matching=True or subdomain_matching=False
    interacts with SERVER_NAME. Setting SERVER_NAME no longer restricts
    requests to only that domain. :issue:5553
  • Request.trusted_hosts is checked during routing, and can be set through
    the TRUSTED_HOSTS config. :issue:5636

v3.0.3

Compare Source

Released 2024-04-07

  • The default hashlib.sha1 may not be available in FIPS builds. Don't
    access it at import time so the developer has time to change the default.
    :issue:5448
  • Don't initialize the cli attribute in the sansio scaffold, but rather in
    the Flask concrete class. :pr:5270

v3.0.2

Compare Source

Released 2024-02-03

  • Correct type for jinja_loader property. :issue:5388
  • Fix error with --extra-files and --exclude-patterns CLI options.
    :issue:5391

v3.0.1

Compare Source

Released 2024-01-18

  • Correct type for path argument to send_file. :issue:5336
  • Fix a typo in an error message for the flask run --key option. :pr:5344
  • Session data is untagged without relying on the built-in json.loads
    object_hook. This allows other JSON providers that don't implement that.
    :issue:5381
  • Address more type findings when using mypy strict mode. :pr:5383

v3.0.0

Compare Source

Released 2023-09-30

  • Remove previously deprecated code. :pr:5223
  • Deprecate the __version__ attribute. Use feature detection, or
    importlib.metadata.version("flask"), instead. :issue:5230
  • Restructure the code such that the Flask (app) and Blueprint
    classes have Sans-IO bases. :pr:5127
  • Allow self as an argument to url_for. :pr:5264
  • Require Werkzeug >= 3.0.0.

Configuration

📅 Schedule: Branch creation - "before 10pm on Sunday" in timezone America/Chicago, Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate
Copy link
Contributor Author

renovate bot commented Oct 1, 2023

⚠ Artifact update problem

Renovate failed to update an artifact related to this branch. You probably do not want to merge this PR as-is.

♻ Renovate will retry this branch, including artifacts, only when one of the following happens:

  • any of the package files in this branch needs updating, or
  • the branch becomes conflicted, or
  • you click the rebase/retry checkbox if found above, or
  • you rename this PR's title to start with "rebase!" to trigger it manually

The artifact failure details are included below:

File name: poetry.lock
Updating dependencies
Resolving dependencies...


Because no versions of flask-session2 match >1.2.0,<1.3.0 || >1.3.0,<1.3.1 || >1.3.1,<2.0.0
 and flask-session2 (1.2.0) depends on Flask (>=2.2.2,<3.0.0), flask-session2 (>=1.2.0,<1.3.0 || >1.3.0,<1.3.1 || >1.3.1,<2.0.0) requires Flask (>=2.2.2,<3.0.0).
And because flask-session2 (1.3.0) depends on Flask (>=2.2.2,<3.0.0)
 and flask-session2 (1.3.1) depends on Flask (>=2.2.2,<3.0.0), flask-session2 (>=1.2.0,<2.0.0) requires Flask (>=2.2.2,<3.0.0).
So, because atlas-hub depends on both Flask (^3.0.0) and flask-session2 (^1.2.0), version solving failed.

@renovate renovate bot force-pushed the renovate/flask-3.x branch from ed97ede to d0e5835 Compare October 1, 2023 10:25
@renovate renovate bot force-pushed the renovate/flask-3.x branch 3 times, most recently from 40e1bc4 to fffda81 Compare October 9, 2023 04:18
@renovate renovate bot force-pushed the renovate/flask-3.x branch 3 times, most recently from 198018e to 66af876 Compare October 22, 2023 09:33
@renovate renovate bot force-pushed the renovate/flask-3.x branch 4 times, most recently from 9e073cf to 59b792c Compare October 29, 2023 22:22
@renovate renovate bot force-pushed the renovate/flask-3.x branch 3 times, most recently from 9ee088f to e8c75cc Compare November 12, 2023 09:13
@renovate renovate bot force-pushed the renovate/flask-3.x branch 2 times, most recently from 00400b2 to 85a6606 Compare November 13, 2023 00:10
@renovate renovate bot force-pushed the renovate/flask-3.x branch 4 times, most recently from 59395cb to 1a51f5f Compare November 26, 2023 13:34
@renovate renovate bot force-pushed the renovate/flask-3.x branch 2 times, most recently from 0274929 to 93748b1 Compare December 4, 2023 00:52
@renovate renovate bot force-pushed the renovate/flask-3.x branch 5 times, most recently from 5f7c2b9 to db259e7 Compare December 11, 2023 15:00
@renovate renovate bot force-pushed the renovate/flask-3.x branch 5 times, most recently from b35759c to 62ee66c Compare December 17, 2023 15:26
@renovate renovate bot force-pushed the renovate/flask-3.x branch 4 times, most recently from 436f0af to f12a9b1 Compare December 24, 2023 13:47
@renovate renovate bot force-pushed the renovate/flask-3.x branch 6 times, most recently from 2e704a6 to f37e9e4 Compare January 7, 2024 10:04
@renovate renovate bot force-pushed the renovate/flask-3.x branch from f37e9e4 to b6cfb94 Compare January 14, 2024 09:43
@renovate renovate bot force-pushed the renovate/flask-3.x branch 3 times, most recently from 1285238 to 166b5aa Compare January 21, 2024 15:16
@renovate renovate bot force-pushed the renovate/flask-3.x branch 2 times, most recently from e8c75f0 to 17a1f7f Compare January 28, 2024 22:05
@renovate renovate bot force-pushed the renovate/flask-3.x branch from 17a1f7f to 17915be Compare February 11, 2024 09:34
@renovate
Copy link
Contributor Author

renovate bot commented Aug 6, 2024

⚠️ Artifact update problem

Renovate failed to update an artifact related to this branch. You probably do not want to merge this PR as-is.

♻ Renovate will retry this branch, including artifacts, only when one of the following happens:

  • any of the package files in this branch needs updating, or
  • the branch becomes conflicted, or
  • you click the rebase/retry checkbox if found above, or
  • you rename this PR's title to start with "rebase!" to trigger it manually

The artifact failure details are included below:

File name: poetry.lock
Updating dependencies
Resolving dependencies...


Because no versions of flask-session2 match >1.2.0,<1.3.0 || >1.3.0,<1.3.1 || >1.3.1,<2.0.0
 and flask-session2 (1.2.0) depends on Flask (>=2.2.2,<3.0.0), flask-session2 (>=1.2.0,<1.3.0 || >1.3.0,<1.3.1 || >1.3.1,<2.0.0) requires Flask (>=2.2.2,<3.0.0).
And because flask-session2 (1.3.0) depends on Flask (>=2.2.2,<3.0.0)
 and flask-session2 (1.3.1) depends on Flask (>=2.2.2,<3.0.0), flask-session2 (>=1.2.0,<2.0.0) requires Flask (>=2.2.2,<3.0.0).
So, because atlas-hub depends on both Flask (^3.0.0) and flask-session2 (^1.2.0), version solving failed.

@renovate renovate bot force-pushed the renovate/flask-3.x branch from 17915be to 48a7cd0 Compare August 6, 2024 12:30
@renovate renovate bot force-pushed the renovate/flask-3.x branch from 48a7cd0 to 93fa30a Compare September 26, 2024 19:47
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant