Skip to content

chore(deps): update uv: bump the uv-version-updates group across 1 directory with 2 updates#13

Merged
arangatang merged 1 commit intomainfrom
dependabot/uv/uv-version-updates-43ed2a5eb5
Sep 29, 2025
Merged

chore(deps): update uv: bump the uv-version-updates group across 1 directory with 2 updates#13
arangatang merged 1 commit intomainfrom
dependabot/uv/uv-version-updates-43ed2a5eb5

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot bot commented on behalf of github Sep 29, 2025

Bumps the uv-version-updates group with 2 updates in the / directory: fastmcp and checkov.

Updates fastmcp from 2.12.3 to 2.12.4

Release notes

Sourced from fastmcp's releases.

v2.12.4: OIDC What You Did There

FastMCP 2.12.4 adds comprehensive OIDC support and expands authentication options with AWS Cognito and Descope providers. The release also includes improvements to logging middleware, URL handling for nested resources, persistent OAuth client registration storage, and various fixes to the experimental OpenAPI parser.

What's Changed

New Features 🎉

Enhancements 🔧

Fixes 🐞

Docs 📚

... (truncated)

Changelog

Sourced from fastmcp's changelog.


title: "Changelog" icon: "list-check" rss: true

v2.12.4: OIDC What You Did There

FastMCP 2.12.4 adds comprehensive OIDC support and expands authentication options with AWS Cognito and Descope providers. The release also includes improvements to logging middleware, URL handling for nested resources, persistent OAuth client registration storage, and various fixes to the experimental OpenAPI parser.

What's Changed

New Features 🎉

Enhancements 🔧

Fixes 🐞

... (truncated)

Commits
  • b96e6eb Use lowercase namespace for fastmcp logger (#1791)
  • d6aa980 Fix typos discovered by codespell (#1922)
  • df9e5ac Fix route count logging in OpenAPI server (#1928)
  • 5486b5a Add AWS Cognito OAuth Provider for Enterprise Authentication (#1873)
  • fccd081 Clean up code for creating the resource url (#1916)
  • 0a8f8bb descope icon (#1912)
  • eb0db4f Fix: get_resource_url nested URL handling (#1914)
  • 104b965 client: add optional context_arguments to completions (#1906)
  • a41600d Fix: Remove JSON schema title metadata while preserving parameters named 'tit...
  • 7770e3a remove lockfile smart_home example (#1892)
  • Additional commits viewable in compare view

Updates checkov from 3.2.471 to 3.2.472

Release notes

Sourced from checkov's releases.

3.2.472

Feature

  • terraform: fix foreach module handling - #7313
Changelog

Sourced from checkov's changelog.

3.2.472 - 2025-09-28

Feature

  • terraform: fix foreach module handling - #7313
Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

…rectory with 2 updates

Bumps the uv-version-updates group with 2 updates in the / directory: [fastmcp](https://github.com/jlowin/fastmcp) and [checkov](https://github.com/bridgecrewio/checkov).


Updates `fastmcp` from 2.12.3 to 2.12.4
- [Release notes](https://github.com/jlowin/fastmcp/releases)
- [Changelog](https://github.com/jlowin/fastmcp/blob/main/docs/changelog.mdx)
- [Commits](PrefectHQ/fastmcp@v2.12.3...v2.12.4)

Updates `checkov` from 3.2.471 to 3.2.472
- [Release notes](https://github.com/bridgecrewio/checkov/releases)
- [Changelog](https://github.com/bridgecrewio/checkov/blob/main/CHANGELOG.md)
- [Commits](bridgecrewio/checkov@3.2.471...3.2.472)

---
updated-dependencies:
- dependency-name: fastmcp
  dependency-version: 2.12.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: uv-version-updates
- dependency-name: checkov
  dependency-version: 3.2.472
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: uv-version-updates
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file python:uv Pull requests that update python:uv code labels Sep 29, 2025
@arangatang arangatang self-assigned this Sep 29, 2025
@arangatang arangatang merged commit d70345a into main Sep 29, 2025
5 checks passed
@dependabot dependabot bot deleted the dependabot/uv/uv-version-updates-43ed2a5eb5 branch September 29, 2025 15:13
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python:uv Pull requests that update python:uv code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant