Skip to content

chore(deps): bump pymdown-extensions from 10.21.3 to 11.0.1 in /requirements - #670

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/pip/requirements/pymdown-extensions-11.0
Open

chore(deps): bump pymdown-extensions from 10.21.3 to 11.0.1 in /requirements#670
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/pip/requirements/pymdown-extensions-11.0

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jul 28, 2026

Copy link
Copy Markdown
Contributor

Bumps pymdown-extensions from 10.21.3 to 11.0.1.

Release notes

Sourced from pymdown-extensions's releases.

11.0.1

  • FIX: BetterEm: Fix regex pattern inefficiencies.
  • FIX: Tilde: Fix regex pattern inefficiencies.
  • FIX: Caret: Fix regex pattern inefficiencies.
  • FIX: MagicLink: Fix regex pattern inefficiencies.

11.0

  • BREAK: B64: Restricts relative links to base_path by default. Can be disabled by setting new restrict_path option to False. The new root_path can be specified if paths are desired to be restricted to a different location separate base_path which is also used as a relative base for image paths.
  • NEW: Drop Python 3.9 support.
  • FIX: Tabbed: Fix issue where an empty title would cause an exception.
Commits

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python Pull requests that update Python code labels Jul 28, 2026
@dlrsp-actions
dlrsp-actions Bot force-pushed the dependabot/pip/requirements/pymdown-extensions-11.0 branch from 58b1e19 to 713007c Compare August 9, 2026 12:40
@dlrsp-actions
dlrsp-actions Bot requested a review from dlrsp-dev as a code owner August 9, 2026 12:40
@github-actions

github-actions Bot commented Aug 9, 2026

Copy link
Copy Markdown

Dependency Review

The following issues were found:
  • ❌ 1 vulnerable package(s)
  • ✅ 0 package(s) with incompatible licenses
  • ✅ 0 package(s) with invalid SPDX license definitions
  • ✅ 0 package(s) with unknown licenses.
See the Details below.

Vulnerabilities

requirements/docs.txt

NameVersionVulnerabilitySeverity
pymdown-extensions11.0pymdown-extensions: exponential-backtracking ReDoS in caret, tilde, betterem, and magiclink inline processorshigh
Only included vulnerabilities with severity high or higher.

OpenSSF Scorecard

PackageVersionScoreDetails
pip/pymdown-extensions 11.0 UnknownUnknown

Scanned Files

  • requirements/docs.txt

@codecov

codecov Bot commented Aug 9, 2026

Copy link
Copy Markdown

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 100.00%. Comparing base (86ad7d5) to head (e98adaa).

Additional details and impacted files
@@            Coverage Diff            @@
##              main      #670   +/-   ##
=========================================
  Coverage   100.00%   100.00%           
=========================================
  Files            5         5           
  Lines           65        65           
  Branches         1         1           
=========================================
  Hits            65        65           
Flag Coverage Δ
py310-django42 100.00% <ø> (ø)
py310-django52 100.00% <ø> (ø)
py311-django42 100.00% <ø> (ø)
py311-django52 100.00% <ø> (ø)
py312-django42 100.00% <ø> (ø)
py312-django52 100.00% <ø> (ø)
py313-django52 100.00% <ø> (ø)
py314-django52 100.00% <ø> (ø)

Flags with carried forward coverage won't be shown. Click here to find out more.

☔ View full report in Codecov by Harness.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.

@dlrsp-actions dlrsp-actions Bot added the needs-human-review Policy gate blocked; human review required label Aug 9, 2026
@dlrsp-actions

dlrsp-actions Bot commented Aug 9, 2026

Copy link
Copy Markdown
Contributor

Policy gate blocked this PR: default-fail: matched catch-all policy

@dlrsp-actions
dlrsp-actions Bot force-pushed the dependabot/pip/requirements/pymdown-extensions-11.0 branch from 713007c to aa3f2c6 Compare August 9, 2026 12:46
@dlrsp-actions

dlrsp-actions Bot commented Aug 9, 2026

Copy link
Copy Markdown
Contributor

Policy gate blocked this PR: default-fail: matched catch-all policy

@dlrsp-actions
dlrsp-actions Bot force-pushed the dependabot/pip/requirements/pymdown-extensions-11.0 branch from aa3f2c6 to ec060c4 Compare August 14, 2026 09:33
@dependabot dependabot Bot changed the title chore(deps): bump pymdown-extensions from 10.21.3 to 11.0 in /requirements chore(deps): bump pymdown-extensions from 10.21.3 to 11.0.1 in /requirements Aug 14, 2026
@dependabot
dependabot Bot force-pushed the dependabot/pip/requirements/pymdown-extensions-11.0 branch from ec060c4 to 208948f Compare August 14, 2026 09:39
@dlrsp-actions

dlrsp-actions Bot commented Aug 14, 2026

Copy link
Copy Markdown
Contributor

Policy gate blocked this PR: default-fail: matched catch-all policy

Bumps [pymdown-extensions](https://github.com/facelessuser/pymdown-extensions) from 10.21.3 to 11.0.1.
- [Release notes](https://github.com/facelessuser/pymdown-extensions/releases)
- [Commits](facelessuser/pymdown-extensions@10.21.3...11.0.1)

---
updated-dependencies:
- dependency-name: pymdown-extensions
  dependency-version: '11.0'
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
@dlrsp-actions
dlrsp-actions Bot force-pushed the dependabot/pip/requirements/pymdown-extensions-11.0 branch from 208948f to e98adaa Compare August 14, 2026 10:04
@dlrsp-actions

dlrsp-actions Bot commented Aug 14, 2026

Copy link
Copy Markdown
Contributor

Policy gate blocked this PR: default-fail: matched catch-all policy

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file needs-human-review Policy gate blocked; human review required python Pull requests that update Python code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants