Skip to content

chore(deps): bump the cargo group with 2 updates - #71

Merged
mstuart merged 1 commit into
mainfrom
dependabot/cargo/cargo-1b1a84cb91
Oct 5, 2026
Merged

mstuart merged 1 commit into
mainfrom
dependabot/cargo/cargo-1b1a84cb91

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 5, 2026

Copy link
Copy Markdown
Contributor

Bumps the cargo group with 2 updates: xxhash-rust and pyo3.

Updates xxhash-rust from 0.8.18 to 0.8.19

Commits

Updates pyo3 from 0.29.2 to 0.29.3

Release notes

Sourced from pyo3's releases.

PyO3 0.29.3

This release is a series of fixes worth landing to the PyO3 0.29 series; the PyO3 0.30 release is planned to follow within a few weeks, however during the development cycle a number of rough edges were discovered which were deemed worth a backport.

The patch broadly includes:

  • a further fix the to the opt-out of raw-dylib linking for Windows introduced in PyO3 0.29.1 (the switch to raw-dylib linking was introduced in PyO3 0.29.0),
  • fixes to support GraalPy on windows,
  • a handful of small performance optimizations,
  • a number of non-breaking fixes to the experimental-inspect type stub generation (expect more improvements in 0.30), and
  • various other bugfixes such as to FFI definitions, to resolve crashes, and to fix clippy lints caused by PyO3 macros.

For a full list of the exact fixes please consult the CHANGELOG.

Thank you to the following contributors for the improvements:

@​adamgerhant-ai @​alex @​bschoenmaeckers @​charliermarsh @​chirizxc @​davidhewitt @​dependabot[bot] @​dylanpulver @​exg @​FranciscoTGouveia @​JMak-Security @​jonasdedden @​jorenham @​konstin @​latent-9 @​mejrs @​ngoldbaum @​Person-93 @​PeterFaiman @​sneakers-the-rat

Changelog

Sourced from pyo3's changelog.

[0.29.3] - 2026-09-30

Packaging

  • Support GraalPy on Windows. #6406

Added

  • Add FFI definitions PyModule_GetState_DuringGC, PyModule_GetToken_DuringGC, PyObject_GetTypeData_DuringGC, PyType_GetModuleState_DuringGC, PyType_GetBaseByToken_DuringGC, PyType_GetModule_DuringGC, and PyType_GetModuleByToken_DuringGC for Python 3.15 and up. #6419

Changed

  • Optimize u128/i128 conversions on Python 3.15+. #6160
  • Preallocate output sets when extracting Python set and frozenset values into Rust hash sets. #6225
  • Optimize PyBytes::as_bytes() when not using abi3 or abi3t. #6377

Removed

  • Remove FFI definitions PyExc_RecursionErrorInst and Py_UseClassExceptionsFlag (not present in supported Python versions). #6421

Fixed

  • Revert removal of FFI definition _PyFrameEvalFunction, _PyInterpreterState_GetEvalFrameFunc and _PyInterpreterState_SetEvalFrameFunc, which are not currently treated as CPython private API despite their name. #6195
  • Fix FFI definition PyUnstable_Eval_RequestCodeExtraIndex FFI binding to link to the private CPython symbol on Python versions before 3.12. #6195
  • Fix FFI definitions PyByteArray_GET_SIZE, PyList_GET_SIZE, and PySet_GET_SIZE to use an atomic load for free-threaded Python. #6230
  • experimental-inspect: deduplicate repeated members of a type union in the generated stubs, and put a space on both sides of the | rather than only before it. #6273
  • experimental-inspect: __next__ and __anext__ returning Option<T> (or PyResult<Option<T>>) are now introspected as returning T, since None stops the iteration instead of being yielded. #6274
  • Fix clippy::clone_on_copy warnings triggered on nightly Rust by #[pyclass(from_py_object)] on classes which implement Copy. #6309
  • experimental-inspect: __pow__, __rpow__ and __get__ now introspect their trailing argument as defaulting to None, matching the CPython slot wrappers which substitute None when it is omitted. #6363
  • experimental-inspect: fix the stubs of a package nested inside another package being written into a directory named after its parent instead of its own name. #6365
  • Fix many unresolved symbols when linking for PyPy due to incorrect link names in pyo3-ffi. #6389
  • Fix empty tuple type hints being rendered as invalid tuple[] instead of tuple[()] in generated stubs and PyStaticExpr display. #6393
  • experimental-inspect: escape stub docstrings to prevent invalid Python syntax. #6394
  • experimental-inspect: fix the generated type annotation for PyBuffer on python <3.12 by using typing_extensions.Buffer instead of collections.abc.Buffer. #6395
  • Fix string constants containing control characters rendering as invalid Python in Display for PyStaticExpr. #6397
  • Fix crash when a detached thread is terminated while trying to reattach during interpreter finalization. #6404
  • Fix link failures on 32-bit Windows when raw-dylib linking is disabled. #6410
  • Fix DLL load failures on Windows with PyPy when raw-dylib linking is disabled. #6410
  • Fix FFI definition PyVectorcall_Call failing to link on Python 3.11 and older. #6410
  • Fix many unresolved data symbols when linking for PyPy due to incorrect link names in pyo3-ffi. #6421
  • Fix linker errors on PyPy for outdated FFI definitions where PyPy moved from a function to a macro. #6422
  • Fix crash when GC traverses a #[pyclass] type object during class attribute initialization. #6453
Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the cargo group with 2 updates: [xxhash-rust](https://github.com/DoumanAsh/xxhash-rust) and [pyo3](https://github.com/pyo3/pyo3).


Updates `xxhash-rust` from 0.8.18 to 0.8.19
- [Commits](https://github.com/DoumanAsh/xxhash-rust/commits)

Updates `pyo3` from 0.29.2 to 0.29.3
- [Release notes](https://github.com/pyo3/pyo3/releases)
- [Changelog](https://github.com/PyO3/pyo3/blob/main/CHANGELOG.md)
- [Commits](PyO3/pyo3@v0.29.2...v0.29.3)

---
updated-dependencies:
- dependency-name: xxhash-rust
  dependency-version: 0.8.19
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: cargo
- dependency-name: pyo3
  dependency-version: 0.29.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: cargo
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file rust Pull requests that update rust code labels Oct 5, 2026
@dependabot
dependabot Bot requested a review from mstuart as a code owner October 5, 2026 03:09
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file rust Pull requests that update rust code labels Oct 5, 2026
@mstuart
mstuart merged commit 4a4889b into main Oct 5, 2026
7 checks passed
@mstuart
mstuart deleted the dependabot/cargo/cargo-1b1a84cb91 branch October 5, 2026 17:40
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file rust Pull requests that update rust code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant