Skip to content

chore(deps): bump brotlicffi from 1.2.0.1 to 1.2.0.2 - #340

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/uv/brotlicffi-1.2.0.2
Open

chore(deps): bump brotlicffi from 1.2.0.1 to 1.2.0.2#340
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/uv/brotlicffi-1.2.0.2

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 4, 2026

Copy link
Copy Markdown
Contributor

Bumps brotlicffi from 1.2.0.1 to 1.2.0.2.

Changelog

Sourced from brotlicffi's changelog.

1.2.0.2 (2026-08-21)

  • Fixed a bug where Decompressor.decompress() could leave stale unconsumed input behind after fully consuming a chunk of compressed data, causing subsequent calls to fail or re-process old data.
  • Since cibuildwheel dropped support, this release does not include Python 3.8 wheels.
Commits
  • 99419ff Prepare 1.2.0.2 release
  • 92fd632 Correct date in 1.2.0.1 changelog entry
  • 4f3d7ef Drop Python 3.8 builds
  • 97898e8 Unconditionally consume buffers to avoid stale data
  • See full diff in compare view

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python:uv Pull requests that update python:uv code labels Sep 4, 2026
@dependabot
dependabot Bot requested a review from a team as a code owner September 4, 2026 00:26
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python:uv Pull requests that update python:uv code labels Sep 4, 2026
@socket-security

socket-security Bot commented Sep 4, 2026

Copy link
Copy Markdown

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Updatedpypi/​brotlicffi@​1.2.0.1 ⏵ 1.2.0.2100100100100100

View full report

@socket-security-staging

socket-security-staging Bot commented Sep 4, 2026

Copy link
Copy Markdown

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Updatedpypi/​brotlicffi@​1.2.0.1 ⏵ 1.2.0.2100100100100100

View full report

Bumps [brotlicffi](https://github.com/python-hyper/brotlicffi) from 1.2.0.1 to 1.2.0.2.
- [Changelog](https://github.com/python-hyper/brotlicffi/blob/main/HISTORY.rst)
- [Commits](python-hyper/brotlicffi@v1.2.0.1...v1.2.0.2)

---
updated-dependencies:
- dependency-name: brotlicffi
  dependency-version: 1.2.0.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/uv/brotlicffi-1.2.0.2 branch from 7e794b3 to f5a07b4 Compare September 8, 2026 11:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python:uv Pull requests that update python:uv code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants