Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

main #244

Closed
wants to merge 2,796 commits into from
Closed

main #244

wants to merge 2,796 commits into from

Conversation

tedjpoole
Copy link
Contributor

No description provided.

dependabot bot and others added 30 commits July 15, 2024 14:28
…xamples/single-page-app/ui (#35183)

Bumps
[eslint-plugin-react](https://github.com/jsx-eslint/eslint-plugin-react)
from 7.34.2 to 7.34.4.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/jsx-eslint/eslint-plugin-react/releases">eslint-plugin-react's
releases</a>.</em></p>
<blockquote>
<h2>v7.34.4</h2>
<h3>Fixed</h3>
<ul>
<li>[<code>prop-types</code>]: fix <code>className</code> missing in
prop validation false negative (<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/3749">#3749</a>
<a href="https://github.com/akulsr0"><code>@​akulsr0</code></a>)</li>
<li>[<code>sort-prop-types</code>]: Check for undefined before accessing
<code>node.typeAnnotation.typeAnnotation</code> (<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/3779">#3779</a>
<a
href="https://github.com/tylerlaprade"><code>@​tylerlaprade</code></a>)</li>
</ul>
<p><a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1000">#1000</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/1000">jsx-eslint/eslint-plugin-react#1000</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1002">#1002</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1002">jsx-eslint/eslint-plugin-react#1002</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1005">#1005</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/1005">jsx-eslint/eslint-plugin-react#1005</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/100">#100</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/100">jsx-eslint/eslint-plugin-react#100</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1010">#1010</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/1010">jsx-eslint/eslint-plugin-react#1010</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1013">#1013</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/1013">jsx-eslint/eslint-plugin-react#1013</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1022">#1022</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1022">jsx-eslint/eslint-plugin-react#1022</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1029">#1029</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1029">jsx-eslint/eslint-plugin-react#1029</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/102">#102</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/102">jsx-eslint/eslint-plugin-react#102</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1034">#1034</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1034">jsx-eslint/eslint-plugin-react#1034</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1038">#1038</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/1038">jsx-eslint/eslint-plugin-react#1038</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1041">#1041</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/1041">jsx-eslint/eslint-plugin-react#1041</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1043">#1043</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1043">jsx-eslint/eslint-plugin-react#1043</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1046">#1046</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1046">jsx-eslint/eslint-plugin-react#1046</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1047">#1047</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1047">jsx-eslint/eslint-plugin-react#1047</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1050">#1050</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/1050">jsx-eslint/eslint-plugin-react#1050</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1053">#1053</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1053">jsx-eslint/eslint-plugin-react#1053</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1057">#1057</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1057">jsx-eslint/eslint-plugin-react#1057</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/105">#105</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/105">jsx-eslint/eslint-plugin-react#105</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1061">#1061</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1061">jsx-eslint/eslint-plugin-react#1061</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1062">#1062</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/1062">jsx-eslint/eslint-plugin-react#1062</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1070">#1070</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/1070">jsx-eslint/eslint-plugin-react#1070</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1071">#1071</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/1071">jsx-eslint/eslint-plugin-react#1071</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1073">#1073</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1073">jsx-eslint/eslint-plugin-react#1073</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1076">#1076</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1076">jsx-eslint/eslint-plugin-react#1076</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1079">#1079</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1079">jsx-eslint/eslint-plugin-react#1079</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1088">#1088</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1088">jsx-eslint/eslint-plugin-react#1088</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1098">#1098</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/1098">jsx-eslint/eslint-plugin-react#1098</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1101">#1101</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1101">jsx-eslint/eslint-plugin-react#1101</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1103">#1103</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/1103">jsx-eslint/eslint-plugin-react#1103</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/110">#110</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/110">jsx-eslint/eslint-plugin-react#110</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1116">#1116</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1116">jsx-eslint/eslint-plugin-react#1116</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1117">#1117</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1117">jsx-eslint/eslint-plugin-react#1117</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1119">#1119</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/1119">jsx-eslint/eslint-plugin-react#1119</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1121">#1121</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/1121">jsx-eslint/eslint-plugin-react#1121</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1122">#1122</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/1122">jsx-eslint/eslint-plugin-react#1122</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1123">#1123</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1123">jsx-eslint/eslint-plugin-react#1123</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1130">#1130</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/1130">jsx-eslint/eslint-plugin-react#1130</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1131">#1131</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/1131">jsx-eslint/eslint-plugin-react#1131</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1132">#1132</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/1132">jsx-eslint/eslint-plugin-react#1132</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1134">#1134</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/1134">jsx-eslint/eslint-plugin-react#1134</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1135">#1135</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1135">jsx-eslint/eslint-plugin-react#1135</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1139">#1139</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/1139">jsx-eslint/eslint-plugin-react#1139</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/1148">#1148</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/1148">jsx-eslint/eslint-plugin-react#1148</a></p>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/jsx-eslint/eslint-plugin-react/blob/master/CHANGELOG.md">eslint-plugin-react's
changelog</a>.</em></p>
<blockquote>
<h2><a
href="https://github.com/jsx-eslint/eslint-plugin-react/compare/v7.34.3...v7.34.4">7.34.4</a>
- 2024.07.13</h2>
<h3>Fixed</h3>
<ul>
<li>[<code>prop-types</code>]: fix <code>className</code> missing in
prop validation false negative (<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/3749">#3749</a>[]
<a href="https://github.com/akulsr0"><code>@​akulsr0</code></a>)</li>
<li>[<code>sort-prop-types</code>]: Check for undefined before accessing
<code>node.typeAnnotation.typeAnnotation</code> (<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/3779">#3779</a>[]
<a
href="https://github.com/tylerlaprade"><code>@​tylerlaprade</code></a>)</li>
</ul>
<p><a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/3779">#3779</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/3779">jsx-eslint/eslint-plugin-react#3779</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/3749">#3749</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/3749">jsx-eslint/eslint-plugin-react#3749</a></p>
<h2><a
href="https://github.com/jsx-eslint/eslint-plugin-react/compare/v7.34.2...v7.34.3">7.34.3</a>
- 2024.06.18</h2>
<h3>Fixed</h3>
<ul>
<li>[<code>prop-types</code>]: null-check rootNode before calling
getScope (<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/3762">#3762</a>[]
<a href="https://github.com/crnhrv"><code>@​crnhrv</code></a>)</li>
<li>[<code>boolean-prop-naming</code>]: avoid a crash with a spread prop
(<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/3733">#3733</a>[]
<a href="https://github.com/ljharb"><code>@​ljharb</code></a>)</li>
<li>[<code>jsx-boolean-value</code>]:
<code>assumeUndefinedIsFalse</code> with <code>never</code> must not
allow explicit <code>true</code> value (<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/3757">#3757</a>[]
<a href="https://github.com/6uliver"><code>@​6uliver</code></a>)</li>
<li>[<code>no-object-type-as-default-prop</code>]: enable rule for
components with many parameters (<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/3768">#3768</a>[]
<a href="https://github.com/JulienR1"><code>@​JulienR1</code></a>)</li>
<li>[<code>jsx-key</code>]: incorrect behavior for
checkKeyMustBeforeSpread with map callbacks (<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/3769">#3769</a>[]
<a href="https://github.com/akulsr0"><code>@​akulsr0</code></a>)</li>
</ul>
<p><a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/3769">#3769</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/3769">jsx-eslint/eslint-plugin-react#3769</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/3768">#3768</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/3768">jsx-eslint/eslint-plugin-react#3768</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/3762">#3762</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/3762">jsx-eslint/eslint-plugin-react#3762</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/3757">#3757</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/pull/3757">jsx-eslint/eslint-plugin-react#3757</a>
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/3733">#3733</a>:
<a
href="https://redirect.github.com/jsx-eslint/eslint-plugin-react/issues/3733">jsx-eslint/eslint-plugin-react#3733</a></p>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/jsx-eslint/eslint-plugin-react/commit/7a7b7563670a87f7a034d137cf296dec3b8efe15"><code>7a7b756</code></a>
Update CHANGELOG and bump version</li>
<li><a
href="https://github.com/jsx-eslint/eslint-plugin-react/commit/67d73aa0b7eed389ce5e9b6ce2ce38660c2676ae"><code>67d73aa</code></a>
[Fix] <code>sort-prop-types</code>: Check for undefined before accessing
`node.typeAnnot...</li>
<li><a
href="https://github.com/jsx-eslint/eslint-plugin-react/commit/51d342ba350ae7d7dabce1caa648e71926ef283f"><code>51d342b</code></a>
[patch] make TS happy</li>
<li><a
href="https://github.com/jsx-eslint/eslint-plugin-react/commit/f1ae6edc4092f58ee8ba46c6cefc19fa316fbffb"><code>f1ae6ed</code></a>
[Refactor] <code>sort-comp</code>: use Object.entries instead of
for-in</li>
<li><a
href="https://github.com/jsx-eslint/eslint-plugin-react/commit/bcb987a67b36d160ad0daa1dcc9ef384b4d5a73c"><code>bcb987a</code></a>
[Refactor] use <code>hasown</code> instead of the larger
<code>object.hasown</code></li>
<li><a
href="https://github.com/jsx-eslint/eslint-plugin-react/commit/eda77f32be2bb495ad7bc473da99323d025c91ec"><code>eda77f3</code></a>
[Refactor] avoid making a holey array</li>
<li><a
href="https://github.com/jsx-eslint/eslint-plugin-react/commit/3c1d5203438965b3999911520a930306f6e9c58f"><code>3c1d520</code></a>
[Dev Deps] downgrade <code>eslint-remote-tester-repositories</code></li>
<li><a
href="https://github.com/jsx-eslint/eslint-plugin-react/commit/b7474504fe5b9101dd7f607d9bc71aa2e61dfb37"><code>b747450</code></a>
[Fix] <code>prop-types</code>: fix <code>className</code> missing in
prop validation false negative</li>
<li><a
href="https://github.com/jsx-eslint/eslint-plugin-react/commit/cef8123ff92460ed2369d670e8c7b9539e5994bd"><code>cef8123</code></a>
Update CHANGELOG and bump version</li>
<li><a
href="https://github.com/jsx-eslint/eslint-plugin-react/commit/eb56061c95d3e5e234d2f33def724c17aedc752e"><code>eb56061</code></a>
[Deps] update <code>array.prototype.tosorted</code></li>
<li>Additional commits viewable in <a
href="https://github.com/jsx-eslint/eslint-plugin-react/compare/v7.34.2...v7.34.4">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=eslint-plugin-react&package-manager=npm_and_yarn&previous-version=7.34.2&new-version=7.34.4)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…age-app/ui (#35045)

Bumps [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite)
from 5.2.13 to 5.3.3.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/vitejs/vite/releases">vite's
releases</a>.</em></p>
<blockquote>
<h2>create-vite@5.3.0</h2>
<p>Please refer to <a
href="https://github.com/vitejs/vite/blob/create-vite@5.3.0/packages/create-vite/CHANGELOG.md">CHANGELOG.md</a>
for details.</p>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/vitejs/vite/blob/main/packages/vite/CHANGELOG.md">vite's
changelog</a>.</em></p>
<blockquote>
<h2><!-- raw HTML omitted -->5.3.3 (2024-07-03)<!-- raw HTML omitted
--></h2>
<ul>
<li>fix: lazily evaluate __vite__mapDeps files (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17602">#17602</a>)
(<a href="https://github.com/vitejs/vite/commit/dafff4a">dafff4a</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/17602">#17602</a></li>
<li>fix(deps): update all non-major dependencies (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17590">#17590</a>)
(<a href="https://github.com/vitejs/vite/commit/012490c">012490c</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/17590">#17590</a></li>
<li>fix(lib): remove pure CSS dynamic import (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17601">#17601</a>)
(<a href="https://github.com/vitejs/vite/commit/055f1c1">055f1c1</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/17601">#17601</a></li>
<li>fix(proxy): replace changeOrigin changes in 5.3.0 with new
rewriteWsOrigin option (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17563">#17563</a>)
(<a href="https://github.com/vitejs/vite/commit/14c3d49">14c3d49</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/17563">#17563</a></li>
</ul>
<h2><!-- raw HTML omitted -->5.3.2 (2024-06-27)<!-- raw HTML omitted
--></h2>
<ul>
<li>fix(client): uniform variable <code>location</code> (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17528">#17528</a>)
(<a href="https://github.com/vitejs/vite/commit/a8e2f6f">a8e2f6f</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/17528">#17528</a></li>
<li>fix(deps): update all non-major dependencies (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17494">#17494</a>)
(<a href="https://github.com/vitejs/vite/commit/bf123f2">bf123f2</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/17494">#17494</a></li>
<li>fix(typescript): correctly expand ${configDir} in tsconfig.json (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17576">#17576</a>)
(<a href="https://github.com/vitejs/vite/commit/24c799b">24c799b</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/17576">#17576</a></li>
<li>chore: fix some comments (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17495">#17495</a>)
(<a href="https://github.com/vitejs/vite/commit/ec16a5e">ec16a5e</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/17495">#17495</a></li>
<li>chore(deps): update all non-major dependencies (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17553">#17553</a>)
(<a href="https://github.com/vitejs/vite/commit/a33a97f">a33a97f</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/17553">#17553</a></li>
<li>chore(deps): update dependency eslint to v9 (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/16661">#16661</a>)
(<a href="https://github.com/vitejs/vite/commit/6c10662">6c10662</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/16661">#16661</a></li>
<li>chore(deps): update es-module-lexer to 1.5.4 (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17555">#17555</a>)
(<a href="https://github.com/vitejs/vite/commit/2d6672f">2d6672f</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/17555">#17555</a></li>
<li>refactor(optimizer): use early continues (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17551">#17551</a>)
(<a href="https://github.com/vitejs/vite/commit/7c06ef0">7c06ef0</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/17551">#17551</a></li>
</ul>
<h2><!-- raw HTML omitted -->5.3.1 (2024-06-14)<!-- raw HTML omitted
--></h2>
<ul>
<li>fix(build): handle preload treeshaking for braces (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17479">#17479</a>)
(<a href="https://github.com/vitejs/vite/commit/d355568">d355568</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/17479">#17479</a></li>
<li>fix(build): handle preload treeshaking for commas (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17472">#17472</a>)
(<a href="https://github.com/vitejs/vite/commit/3e27071">3e27071</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/17472">#17472</a></li>
<li>fix(build): preload treeshaking ignore equal (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17480">#17480</a>)
(<a href="https://github.com/vitejs/vite/commit/6ced135">6ced135</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/17480">#17480</a></li>
<li>chore: consolidate changelog for 5.3 (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17476">#17476</a>)
(<a href="https://github.com/vitejs/vite/commit/1f09344">1f09344</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/17476">#17476</a></li>
</ul>
<h2>5.3.0 (2024-06-13)</h2>
<h3>Features</h3>
<ul>
<li>feat: asset type add bmp (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17439">#17439</a>)
(<a href="https://github.com/vitejs/vite/commit/ec287f8">ec287f8</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/17439">#17439</a></li>
<li>feat(typescript): update tsconfck to add support for
<code>${configDir}</code> replacement in ts 5.5 (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17350">#17350</a>)
(<a href="https://github.com/vitejs/vite/commit/4835e2b">4835e2b</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/17350">#17350</a></li>
<li>refactor(build): remove quotes from preload marker (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/16562">#16562</a>)
(<a href="https://github.com/vitejs/vite/commit/9853190">9853190</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/16562">#16562</a></li>
<li>feat: add 'system' library format (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/11256">#11256</a>)
(<a href="https://github.com/vitejs/vite/commit/4102ca9">4102ca9</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/11256">#11256</a></li>
<li>feat: add an option to not start a websocket server (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/16219">#16219</a>)
(<a href="https://github.com/vitejs/vite/commit/14b5ced">14b5ced</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/16219">#16219</a></li>
<li>feat: add headTagInsertCheck warning (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/16555">#16555</a>)
(<a href="https://github.com/vitejs/vite/commit/9f02a9f">9f02a9f</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/16555">#16555</a></li>
<li>feat(asset): support <code>/*@vite-ignore*/</code> for <code>new
URL(, import.meta.url)</code> (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/16590">#16590</a>)
(<a href="https://github.com/vitejs/vite/commit/8880bc5">8880bc5</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/16590">#16590</a></li>
<li>chore(deps): update esbuild (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17290">#17290</a>)
(<a href="https://github.com/vitejs/vite/commit/5f13bf8">5f13bf8</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/17290">#17290</a></li>
</ul>
<h3>Performance</h3>
<ul>
<li>refactor: plugin container (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17288">#17288</a>)
(<a href="https://github.com/vitejs/vite/commit/4aa4a80">4aa4a80</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/17288">#17288</a></li>
<li>refactor: remove acorn (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/16238">#16238</a>)
(<a href="https://github.com/vitejs/vite/commit/454e2d1">454e2d1</a>),
closes <a
href="https://redirect.github.com/vitejs/vite/issues/16238">#16238</a></li>
</ul>
<h3>Fixes</h3>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/vitejs/vite/commit/22b299429599834bf1855b53264a28ae5ff8f888"><code>22b2994</code></a>
release: v5.3.3</li>
<li><a
href="https://github.com/vitejs/vite/commit/012490ca8682e2b560737cb54dbb465ab4f36471"><code>012490c</code></a>
fix(deps): update all non-major dependencies (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17590">#17590</a>)</li>
<li><a
href="https://github.com/vitejs/vite/commit/14c3d49303e4db459728c43b2d3a7c2aff8cd383"><code>14c3d49</code></a>
fix(proxy): replace changeOrigin changes in 5.3.0 with new
rewriteWsOrigin op...</li>
<li><a
href="https://github.com/vitejs/vite/commit/055f1c16e55b527543e7af0e65e820b245b12d2e"><code>055f1c1</code></a>
fix(lib): remove pure CSS dynamic import (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17601">#17601</a>)</li>
<li><a
href="https://github.com/vitejs/vite/commit/dafff4ae6eabf22b7f08a582f3663eb8a08bfc32"><code>dafff4a</code></a>
fix: lazily evaluate __vite__mapDeps files (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17602">#17602</a>)</li>
<li><a
href="https://github.com/vitejs/vite/commit/3af02bde7e7f26889d5c0eb300219c43ed1293ad"><code>3af02bd</code></a>
release: v5.3.2</li>
<li><a
href="https://github.com/vitejs/vite/commit/24c799b121c4d72cc08a52a46f82a831b64b1e6f"><code>24c799b</code></a>
fix(typescript): correctly expand ${configDir} in tsconfig.json (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17576">#17576</a>)</li>
<li><a
href="https://github.com/vitejs/vite/commit/a33a97f8c32bdeadcad5a9e0de50612ac985d3d0"><code>a33a97f</code></a>
chore(deps): update all non-major dependencies (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17553">#17553</a>)</li>
<li><a
href="https://github.com/vitejs/vite/commit/2d6672fd8a8da58b61d502418064ac2e3080a26e"><code>2d6672f</code></a>
chore(deps): update es-module-lexer to 1.5.4 (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17555">#17555</a>)</li>
<li><a
href="https://github.com/vitejs/vite/commit/7c06ef07f835308b1ff2de3df02d201a8dbfb3b6"><code>7c06ef0</code></a>
refactor(optimizer): use early continues (<a
href="https://github.com/vitejs/vite/tree/HEAD/packages/vite/issues/17551">#17551</a>)</li>
<li>Additional commits viewable in <a
href="https://github.com/vitejs/vite/commits/v5.3.3/packages/vite">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=vite&package-manager=npm_and_yarn&previous-version=5.2.13&new-version=5.3.3)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…s (#35057)

Bumps redis from `01afb31` to `fb534a3`.


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=redis&package-manager=docker&previous-version=01afb31d6d633451d84475ff3eb95f8c48bf0ee59ec9c948b161adb4da882053&new-version=fb534a36ac2034a6374933467d971fbcbfa5d213805507f560d564851a720355)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…ywalking (#35166)

Bumps elasticsearch from 8.14.0 to 8.14.3.


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=elasticsearch&package-manager=docker&previous-version=8.14.0&new-version=8.14.3)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…ivity grid (#35176)

Commit Message: make ConnectivityGrid to retain TCP pool failure reason
enum and transport failure reason string if there is any H3 pool still
connecting. This is unexpected case, though we observed it in
production. The retained TCP failure details will be appended to the
transport_failure_reason which gets propagated via onPoolFailure()
callback and reported in stream intel in E-M to assist debugging.

Risk Level: low, logging only
Testing: new unit tests
Docs Changes: N/A
Release Notes: N/A
Platform Specific Features: N/A

Signed-off-by: Dan Zhang <danzh@google.com>
Co-authored-by: Dan Zhang <danzh@google.com>
…examples/shared/golang (#35058)

Bumps golang from 1.22.4-bookworm to 1.22.5-bookworm.


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=golang&package-manager=docker&previous-version=1.22.4-bookworm&new-version=1.22.5-bookworm)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps [github/codeql-action](https://github.com/github/codeql-action)
from 3.25.8 to 3.25.12.
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/github/codeql-action/blob/main/CHANGELOG.md">github/codeql-action's
changelog</a>.</em></p>
<blockquote>
<h1>CodeQL Action Changelog</h1>
<p>See the <a
href="https://github.com/github/codeql-action/releases">releases
page</a> for the relevant changes to the CodeQL CLI and language
packs.</p>
<p>Note that the only difference between <code>v2</code> and
<code>v3</code> of the CodeQL Action is the node version they support,
with <code>v3</code> running on node 20 while we continue to release
<code>v2</code> to support running on node 16. For example
<code>3.22.11</code> was the first <code>v3</code> release and is
functionally identical to <code>2.22.11</code>. This approach ensures an
easy way to track exactly which features are included in different
versions, indicated by the minor and patch version numbers.</p>
<h2>[UNRELEASED]</h2>
<ul>
<li>Add <code>codeql-version</code> to outputs. <a
href="https://redirect.github.com/github/codeql-action/pull/2368">#2368</a></li>
</ul>
<h2>3.25.12 - 12 Jul 2024</h2>
<ul>
<li>Improve the reliability and performance of analyzing code when
analyzing a compiled language with the <code>autobuild</code> <a
href="https://docs.github.com/en/code-security/code-scanning/creating-an-advanced-setup-for-code-scanning/codeql-code-scanning-for-compiled-languages#codeql-build-modes">build
mode</a> on GitHub Enterprise Server. This feature is already available
to GitHub.com users. <a
href="https://redirect.github.com/github/codeql-action/pull/2353">#2353</a></li>
<li>Update default CodeQL bundle version to 2.18.0. <a
href="https://redirect.github.com/github/codeql-action/pull/2364">#2364</a></li>
</ul>
<h2>3.25.11 - 28 Jun 2024</h2>
<ul>
<li>Avoid failing the workflow run if there is an error while uploading
debug artifacts. <a
href="https://redirect.github.com/github/codeql-action/pull/2349">#2349</a></li>
<li>Update default CodeQL bundle version to 2.17.6. <a
href="https://redirect.github.com/github/codeql-action/pull/2352">#2352</a></li>
</ul>
<h2>3.25.10 - 13 Jun 2024</h2>
<ul>
<li>Update default CodeQL bundle version to 2.17.5. <a
href="https://redirect.github.com/github/codeql-action/pull/2327">#2327</a></li>
</ul>
<h2>3.25.9 - 12 Jun 2024</h2>
<ul>
<li>Avoid failing database creation if the database folder already
exists and contains some unexpected files. Requires CodeQL 2.18.0 or
higher. <a
href="https://redirect.github.com/github/codeql-action/pull/2330">#2330</a></li>
<li>The init Action will attempt to clean up the database cluster
directory before creating a new database and at the end of the job. This
will help to avoid issues where the database cluster directory is left
in an inconsistent state. <a
href="https://redirect.github.com/github/codeql-action/pull/2332">#2332</a></li>
</ul>
<h2>3.25.8 - 04 Jun 2024</h2>
<ul>
<li>Update default CodeQL bundle version to 2.17.4. <a
href="https://redirect.github.com/github/codeql-action/pull/2321">#2321</a></li>
</ul>
<h2>3.25.7 - 31 May 2024</h2>
<ul>
<li>We are rolling out a feature in May/June 2024 that will reduce the
Actions cache usage of the Action by keeping only the newest TRAP cache
for each language. <a
href="https://redirect.github.com/github/codeql-action/pull/2306">#2306</a></li>
</ul>
<h2>3.25.6 - 20 May 2024</h2>
<ul>
<li>Update default CodeQL bundle version to 2.17.3. <a
href="https://redirect.github.com/github/codeql-action/pull/2295">#2295</a></li>
</ul>
<h2>3.25.5 - 13 May 2024</h2>
<ul>
<li>Add a compatibility matrix of supported CodeQL Action, CodeQL CLI,
and GitHub Enterprise Server versions to the <a
href="https://github.com/github/codeql-action/blob/main/README.md">https://github.com/github/codeql-action/blob/main/README.md</a>.
<a
href="https://redirect.github.com/github/codeql-action/pull/2273">#2273</a></li>
<li>Avoid printing out a warning for a missing <code>on.push</code>
trigger when the CodeQL Action is triggered via a
<code>workflow_call</code> event. <a
href="https://redirect.github.com/github/codeql-action/pull/2274">#2274</a></li>
<li>The <code>tools: latest</code> input to the <code>init</code> Action
has been renamed to <code>tools: linked</code>. This option specifies
that the Action should use the tools shipped at the same time as the
Action. The old name will continue to work for backwards compatibility,
but we recommend that new workflows use the new name. <a
href="https://redirect.github.com/github/codeql-action/pull/2281">#2281</a></li>
</ul>
<h2>3.25.4 - 08 May 2024</h2>
<ul>
<li>Update default CodeQL bundle version to 2.17.2. <a
href="https://redirect.github.com/github/codeql-action/pull/2270">#2270</a></li>
</ul>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/github/codeql-action/commit/4fa2a7953630fd2f3fb380f21be14ede0169dd4f"><code>4fa2a79</code></a>
Merge pull request <a
href="https://redirect.github.com/github/codeql-action/issues/2369">#2369</a>
from github/update-v3.25.12-947b18fb7</li>
<li><a
href="https://github.com/github/codeql-action/commit/dec6fb713c18d10611178d0d693c19aea88c8e8d"><code>dec6fb7</code></a>
Update changelog for v3.25.12</li>
<li><a
href="https://github.com/github/codeql-action/commit/947b18fb721ec7b717188ea2d1b77547494b5d71"><code>947b18f</code></a>
Merge pull request <a
href="https://redirect.github.com/github/codeql-action/issues/2365">#2365</a>
from github/dependabot/npm_and_yarn/npm-88aac57241</li>
<li><a
href="https://github.com/github/codeql-action/commit/9ab727712f519b1609826257798e28ecf183223c"><code>9ab7277</code></a>
Merge pull request <a
href="https://redirect.github.com/github/codeql-action/issues/2364">#2364</a>
from github/update-bundle/codeql-bundle-v2.18.0</li>
<li><a
href="https://github.com/github/codeql-action/commit/1c60bf167bf7381660d6beef09ff28ef424ddebf"><code>1c60bf1</code></a>
Merge branch 'main' into update-bundle/codeql-bundle-v2.18.0</li>
<li><a
href="https://github.com/github/codeql-action/commit/be825d5eefdb0c498fa30c4b57ec0690b4d0cecb"><code>be825d5</code></a>
Merge pull request <a
href="https://redirect.github.com/github/codeql-action/issues/2353">#2353</a>
from github/henrymercer/enable-direct-tracing</li>
<li><a
href="https://github.com/github/codeql-action/commit/243e392ed031ba4a260a4f4dcfb2ea12c4f59c23"><code>243e392</code></a>
Fix PR number in changelog</li>
<li><a
href="https://github.com/github/codeql-action/commit/026682fb73007dbff555c8b972d7fe41df8f9d3b"><code>026682f</code></a>
Fix bad auto merge in changelog</li>
<li><a
href="https://github.com/github/codeql-action/commit/264cbe20c6f634b661bed76ea0993bb895d7e9c7"><code>264cbe2</code></a>
Merge branch 'main' into henrymercer/enable-direct-tracing</li>
<li><a
href="https://github.com/github/codeql-action/commit/0b65015a1d8925dd6936217bc72af1d7175d9e56"><code>0b65015</code></a>
Update checked-in dependencies</li>
<li>Additional commits viewable in <a
href="https://github.com/github/codeql-action/compare/2e230e8fe0ad3a14a340ad0815ddb96d599d2aff...4fa2a7953630fd2f3fb380f21be14ede0169dd4f">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=github/codeql-action&package-manager=github_actions&previous-version=3.25.8&new-version=3.25.12)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…4822)

Bumps [setuptools](https://github.com/pypa/setuptools) from 70.0.0 to
70.1.0.
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/pypa/setuptools/blob/main/NEWS.rst">setuptools's
changelog</a>.</em></p>
<blockquote>
<h1>v70.1.0</h1>
<h2>Features</h2>
<ul>
<li>
<p>Adopted the <code>bdist_wheel</code> command from the
<code>wheel</code> project -- by :user:<code>agronholm</code> (<a
href="https://redirect.github.com/pypa/setuptools/issues/1386">#1386</a>)</p>
</li>
<li>
<p>Improve error message when <code>pkg_resources.ZipProvider</code>
tries to extract resources with a missing Egg -- by
:user:<code>Avasam</code></p>
<p>Added variables and parameter type annotations to
<code>pkg_resources</code> to be nearly on par with typeshed.* -- by
:user:<code>Avasam</code>
* Excluding <code>TypeVar</code> and <code>overload</code>. Return types
are currently inferred. (<a
href="https://redirect.github.com/pypa/setuptools/issues/4246">#4246</a>)</p>
</li>
<li>
<p>Migrated Setuptools' own config to pyproject.toml (<a
href="https://redirect.github.com/pypa/setuptools/issues/4310">#4310</a>)</p>
</li>
</ul>
<h2>Bugfixes</h2>
<ul>
<li>Prevent a <code>TypeError: 'NoneType' object is not callable</code>
when <code>shutil_rmtree</code> is called without an <code>onexc</code>
parameter on Python&lt;=3.11 -- by :user:<code>Avasam</code> (<a
href="https://redirect.github.com/pypa/setuptools/issues/4382">#4382</a>)</li>
<li>Replace use of mktemp with can_symlink from the stdlib test suite.
(<a
href="https://redirect.github.com/pypa/setuptools/issues/4403">#4403</a>)</li>
<li>Improvement for <code>attr:</code> directives in configuration to
handle
more edge cases related to complex <code>package_dir</code>. (<a
href="https://redirect.github.com/pypa/setuptools/issues/4405">#4405</a>)</li>
<li>Fix accidental implicit string concatenation. (<a
href="https://redirect.github.com/pypa/setuptools/issues/4411">#4411</a>)</li>
</ul>
<h2>Misc</h2>
<ul>
<li><a
href="https://redirect.github.com/pypa/setuptools/issues/4365">#4365</a>,
<a
href="https://redirect.github.com/pypa/setuptools/issues/4422">#4422</a></li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/pypa/setuptools/commit/3466f9f1e14c4b0ef87299fef414f73600d4a46f"><code>3466f9f</code></a>
Bump version: 70.0.0 → 70.1.0</li>
<li><a
href="https://github.com/pypa/setuptools/commit/8cc50d4d5ce4a725d0bc12e599c4dddebeea9028"><code>8cc50d4</code></a>
Attempt to avoid error with <code>_read_utf8_with_fallback</code> by
moving code in `pkg...</li>
<li><a
href="https://github.com/pypa/setuptools/commit/a4b15f3a07c914c1da9bda2cf458237c97d0e042"><code>a4b15f3</code></a>
Add comments on test</li>
<li><a
href="https://github.com/pypa/setuptools/commit/051e70d9b232c5c24b3a64a4fdac07e9a347c4fb"><code>051e70d</code></a>
Simplify integration test for zop interface</li>
<li><a
href="https://github.com/pypa/setuptools/commit/06fd687e048224fc2293be50ed30d7f1a04378f4"><code>06fd687</code></a>
Move integration test to pkg_resources</li>
<li><a
href="https://github.com/pypa/setuptools/commit/03edaaa41059cf580709ec714586a6f7762cd99d"><code>03edaaa</code></a>
Add newsfragment</li>
<li><a
href="https://github.com/pypa/setuptools/commit/b95d168faa3fe25d7e9e947472094d23124428cf"><code>b95d168</code></a>
Move piece of code inside pkg_resources/<strong>init</strong>.py</li>
<li><a
href="https://github.com/pypa/setuptools/commit/be847e002eacf1431470f5d6592de5caddb521e5"><code>be847e0</code></a>
Add interop tests for pkg_resources and zope-interface</li>
<li><a
href="https://github.com/pypa/setuptools/commit/0f8c58dd03390b9f2a26be3211161386e7d626d6"><code>0f8c58d</code></a>
Fix undefined <code>log.warning</code> function in
<code>bdist_wheel</code> (<a
href="https://redirect.github.com/pypa/setuptools/issues/4427">#4427</a>)</li>
<li><a
href="https://github.com/pypa/setuptools/commit/63a2eb3b8246be5a6b50a837b26175e0c8cb6cf8"><code>63a2eb3</code></a>
Fix undefined log function in bdist_wheel</li>
<li>Additional commits viewable in <a
href="https://github.com/pypa/setuptools/compare/v70.0.0...v70.1.0">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=setuptools&package-manager=pip&previous-version=70.0.0&new-version=70.1.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…gle-page-app/ui (#35010)

Bumps [typescript](https://github.com/Microsoft/TypeScript) from 5.4.5
to 5.5.3.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/Microsoft/TypeScript/releases">typescript's
releases</a>.</em></p>
<blockquote>
<h2>TypeScript 5.5.3</h2>
<p>For release notes, check out the <a
href="https://devblogs.microsoft.com/typescript/announcing-typescript-5-5/">release
announcement</a>.</p>
<p>For the complete list of fixed issues, check out the</p>
<ul>
<li><a
href="https://github.com/Microsoft/TypeScript/issues?utf8=%E2%9C%93&amp;q=is%3Aissue+milestone%3A%22TypeScript+5.5.3%22+is%3Aclosed+">fixed
issues query for TypeScript v5.5.3 (Stable)</a>.</li>
<li><a
href="https://github.com/Microsoft/TypeScript/issues?utf8=%E2%9C%93&amp;q=is%3Aissue+milestone%3A%22TypeScript+5.5.2%22+is%3Aclosed+">fixed
issues query for TypeScript v5.5.2 (Stable)</a>.</li>
<li><a
href="https://github.com/Microsoft/TypeScript/issues?utf8=%E2%9C%93&amp;q=is%3Aissue+milestone%3A%22TypeScript+5.5.1%22+is%3Aclosed+">fixed
issues query for TypeScript v5.5.1 (RC)</a>.</li>
<li><a
href="https://github.com/Microsoft/TypeScript/issues?utf8=%E2%9C%93&amp;q=is%3Aissue+milestone%3A%22TypeScript+5.5.0%22+is%3Aclosed+">fixed
issues query for TypeScript v5.5.0 (Beta)</a>.</li>
</ul>
<p>Downloads are available on:</p>
<ul>
<li><a href="https://www.npmjs.com/package/typescript">npm</a></li>
<li><a
href="https://www.nuget.org/packages/Microsoft.TypeScript.MSBuild">NuGet
package</a></li>
</ul>
<h2>TypeScript 5.5</h2>
<p>For release notes, check out the <a
href="https://devblogs.microsoft.com/typescript/announcing-typescript-5-5/">release
announcement</a>.</p>
<p>For the complete list of fixed issues, check out the</p>
<ul>
<li><a
href="https://github.com/Microsoft/TypeScript/issues?utf8=%E2%9C%93&amp;q=is%3Aissue+milestone%3A%22TypeScript+5.5.2%22+is%3Aclosed+">fixed
issues query for TypeScript v5.5.2 (Stable)</a>.</li>
<li><a
href="https://github.com/Microsoft/TypeScript/issues?utf8=%E2%9C%93&amp;q=is%3Aissue+milestone%3A%22TypeScript+5.5.1%22+is%3Aclosed+">fixed
issues query for TypeScript v5.5.1 (RC)</a>.</li>
<li><a
href="https://github.com/Microsoft/TypeScript/issues?utf8=%E2%9C%93&amp;q=is%3Aissue+milestone%3A%22TypeScript+5.5.0%22+is%3Aclosed+">fixed
issues query for TypeScript v5.5.0 (Beta)</a>.</li>
</ul>
<p>Downloads are available on:</p>
<ul>
<li><a href="https://www.npmjs.com/package/typescript">npm</a></li>
</ul>
<h2>TypeScript 5.5 RC</h2>
<p>For release notes, check out the <a
href="https://devblogs.microsoft.com/typescript/announcing-typescript-5-5-rc/">release
announcement</a>.</p>
<p>For the complete list of fixed issues, check out the</p>
<ul>
<li><a
href="https://github.com/Microsoft/TypeScript/issues?utf8=%E2%9C%93&amp;q=milestone%3A%22TypeScript+5.5.0%22+is%3Aclosed+">fixed
issues query for Typescript 5.5.0 (Beta)</a>.</li>
<li><a
href="https://github.com/Microsoft/TypeScript/issues?utf8=%E2%9C%93&amp;q=milestone%3A%22TypeScript+5.5.1%22+is%3Aclosed+">fixed
issues query for Typescript 5.5.1 (RC)</a>.</li>
</ul>
<p>Downloads are available on:</p>
<ul>
<li><a
href="https://www.nuget.org/packages/Microsoft.TypeScript.MSBuild">NuGet
package</a></li>
</ul>
<h2>TypeScript 5.5 Beta</h2>
<p>For release notes, check out the <a
href="https://devblogs.microsoft.com/typescript/announcing-typescript-5-5-beta/">release
announcement</a>.</p>
<p>For the complete list of fixed issues, check out the</p>
<ul>
<li><a
href="https://github.com/Microsoft/TypeScript/issues?utf8=%E2%9C%93&amp;q=milestone%3A%22TypeScript+5.5.0%22+is%3Aclosed+">fixed
issues query for Typescript 5.5.0 (Beta)</a>.</li>
</ul>
<p>Downloads are available on:</p>
<ul>
<li><a href="https://www.npmjs.com/package/typescript">npm</a></li>
</ul>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/microsoft/TypeScript/commit/f0e992167440686f948965e5441a918b34251886"><code>f0e9921</code></a>
Bump version to 5.5.3 and LKG</li>
<li><a
href="https://github.com/microsoft/TypeScript/commit/738bd605dfab2102cad7a8702ceae1ed2f55fbec"><code>738bd60</code></a>
Cherry-pick <a
href="https://redirect.github.com/Microsoft/TypeScript/issues/58966">#58966</a>
to release-5.5 (<a
href="https://redirect.github.com/Microsoft/TypeScript/issues/59002">#59002</a>)</li>
<li><a
href="https://github.com/microsoft/TypeScript/commit/ce2e60e4ea15a65992e54a9e8877d16be9d42abb"><code>ce2e60e</code></a>
Update LKG</li>
<li><a
href="https://github.com/microsoft/TypeScript/commit/f3b21a2033206e585b2b7b18622104f09eb87f2e"><code>f3b21a2</code></a>
🤖 Pick PR <a
href="https://redirect.github.com/Microsoft/TypeScript/issues/58931">#58931</a>
(Defer creation of barebonesLibSourc...) into release-5.5 (#...</li>
<li><a
href="https://github.com/microsoft/TypeScript/commit/7b1620bea227ea47f8944a2b02a7ed91691c3046"><code>7b1620b</code></a>
🤖 Pick PR <a
href="https://redirect.github.com/Microsoft/TypeScript/issues/58811">#58811</a>
(fix(58801): &quot;Move to file&quot; on globa...) into release-5.5
(#...</li>
<li><a
href="https://github.com/microsoft/TypeScript/commit/5367ae10f58edfacd6d3b1e77bd05576036b8ca2"><code>5367ae1</code></a>
Bump version to 5.5.2 and LKG</li>
<li><a
href="https://github.com/microsoft/TypeScript/commit/02132e5b8183b0ee73e52d75ff6e28ff0c9fe3d2"><code>02132e5</code></a>
🤖 Pick PR <a
href="https://redirect.github.com/Microsoft/TypeScript/issues/58895">#58895</a>
(Fix global when typescript.js loade...) into release-5.5 (#...</li>
<li><a
href="https://github.com/microsoft/TypeScript/commit/45b1e3c25444c4193cefb4ca97dfd1064f75a561"><code>45b1e3c</code></a>
🤖 Pick PR <a
href="https://redirect.github.com/Microsoft/TypeScript/issues/58872">#58872</a>
(Fix declaration emit crash) into release-5.5 (<a
href="https://redirect.github.com/Microsoft/TypeScript/issues/58874">#58874</a>)</li>
<li><a
href="https://github.com/microsoft/TypeScript/commit/17933ee33af4a3c44233820abf8bdb0ad2bf143a"><code>17933ee</code></a>
🤖 Pick PR <a
href="https://redirect.github.com/Microsoft/TypeScript/issues/58810">#58810</a>
(Fixed declaration emit issue relate...) into release-5.5 (#...</li>
<li><a
href="https://github.com/microsoft/TypeScript/commit/552b07e795ec5db98c37fd4ace730133bbf0e781"><code>552b07e</code></a>
🤖 Pick PR <a
href="https://redirect.github.com/Microsoft/TypeScript/issues/58786">#58786</a>
(Fixed declaration emit crash relate...) into release-5.5 (#...</li>
<li>Additional commits viewable in <a
href="https://github.com/Microsoft/TypeScript/compare/v5.4.5...v5.5.3">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=typescript&package-manager=npm_and_yarn&previous-version=5.4.5&new-version=5.5.3)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Commit Message: Auto-config allows switching on protocols based on ALPN
and that is not supported by the cluster's transport socket in the
wasm-cc example.

Fixes: `error initializing config ' /etc/envoy.yaml': ALPN configured
for cluster web_service_with_wasm_filter which has a non-ALPN transport
socket: name: "web_service_with_wasm_filter"`

Additional Description: N/A
Risk Level: Low
Testing: Manual testing, I have verified that with this fix both
containers from wasm-cc example successfully start and are functional
for the purposes of the example.
Docs Changes: N/A
Release Notes: N/A
Platform Specific Features: N/A

Signed-off-by: Zuzana Miklankova <zmiklank@redhat.com>
…l_ratelimit in the examples-local-ratelimit group across 1 directory (#35043)

Bumps the examples-local-ratelimit group with 1 update in the
/examples/local_ratelimit directory: nginx.

Updates `nginx` from `0f04e4f` to `67682bd`


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=nginx&package-manager=docker&previous-version=0f04e4f646a3f14bf31d8bc8d885b6c951fdcf42589d06845f64d18aec6a3c4d&new-version=67682bda769fae1ccf5183192b8daf37b64cae99c6c3302650f6f8bf5f0f95df)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore <dependency name> major version` will close this
group update PR and stop Dependabot creating any more for the specific
dependency's major version (unless you unignore this specific
dependency's major version or upgrade to it yourself)
- `@dependabot ignore <dependency name> minor version` will close this
group update PR and stop Dependabot creating any more for the specific
dependency's minor version (unless you unignore this specific
dependency's minor version or upgrade to it yourself)
- `@dependabot ignore <dependency name>` will close this group update PR
and stop Dependabot creating any more for the specific dependency
(unless you unignore this specific dependency or upgrade to it yourself)
- `@dependabot unignore <dependency name>` will remove all of the ignore
conditions of the specified dependency
- `@dependabot unignore <dependency name> <ignore condition>` will
remove the ignore condition of the specified dependency and ignore
conditions


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…amples/load-reporting-service in the examples-load-reporting group (#35039)

Bumps the examples-load-reporting group in
/examples/load-reporting-service with 1 update:
[google.golang.org/grpc](https://github.com/grpc/grpc-go).

Updates `google.golang.org/grpc` from 1.64.0 to 1.65.0
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/grpc/grpc-go/releases">google.golang.org/grpc's
releases</a>.</em></p>
<blockquote>
<h2>Release 1.65.0</h2>
<h1>Dependencies</h1>
<ul>
<li>Change support policy to cover only the latest TWO releases of Go,
matching the policy for Go itself. See <a
href="https://redirect.github.com/grpc/grpc-go/issues/7249">#7249</a>
for more information. (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7250">#7250</a>)</li>
<li>Update x/net/http2 to address <a
href="https://nvd.nist.gov/vuln/detail/CVE-2023-45288">CVE-2023-45288</a>
(<a
href="https://redirect.github.com/grpc/grpc-go/issues/7282">#7282</a>)</li>
</ul>
<h1>Behavior Changes</h1>
<ul>
<li>credentials/tls: clients and servers will now reject connections
that don't support ALPN when environment variable
<code>GRPC_ENFORCE_ALPN_ENABLED</code> is set to &quot;true&quot; (case
insensitive). (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7184">#7184</a>)
<ul>
<li>NOTE: this behavior will become the default in a future
release.</li>
</ul>
</li>
<li>metadata: remove String method from MD to make printing more
consistent (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7373">#7373</a>)</li>
</ul>
<h1>New Features</h1>
<ul>
<li>grpc: add <code>WithMaxCallAttempts</code> to configure gRPC's retry
behavior per-channel. (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7229">#7229</a>)
<ul>
<li>Special Thanks: <a
href="https://github.com/imoore76"><code>@​imoore76</code></a></li>
</ul>
</li>
</ul>
<h1>Bug Fixes</h1>
<ul>
<li>ringhash: properly apply endpoint weights instead of ignoring them
(<a
href="https://redirect.github.com/grpc/grpc-go/issues/7156">#7156</a>)</li>
<li>xds: fix a bug that could cause xds-enabled servers to stop
accepting new connections after handshaking errors (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7128">#7128</a>)
<ul>
<li>Special Thanks: <a
href="https://github.com/bozaro"><code>@​bozaro</code></a></li>
</ul>
</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/grpc/grpc-go/commit/2da976983bbb33feb3e25b7daaa8f60b9769adb5"><code>2da9769</code></a>
Change version to 1.65.0 (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7306">#7306</a>)</li>
<li><a
href="https://github.com/grpc/grpc-go/commit/ede96b776c9cea4ff2b06dfdedad841e53fb0c26"><code>ede96b7</code></a>
metadata: remove String method (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7373">#7373</a>)</li>
<li><a
href="https://github.com/grpc/grpc-go/commit/64be203f7828d03224aa44944a84deacac54b72b"><code>64be203</code></a>
grpc: Readd pick first name (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7336">#7336</a>)
(<a
href="https://redirect.github.com/grpc/grpc-go/issues/7341">#7341</a>)</li>
<li><a
href="https://github.com/grpc/grpc-go/commit/25e33a6c207464c6017d001255f9ac1297ba5d3e"><code>25e33a6</code></a>
examples: Add CSM Observability example (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7302">#7302</a>)
(<a
href="https://redirect.github.com/grpc/grpc-go/issues/7318">#7318</a>)</li>
<li><a
href="https://github.com/grpc/grpc-go/commit/04a5f4604baa9297b7168543834e531cfb8858dc"><code>04a5f46</code></a>
xds/internal/xdsclient: Emit unknown for CSM Labels if not present in
CDS (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7">#7</a>...</li>
<li><a
href="https://github.com/grpc/grpc-go/commit/cff5c3e3d0f104459af4f52e77fc1c49ef4cb6aa"><code>cff5c3e</code></a>
stats/opentelemetry: Add e2e testing for CSM Observability (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7279">#7279</a>)
(<a
href="https://redirect.github.com/grpc/grpc-go/issues/7316">#7316</a>)</li>
<li><a
href="https://github.com/grpc/grpc-go/commit/9b970fdd173c1951a354630133273639e8acf00c"><code>9b970fd</code></a>
dns: fix constant 30s backoff for re-resolution (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7262">#7262</a>)
(<a
href="https://redirect.github.com/grpc/grpc-go/issues/7311">#7311</a>)</li>
<li><a
href="https://github.com/grpc/grpc-go/commit/6d236200ea68ea644d78a164c4ad9952a765aed3"><code>6d23620</code></a>
documentation: on server, use FromIncomingContext for retrieving context
and...</li>
<li><a
href="https://github.com/grpc/grpc-go/commit/7e5898e7c569b8cc32d6eee9bc8ad1393a8fcc61"><code>7e5898e</code></a>
xds: unify xDS client creation APIs meant for testing (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7268">#7268</a>)</li>
<li><a
href="https://github.com/grpc/grpc-go/commit/5d7bd7aacb0c35fc14bf144fa81ecbb61eec91de"><code>5d7bd7a</code></a>
interop/xds: Interop client and server changes for CSM Observability (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7280">#7280</a>)</li>
<li>Additional commits viewable in <a
href="https://github.com/grpc/grpc-go/compare/v1.64.0...v1.65.0">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=google.golang.org/grpc&package-manager=go_modules&previous-version=1.64.0&new-version=1.65.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore <dependency name> major version` will close this
group update PR and stop Dependabot creating any more for the specific
dependency's major version (unless you unignore this specific
dependency's major version or upgrade to it yourself)
- `@dependabot ignore <dependency name> minor version` will close this
group update PR and stop Dependabot creating any more for the specific
dependency's minor version (unless you unignore this specific
dependency's minor version or upgrade to it yourself)
- `@dependabot ignore <dependency name>` will close this group update PR
and stop Dependabot creating any more for the specific dependency
(unless you unignore this specific dependency or upgrade to it yourself)
- `@dependabot unignore <dependency name>` will remove all of the ignore
conditions of the specified dependency
- `@dependabot unignore <dependency name> <ignore condition>` will
remove the ignore condition of the specified dependency and ignore
conditions


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps mysql from 8.4.0 to 9.0.0.


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=mysql&package-manager=docker&previous-version=8.4.0&new-version=9.0.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…io in /examples/ext_authz in the examples-ext-authz group (#35011)

Bumps the examples-ext-authz group in /examples/ext_authz with 1 update:
openpolicyagent/opa.

Updates `openpolicyagent/opa` from 0.65.0-istio to 0.66.0-istio


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=openpolicyagent/opa&package-manager=docker&previous-version=0.65.0-istio&new-version=0.66.0-istio)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore <dependency name> major version` will close this
group update PR and stop Dependabot creating any more for the specific
dependency's major version (unless you unignore this specific
dependency's major version or upgrade to it yourself)
- `@dependabot ignore <dependency name> minor version` will close this
group update PR and stop Dependabot creating any more for the specific
dependency's minor version (unless you unignore this specific
dependency's minor version or upgrade to it yourself)
- `@dependabot ignore <dependency name>` will close this group update PR
and stop Dependabot creating any more for the specific dependency
(unless you unignore this specific dependency or upgrade to it yourself)
- `@dependabot unignore <dependency name>` will remove all of the ignore
conditions of the specified dependency
- `@dependabot unignore <dependency name> <ignore condition>` will
remove the ignore condition of the specified dependency and ignore
conditions


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…amples/ext_authz/auth/grpc-service in the examples-ext-authz group (#35038)

Bumps the examples-ext-authz group in
/examples/ext_authz/auth/grpc-service with 1 update:
[google.golang.org/grpc](https://github.com/grpc/grpc-go).

Updates `google.golang.org/grpc` from 1.64.0 to 1.65.0
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/grpc/grpc-go/releases">google.golang.org/grpc's
releases</a>.</em></p>
<blockquote>
<h2>Release 1.65.0</h2>
<h1>Dependencies</h1>
<ul>
<li>Change support policy to cover only the latest TWO releases of Go,
matching the policy for Go itself. See <a
href="https://redirect.github.com/grpc/grpc-go/issues/7249">#7249</a>
for more information. (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7250">#7250</a>)</li>
<li>Update x/net/http2 to address <a
href="https://nvd.nist.gov/vuln/detail/CVE-2023-45288">CVE-2023-45288</a>
(<a
href="https://redirect.github.com/grpc/grpc-go/issues/7282">#7282</a>)</li>
</ul>
<h1>Behavior Changes</h1>
<ul>
<li>credentials/tls: clients and servers will now reject connections
that don't support ALPN when environment variable
<code>GRPC_ENFORCE_ALPN_ENABLED</code> is set to &quot;true&quot; (case
insensitive). (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7184">#7184</a>)
<ul>
<li>NOTE: this behavior will become the default in a future
release.</li>
</ul>
</li>
<li>metadata: remove String method from MD to make printing more
consistent (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7373">#7373</a>)</li>
</ul>
<h1>New Features</h1>
<ul>
<li>grpc: add <code>WithMaxCallAttempts</code> to configure gRPC's retry
behavior per-channel. (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7229">#7229</a>)
<ul>
<li>Special Thanks: <a
href="https://github.com/imoore76"><code>@​imoore76</code></a></li>
</ul>
</li>
</ul>
<h1>Bug Fixes</h1>
<ul>
<li>ringhash: properly apply endpoint weights instead of ignoring them
(<a
href="https://redirect.github.com/grpc/grpc-go/issues/7156">#7156</a>)</li>
<li>xds: fix a bug that could cause xds-enabled servers to stop
accepting new connections after handshaking errors (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7128">#7128</a>)
<ul>
<li>Special Thanks: <a
href="https://github.com/bozaro"><code>@​bozaro</code></a></li>
</ul>
</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/grpc/grpc-go/commit/2da976983bbb33feb3e25b7daaa8f60b9769adb5"><code>2da9769</code></a>
Change version to 1.65.0 (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7306">#7306</a>)</li>
<li><a
href="https://github.com/grpc/grpc-go/commit/ede96b776c9cea4ff2b06dfdedad841e53fb0c26"><code>ede96b7</code></a>
metadata: remove String method (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7373">#7373</a>)</li>
<li><a
href="https://github.com/grpc/grpc-go/commit/64be203f7828d03224aa44944a84deacac54b72b"><code>64be203</code></a>
grpc: Readd pick first name (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7336">#7336</a>)
(<a
href="https://redirect.github.com/grpc/grpc-go/issues/7341">#7341</a>)</li>
<li><a
href="https://github.com/grpc/grpc-go/commit/25e33a6c207464c6017d001255f9ac1297ba5d3e"><code>25e33a6</code></a>
examples: Add CSM Observability example (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7302">#7302</a>)
(<a
href="https://redirect.github.com/grpc/grpc-go/issues/7318">#7318</a>)</li>
<li><a
href="https://github.com/grpc/grpc-go/commit/04a5f4604baa9297b7168543834e531cfb8858dc"><code>04a5f46</code></a>
xds/internal/xdsclient: Emit unknown for CSM Labels if not present in
CDS (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7">#7</a>...</li>
<li><a
href="https://github.com/grpc/grpc-go/commit/cff5c3e3d0f104459af4f52e77fc1c49ef4cb6aa"><code>cff5c3e</code></a>
stats/opentelemetry: Add e2e testing for CSM Observability (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7279">#7279</a>)
(<a
href="https://redirect.github.com/grpc/grpc-go/issues/7316">#7316</a>)</li>
<li><a
href="https://github.com/grpc/grpc-go/commit/9b970fdd173c1951a354630133273639e8acf00c"><code>9b970fd</code></a>
dns: fix constant 30s backoff for re-resolution (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7262">#7262</a>)
(<a
href="https://redirect.github.com/grpc/grpc-go/issues/7311">#7311</a>)</li>
<li><a
href="https://github.com/grpc/grpc-go/commit/6d236200ea68ea644d78a164c4ad9952a765aed3"><code>6d23620</code></a>
documentation: on server, use FromIncomingContext for retrieving context
and...</li>
<li><a
href="https://github.com/grpc/grpc-go/commit/7e5898e7c569b8cc32d6eee9bc8ad1393a8fcc61"><code>7e5898e</code></a>
xds: unify xDS client creation APIs meant for testing (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7268">#7268</a>)</li>
<li><a
href="https://github.com/grpc/grpc-go/commit/5d7bd7aacb0c35fc14bf144fa81ecbb61eec91de"><code>5d7bd7a</code></a>
interop/xds: Interop client and server changes for CSM Observability (<a
href="https://redirect.github.com/grpc/grpc-go/issues/7280">#7280</a>)</li>
<li>Additional commits viewable in <a
href="https://github.com/grpc/grpc-go/compare/v1.64.0...v1.65.0">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=google.golang.org/grpc&package-manager=go_modules&previous-version=1.64.0&new-version=1.65.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore <dependency name> major version` will close this
group update PR and stop Dependabot creating any more for the specific
dependency's major version (unless you unignore this specific
dependency's major version or upgrade to it yourself)
- `@dependabot ignore <dependency name> minor version` will close this
group update PR and stop Dependabot creating any more for the specific
dependency's minor version (unless you unignore this specific
dependency's minor version or upgrade to it yourself)
- `@dependabot ignore <dependency name>` will close this group update PR
and stop Dependabot creating any more for the specific dependency
(unless you unignore this specific dependency or upgrade to it yourself)
- `@dependabot unignore <dependency name>` will remove all of the ignore
conditions of the specified dependency
- `@dependabot unignore <dependency name> <ignore condition>` will
remove the ignore condition of the specified dependency and ignore
conditions


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Add support for expired assignment. Currently supported expired
assignment behavior: Fail-open or Fail close.

---------

Signed-off-by: tyxia <tyxia@google.com>
Fixes
//test/extensions/load_balancing_policies/ring_hash:ring_hash_lb_test on
big endian platforms.

Commit Message:
Additional Description: Add byte swapping on big endian platforms when
loading input data. Little endian platforms are not affected by this
change.
Risk Level:
Testing:
Docs Changes:
Release Notes:
Platform Specific Features:


---------

Signed-off-by: Jonathan Albrecht <jonathan.albrecht@ibm.com>
There were a few members in ConfigProvider class, and this deletes
them, which increases the test coverage as a result.

Risk Level: low
Testing: n/a

Signed-off-by: Takeshi Yoneda <t.y.mathetake@gmail.com>
…cation (#34335)

Commit Message: jwt_authn: Set metadata irrespective of success/failure
of JWT Verification

Previously, metadata was only set for successful JWT verification,
restricting "failed_status_in_metadata". This change removes the
condition, allowing both "payload_in_metadata" and
"failed_status_in_metadata" to be set as needed.

If this condition was added to restrict setting "payload_in_metadata"
only on successful verification, it is unnecessary since
"payload_in_metadata" is set only by AuthenticatorImpl:handleGoodJwt().

Risk Level: Low
Testing: Unit tests
Docs Changes: N/A
Release Notes:
Platform Specific Features: N/A
Fixes #32813

Signed-off-by: Arul Thileeban Sagayam <arul.thilee@gmail.com>
…864)

Bumps [slack-sdk](https://github.com/slackapi/python-slack-sdk) from
3.27.2 to 3.30.0.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/slackapi/python-slack-sdk/releases">slack-sdk's
releases</a>.</em></p>
<blockquote>
<h2>version 3.30.0</h2>
<h2>Changes</h2>
<ul>
<li>feat: add team.externalTeams.list by <a
href="https://github.com/WilliamBergamin"><code>@​WilliamBergamin</code></a>
in <a
href="https://redirect.github.com/slackapi/python-slack-sdk/pull/1512">slackapi/python-slack-sdk#1512</a></li>
<li>chore: align README pattern by <a
href="https://github.com/WilliamBergamin"><code>@​WilliamBergamin</code></a>
in <a
href="https://redirect.github.com/slackapi/python-slack-sdk/pull/1513">slackapi/python-slack-sdk#1513</a></li>
<li>chore(release): 3.30.0 by <a
href="https://github.com/WilliamBergamin"><code>@​WilliamBergamin</code></a>
in <a
href="https://redirect.github.com/slackapi/python-slack-sdk/pull/1514">slackapi/python-slack-sdk#1514</a></li>
</ul>
<p>All issues/pull requests: <a
href="https://github.com/slackapi/python-slack-sdk/milestone/99?closed=1">https://github.com/slackapi/python-slack-sdk/milestone/99?closed=1</a>
Full Changelog: <a
href="https://github.com/slackapi/python-slack-sdk/compare/v3.29.0...v3.30.0">https://github.com/slackapi/python-slack-sdk/compare/v3.29.0...v3.30.0</a></p>
<h2>version 3.29.0</h2>
<h2>Changes</h2>
<ul>
<li><a
href="https://redirect.github.com/slackapi/python-slack-sdk/issues/1508">#1508</a>
Add canvases APIs and users.discoverableContacts.lookup API - Thanks <a
href="https://github.com/seratch"><code>@​seratch</code></a></li>
</ul>
<hr />
<ul>
<li>All issues/pull requests: <a
href="https://github.com/slackapi/python-slack-sdk/milestone/97?closed=1">https://github.com/slackapi/python-slack-sdk/milestone/97?closed=1</a></li>
<li>All changes: <a
href="https://github.com/slackapi/python-slack-sdk/compare/v3.28.0...v3.29.0">https://github.com/slackapi/python-slack-sdk/compare/v3.28.0...v3.29.0</a></li>
</ul>
<h2>version 3.28.0</h2>
<h2>What's Changed</h2>
<ul>
<li>Added deprecation warnings to Steps from Apps methods by <a
href="https://github.com/WilliamBergamin"><code>@​WilliamBergamin</code></a>
in <a
href="https://redirect.github.com/slackapi/python-slack-sdk/pull/1504">slackapi/python-slack-sdk#1504</a></li>
<li>Fix base url according to official documentation by <a
href="https://github.com/AyumuKasuga"><code>@​AyumuKasuga</code></a> in
<a
href="https://redirect.github.com/slackapi/python-slack-sdk/pull/1485">slackapi/python-slack-sdk#1485</a></li>
<li>Fix AttributeError on SocketModeClient.is_connected (aiohttp) when
enabling debug-level logging by <a
href="https://github.com/cxong"><code>@​cxong</code></a> in <a
href="https://redirect.github.com/slackapi/python-slack-sdk/pull/1499">slackapi/python-slack-sdk#1499</a></li>
</ul>
<h2>New Contributors</h2>
<ul>
<li><a
href="https://github.com/AyumuKasuga"><code>@​AyumuKasuga</code></a>
made their first contribution in <a
href="https://redirect.github.com/slackapi/python-slack-sdk/pull/1485">slackapi/python-slack-sdk#1485</a></li>
<li><a href="https://github.com/cxong"><code>@​cxong</code></a> made
their first contribution in <a
href="https://redirect.github.com/slackapi/python-slack-sdk/pull/1499">slackapi/python-slack-sdk#1499</a></li>
</ul>
<p><strong>All issues/pull requests</strong>: <a
href="https://github.com/slackapi/python-slack-sdk/milestone/95?closed=1">https://github.com/slackapi/python-slack-sdk/milestone/95?closed=1</a>
<strong>Full Changelog</strong>: <a
href="https://github.com/slackapi/python-slack-sdk/compare/v3.27.2...v3.28.0">https://github.com/slackapi/python-slack-sdk/compare/v3.27.2...v3.28.0</a></p>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/slackapi/python-slack-sdk/commit/aa3c79220b93a5f579794024cd2c5afa6befd208"><code>aa3c792</code></a>
version 3.30.0 (<a
href="https://redirect.github.com/slackapi/python-slack-sdk/issues/1514">#1514</a>)</li>
<li><a
href="https://github.com/slackapi/python-slack-sdk/commit/19dda82085655372fa978ff0db4f253a26d9e65f"><code>19dda82</code></a>
Update README.md (<a
href="https://redirect.github.com/slackapi/python-slack-sdk/issues/1513">#1513</a>)</li>
<li><a
href="https://github.com/slackapi/python-slack-sdk/commit/b46494182503fc7effddde500f9ff852b7be7283"><code>b464941</code></a>
feat: add team.externalTeams.list (<a
href="https://redirect.github.com/slackapi/python-slack-sdk/issues/1512">#1512</a>)</li>
<li><a
href="https://github.com/slackapi/python-slack-sdk/commit/75997b2134828cdff7374b8ed2971653372615b8"><code>75997b2</code></a>
version 3.29.0</li>
<li><a
href="https://github.com/slackapi/python-slack-sdk/commit/67028d6225c7a364690d63868bccc46d626ae304"><code>67028d6</code></a>
Add canvases APIs and users.discoverableContacts.lookup API (<a
href="https://redirect.github.com/slackapi/python-slack-sdk/issues/1508">#1508</a>)</li>
<li><a
href="https://github.com/slackapi/python-slack-sdk/commit/862796ccd8e1c013c3199911b21c2454d2608e2f"><code>862796c</code></a>
fix: update release instructions in maintainers guide (<a
href="https://redirect.github.com/slackapi/python-slack-sdk/issues/1507">#1507</a>)</li>
<li><a
href="https://github.com/slackapi/python-slack-sdk/commit/41cbaa41747311c9eab9d5f4260008e87a94cdbd"><code>41cbaa4</code></a>
version 3.28.0 (<a
href="https://redirect.github.com/slackapi/python-slack-sdk/issues/1506">#1506</a>)</li>
<li><a
href="https://github.com/slackapi/python-slack-sdk/commit/abdfc871d0ce9c96fffb189333d0a5bef570c475"><code>abdfc87</code></a>
Fix base url according to official documentation (<a
href="https://redirect.github.com/slackapi/python-slack-sdk/issues/1485">#1485</a>)</li>
<li><a
href="https://github.com/slackapi/python-slack-sdk/commit/5f941f4432d8db4520c0d863aea4eb419e51858a"><code>5f941f4</code></a>
fix: Add deprecation warnings to Steps from Apps methods (<a
href="https://redirect.github.com/slackapi/python-slack-sdk/issues/1504">#1504</a>)</li>
<li><a
href="https://github.com/slackapi/python-slack-sdk/commit/7d13c3b6307202a00473337219ee7729d644c622"><code>7d13c3b</code></a>
Omit not-working tests</li>
<li>Additional commits viewable in <a
href="https://github.com/slackapi/python-slack-sdk/compare/v3.27.2...v3.30.0">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=slack-sdk&package-manager=pip&previous-version=3.27.2&new-version=3.30.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…l (#35189)

Bumps mysql from `8b879a3` to `72a37dd`.


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=mysql&package-manager=docker&previous-version=9.0.0&new-version=9.0.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…bridge/client in the pip group (#35193)

Bumps the pip group in /examples/grpc-bridge/client with 1 update:
[setuptools](https://github.com/pypa/setuptools).

Updates `setuptools` from 68.2.2 to 70.0.0
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/pypa/setuptools/blob/main/NEWS.rst">setuptools's
changelog</a>.</em></p>
<blockquote>
<h1>v70.0.0</h1>
<h2>Features</h2>
<ul>
<li>Emit a warning when <code>[tools.setuptools]</code> is present in
<code>pyproject.toml</code> and will be ignored. -- by
:user:<code>SnoopJ</code> (<a
href="https://redirect.github.com/pypa/setuptools/issues/4150">#4150</a>)</li>
<li>Improved <code>AttributeError</code> error message if
<code>pkg_resources.EntryPoint.require</code> is called without extras
or distribution
Gracefully &quot;do nothing&quot; when trying to activate a
<code>pkg_resources.Distribution</code> with a <code>None</code>
location, rather than raising a <code>TypeError</code>
-- by :user:<code>Avasam</code> (<a
href="https://redirect.github.com/pypa/setuptools/issues/4262">#4262</a>)</li>
<li>Typed the dynamically defined variables from
<code>pkg_resources</code> -- by :user:<code>Avasam</code> (<a
href="https://redirect.github.com/pypa/setuptools/issues/4267">#4267</a>)</li>
<li>Modernized and refactored VCS handling in package_index. (<a
href="https://redirect.github.com/pypa/setuptools/issues/4332">#4332</a>)</li>
</ul>
<h2>Bugfixes</h2>
<ul>
<li>In install command, use super to call the superclass methods. Avoids
race conditions when monkeypatching from _distutils_system_mod occurs
late. (<a
href="https://redirect.github.com/pypa/setuptools/issues/4136">#4136</a>)</li>
<li>Fix finder template for lenient editable installs of implicit nested
namespaces
constructed by using <code>package_dir</code> to reorganise directory
structure. (<a
href="https://redirect.github.com/pypa/setuptools/issues/4278">#4278</a>)</li>
<li>Fix an error with <code>UnicodeDecodeError</code> handling in
<code>pkg_resources</code> when trying to read files in UTF-8 with a
fallback -- by :user:<code>Avasam</code> (<a
href="https://redirect.github.com/pypa/setuptools/issues/4348">#4348</a>)</li>
</ul>
<h2>Improved Documentation</h2>
<ul>
<li>Uses RST substitution to put badges in 1 line. (<a
href="https://redirect.github.com/pypa/setuptools/issues/4312">#4312</a>)</li>
</ul>
<h2>Deprecations and Removals</h2>
<ul>
<li>
<p>Further adoption of UTF-8 in <code>setuptools</code>.
This change regards mostly files produced and consumed during the build
process
(e.g. metadata files, script wrappers, automatically updated config
files, etc..)
Although precautions were taken to minimize disruptions, some edge cases
might
be subject to backwards incompatibility.</p>
<p>Support for <code>&quot;locale&quot;</code> encoding is now
<strong>deprecated</strong>. (<a
href="https://redirect.github.com/pypa/setuptools/issues/4309">#4309</a>)</p>
</li>
<li>
<p>Remove <code>setuptools.convert_path</code> after long deprecation
period.
This function was never defined by <code>setuptools</code> itself, but
rather a
side-effect of an import for internal usage. (<a
href="https://redirect.github.com/pypa/setuptools/issues/4322">#4322</a>)</p>
</li>
<li>
<p>Remove fallback for customisations of <code>distutils</code>'
<code>build.sub_command</code> after long
deprecated period.
Users are advised to import <code>build</code> directly from
<code>setuptools.command.build</code>. (<a
href="https://redirect.github.com/pypa/setuptools/issues/4322">#4322</a>)</p>
</li>
<li>
<p>Removed <code>typing_extensions</code> from vendored dependencies --
by :user:<code>Avasam</code> (<a
href="https://redirect.github.com/pypa/setuptools/issues/4324">#4324</a>)</p>
</li>
<li>
<p>Remove deprecated <code>setuptools.dep_util</code>.
The provided alternative is <code>setuptools.modified</code>. (<a
href="https://redirect.github.com/pypa/setuptools/issues/4360">#4360</a>)</p>
</li>
</ul>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/pypa/setuptools/commit/5cbf12a9b63fd37985a4525617b46576b8ac3a7b"><code>5cbf12a</code></a>
Workaround for release error in v70</li>
<li><a
href="https://github.com/pypa/setuptools/commit/9c1bcc3417bd12668123f7e731e241d9e57bfc57"><code>9c1bcc3</code></a>
Bump version: 69.5.1 → 70.0.0</li>
<li><a
href="https://github.com/pypa/setuptools/commit/4dc0c31644b458ac43ce6148f6a9dc729a7e78b5"><code>4dc0c31</code></a>
Remove deprecated <code>setuptools.dep_util</code> (<a
href="https://redirect.github.com/pypa/setuptools/issues/4360">#4360</a>)</li>
<li><a
href="https://github.com/pypa/setuptools/commit/6c1ef5748dbd70c8c5423e12680345766ee101d9"><code>6c1ef57</code></a>
Remove xfail now that test passes. Ref <a
href="https://redirect.github.com/pypa/setuptools/issues/4371">#4371</a>.</li>
<li><a
href="https://github.com/pypa/setuptools/commit/d14fa0162c95450898c11534caf26a0f03553176"><code>d14fa01</code></a>
Add all site-packages dirs when creating simulated environment for
test_edita...</li>
<li><a
href="https://github.com/pypa/setuptools/commit/6b7f7a18afc90007544092c446dc0cd856d86b17"><code>6b7f7a1</code></a>
Prevent <code>bin</code> folders to be taken as extern packages when
vendoring (<a
href="https://redirect.github.com/pypa/setuptools/issues/4370">#4370</a>)</li>
<li><a
href="https://github.com/pypa/setuptools/commit/69141f69f8bf38da34cbea552d6fdaa9c8619c53"><code>69141f6</code></a>
Add doctest for vendorised bin folder</li>
<li><a
href="https://github.com/pypa/setuptools/commit/2a53cc1200ec4b14e08e84be3c042f8983dfb7d7"><code>2a53cc1</code></a>
Prevent 'bin' folders to be taken as extern packages</li>
<li><a
href="https://github.com/pypa/setuptools/commit/720862807dea012f3a0e7061880691025f736f11"><code>7208628</code></a>
Replace call to deprecated <code>validate_pyproject</code> command (<a
href="https://redirect.github.com/pypa/setuptools/issues/4363">#4363</a>)</li>
<li><a
href="https://github.com/pypa/setuptools/commit/96d681aa405460f724c62c00ca125ae722ad810a"><code>96d681a</code></a>
Remove call to deprecated validate_pyproject command</li>
<li>Additional commits viewable in <a
href="https://github.com/pypa/setuptools/compare/v68.2.2...v70.0.0">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=setuptools&package-manager=pip&previous-version=68.2.2&new-version=70.0.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore <dependency name> major version` will close this
group update PR and stop Dependabot creating any more for the specific
dependency's major version (unless you unignore this specific
dependency's major version or upgrade to it yourself)
- `@dependabot ignore <dependency name> minor version` will close this
group update PR and stop Dependabot creating any more for the specific
dependency's minor version (unless you unignore this specific
dependency's minor version or upgrade to it yourself)
- `@dependabot ignore <dependency name>` will close this group update PR
and stop Dependabot creating any more for the specific dependency
(unless you unignore this specific dependency or upgrade to it yourself)
- `@dependabot unignore <dependency name>` will remove all of the ignore
conditions of the specified dependency
- `@dependabot unignore <dependency name> <ignore condition>` will
remove the ignore condition of the specified dependency and ignore
conditions
You can disable automated security fix PRs for this repo from the
[Security Alerts
page](https://github.com/envoyproxy/envoy/network/alerts).

</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps [orjson](https://github.com/ijl/orjson) from 3.10.3 to 3.10.5.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/ijl/orjson/releases">orjson's
releases</a>.</em></p>
<blockquote>
<h2>3.10.5</h2>
<h3>Changed</h3>
<ul>
<li>Improve performance.</li>
</ul>
<h2>3.10.4</h2>
<h3>Changed</h3>
<ul>
<li>Improve performance.</li>
</ul>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/ijl/orjson/blob/master/CHANGELOG.md">orjson's
changelog</a>.</em></p>
<blockquote>
<h2>3.10.5 - 2024-06-13</h2>
<h3>Changed</h3>
<ul>
<li>Improve performance.</li>
</ul>
<h2>3.10.4 - 2024-06-10</h2>
<h3>Changed</h3>
<ul>
<li>Improve performance.</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/ijl/orjson/commit/7b081e10768a44699f6f7231521b1803c3dfdd87"><code>7b081e1</code></a>
3.10.5</li>
<li><a
href="https://github.com/ijl/orjson/commit/6b626c9c095b6f65f74331bdcad4de00e996a56a"><code>6b626c9</code></a>
dict, list full impl</li>
<li><a
href="https://github.com/ijl/orjson/commit/05fd9e1217c26009a82f521fea6a82ddd90e9fe7"><code>05fd9e1</code></a>
str escape u8 instead of u64</li>
<li><a
href="https://github.com/ijl/orjson/commit/7f212b857d7e78830cb929cb9ccde6895ca82c7e"><code>7f212b8</code></a>
3.10.4</li>
<li><a
href="https://github.com/ijl/orjson/commit/c96351f851009d8063861cb21dd3d556533bc194"><code>c96351f</code></a>
cargo update, misc</li>
<li><a
href="https://github.com/ijl/orjson/commit/ac8d90e605aeed4021f737094b841f529fe54c55"><code>ac8d90e</code></a>
Module specifies Py_MOD_GIL_USED</li>
<li><a
href="https://github.com/ijl/orjson/commit/d55b26178da3986cc693ddcdfaca12d0abd891d7"><code>d55b261</code></a>
unwinding</li>
<li><a
href="https://github.com/ijl/orjson/commit/f0b4559fd7cd5ad36b818eb180c5108de98a0a1e"><code>f0b4559</code></a>
Fix tzcnt intrinsic inlining</li>
<li><a
href="https://github.com/ijl/orjson/commit/00206477d31886957c2eb732ecb487edaf3dfe4a"><code>0020647</code></a>
Fix check-cfg, pin static analysis</li>
<li>See full diff in <a
href="https://github.com/ijl/orjson/compare/3.10.3...3.10.5">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=orjson&package-manager=pip&previous-version=3.10.3&new-version=3.10.5)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

You can trigger a rebase of this PR by commenting `@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

> **Note**
> Automatic rebases have been disabled on this pull request as it has
been open for over 30 days.

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps [aioquic](https://github.com/aiortc/aioquic) from 1.0.0 to 1.1.0.
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/aiortc/aioquic/blob/main/docs/changelog.rst">aioquic's
changelog</a>.</em></p>
<blockquote>
<h2>1.1.0</h2>
<ul>
<li>Improve path challenge handling and compliance with
:rfc:<code>9000</code>.</li>
<li>Limit the amount of buffered CRYPTO data to avoid memory
exhaustion.</li>
<li>Enable SHA-384 based signature algorithms and SECP384R1 key
exchange.</li>
<li>Build binary wheels against <code>OpenSSL</code>_ 3.3.0.</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/aiortc/aioquic/commit/ff3281fa33ca14943e7954b8baf51c1e950c791d"><code>ff3281f</code></a>
1.1.0</li>
<li><a
href="https://github.com/aiortc/aioquic/commit/e067e92bcb36f364159a8cd933d77d45a57e8885"><code>e067e92</code></a>
Build binary wheels against OpenSSL 3.3.0</li>
<li><a
href="https://github.com/aiortc/aioquic/commit/e4fb277bf88797668073b79fa95191c59e5fe569"><code>e4fb277</code></a>
Ensure the source distribution is complete</li>
<li><a
href="https://github.com/aiortc/aioquic/commit/d914a46bb81373efda4171f4dae29aa189679bd6"><code>d914a46</code></a>
Add support for SECP384R1 key exchange</li>
<li><a
href="https://github.com/aiortc/aioquic/commit/7dc7214038a6b1b8a07d288eb07a63ffd494b1f8"><code>7dc7214</code></a>
Enable SHA-384 based signature algorithms</li>
<li><a
href="https://github.com/aiortc/aioquic/commit/174a2ebbe928686ef9663acc663b3ac06c2d56f2"><code>174a2eb</code></a>
Only buffer up to 512 KiB of pending CRYPTO frames <a
href="https://redirect.github.com/aiortc/aioquic/issues/501">#501</a>.
(<a
href="https://redirect.github.com/aiortc/aioquic/issues/505">#505</a>)</li>
<li><a
href="https://github.com/aiortc/aioquic/commit/b507364ea51f3e654decd143cc99f7001b5b7923"><code>b507364</code></a>
Improved path challenge handling. (<a
href="https://redirect.github.com/aiortc/aioquic/issues/483">#483</a>)</li>
<li><a
href="https://github.com/aiortc/aioquic/commit/6c5b9dbb52dd2e8e0152349cadf583a5012976f8"><code>6c5b9db</code></a>
Fix tests on macOS by using homebrew's prefix for OpenSSL</li>
<li><a
href="https://github.com/aiortc/aioquic/commit/1ce549dc2151834e6f6155ba64db754e828ad2a7"><code>1ce549d</code></a>
Fix a codespell false positive on <code>assertIn</code></li>
<li><a
href="https://github.com/aiortc/aioquic/commit/a6d91fbcb5d7660adb1597bb711f6f963c598e03"><code>a6d91fb</code></a>
Make packet builder tests more realistic</li>
<li>Additional commits viewable in <a
href="https://github.com/aiortc/aioquic/compare/1.0.0...1.1.0">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=aioquic&package-manager=pip&previous-version=1.0.0&new-version=1.1.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps [actions/checkout](https://github.com/actions/checkout) from 4.1.6
to 4.1.7.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/actions/checkout/releases">actions/checkout's
releases</a>.</em></p>
<blockquote>
<h2>v4.1.7</h2>
<h2>What's Changed</h2>
<ul>
<li>Bump the minor-npm-dependencies group across 1 directory with 4
updates by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1739">actions/checkout#1739</a></li>
<li>Bump actions/checkout from 3 to 4 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1697">actions/checkout#1697</a></li>
<li>Check out other refs/* by commit by <a
href="https://github.com/orhantoy"><code>@​orhantoy</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1774">actions/checkout#1774</a></li>
<li>Pin actions/checkout's own workflows to a known, good, stable
version. by <a href="https://github.com/jww3"><code>@​jww3</code></a> in
<a
href="https://redirect.github.com/actions/checkout/pull/1776">actions/checkout#1776</a></li>
</ul>
<h2>New Contributors</h2>
<ul>
<li><a href="https://github.com/orhantoy"><code>@​orhantoy</code></a>
made their first contribution in <a
href="https://redirect.github.com/actions/checkout/pull/1774">actions/checkout#1774</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/checkout/compare/v4.1.6...v4.1.7">https://github.com/actions/checkout/compare/v4.1.6...v4.1.7</a></p>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/actions/checkout/blob/main/CHANGELOG.md">actions/checkout's
changelog</a>.</em></p>
<blockquote>
<h1>Changelog</h1>
<h2>v4.1.7</h2>
<ul>
<li>Bump the minor-npm-dependencies group across 1 directory with 4
updates by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1739">actions/checkout#1739</a></li>
<li>Bump actions/checkout from 3 to 4 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1697">actions/checkout#1697</a></li>
<li>Check out other refs/* by commit by <a
href="https://github.com/orhantoy"><code>@​orhantoy</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1774">actions/checkout#1774</a></li>
<li>Pin actions/checkout's own workflows to a known, good, stable
version. by <a href="https://github.com/jww3"><code>@​jww3</code></a> in
<a
href="https://redirect.github.com/actions/checkout/pull/1776">actions/checkout#1776</a></li>
</ul>
<h2>v4.1.6</h2>
<ul>
<li>Check platform to set archive extension appropriately by <a
href="https://github.com/cory-miller"><code>@​cory-miller</code></a> in
<a
href="https://redirect.github.com/actions/checkout/pull/1732">actions/checkout#1732</a></li>
</ul>
<h2>v4.1.5</h2>
<ul>
<li>Update NPM dependencies by <a
href="https://github.com/cory-miller"><code>@​cory-miller</code></a> in
<a
href="https://redirect.github.com/actions/checkout/pull/1703">actions/checkout#1703</a></li>
<li>Bump github/codeql-action from 2 to 3 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1694">actions/checkout#1694</a></li>
<li>Bump actions/setup-node from 1 to 4 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1696">actions/checkout#1696</a></li>
<li>Bump actions/upload-artifact from 2 to 4 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1695">actions/checkout#1695</a></li>
<li>README: Suggest <code>user.email</code> to be
<code>41898282+github-actions[bot]@users.noreply.github.com</code> by <a
href="https://github.com/cory-miller"><code>@​cory-miller</code></a> in
<a
href="https://redirect.github.com/actions/checkout/pull/1707">actions/checkout#1707</a></li>
</ul>
<h2>v4.1.4</h2>
<ul>
<li>Disable <code>extensions.worktreeConfig</code> when disabling
<code>sparse-checkout</code> by <a
href="https://github.com/jww3"><code>@​jww3</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1692">actions/checkout#1692</a></li>
<li>Add dependabot config by <a
href="https://github.com/cory-miller"><code>@​cory-miller</code></a> in
<a
href="https://redirect.github.com/actions/checkout/pull/1688">actions/checkout#1688</a></li>
<li>Bump the minor-actions-dependencies group with 2 updates by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1693">actions/checkout#1693</a></li>
<li>Bump word-wrap from 1.2.3 to 1.2.5 by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1643">actions/checkout#1643</a></li>
</ul>
<h2>v4.1.3</h2>
<ul>
<li>Check git version before attempting to disable
<code>sparse-checkout</code> by <a
href="https://github.com/jww3"><code>@​jww3</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1656">actions/checkout#1656</a></li>
<li>Add SSH user parameter by <a
href="https://github.com/cory-miller"><code>@​cory-miller</code></a> in
<a
href="https://redirect.github.com/actions/checkout/pull/1685">actions/checkout#1685</a></li>
<li>Update <code>actions/checkout</code> version in
<code>update-main-version.yml</code> by <a
href="https://github.com/jww3"><code>@​jww3</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1650">actions/checkout#1650</a></li>
</ul>
<h2>v4.1.2</h2>
<ul>
<li>Fix: Disable sparse checkout whenever <code>sparse-checkout</code>
option is not present <a
href="https://github.com/dscho"><code>@​dscho</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1598">actions/checkout#1598</a></li>
</ul>
<h2>v4.1.1</h2>
<ul>
<li>Correct link to GitHub Docs by <a
href="https://github.com/peterbe"><code>@​peterbe</code></a> in <a
href="https://redirect.github.com/actions/checkout/pull/1511">actions/checkout#1511</a></li>
<li>Link to release page from what's new section by <a
href="https://github.com/cory-miller"><code>@​cory-miller</code></a> in
<a
href="https://redirect.github.com/actions/checkout/pull/1514">actions/checkout#1514</a></li>
</ul>
<h2>v4.1.0</h2>
<ul>
<li><a href="https://redirect.github.com/actions/checkout/pull/1396">Add
support for partial checkout filters</a></li>
</ul>
<h2>v4.0.0</h2>
<ul>
<li><a
href="https://redirect.github.com/actions/checkout/pull/1067">Support
fetching without the --progress option</a></li>
<li><a
href="https://redirect.github.com/actions/checkout/pull/1436">Update to
node20</a></li>
</ul>
<h2>v3.6.0</h2>
<ul>
<li><a
href="https://redirect.github.com/actions/checkout/pull/1377">Fix: Mark
test scripts with Bash'isms to be run via Bash</a></li>
<li><a href="https://redirect.github.com/actions/checkout/pull/579">Add
option to fetch tags even if fetch-depth &gt; 0</a></li>
</ul>
<h2>v3.5.3</h2>
<ul>
<li><a
href="https://redirect.github.com/actions/checkout/pull/1196">Fix:
Checkout fail in self-hosted runners when faulty submodule are
checked-in</a></li>
<li><a href="https://redirect.github.com/actions/checkout/pull/1287">Fix
typos found by codespell</a></li>
</ul>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/actions/checkout/commit/692973e3d937129bcbf40652eb9f2f61becf3332"><code>692973e</code></a>
Prepare 4.1.7 release (<a
href="https://redirect.github.com/actions/checkout/issues/1775">#1775</a>)</li>
<li><a
href="https://github.com/actions/checkout/commit/6ccd57f4c5d15bdc2fef309bd9fb6cc9db2ef1c6"><code>6ccd57f</code></a>
Pin actions/checkout's own workflows to a known, good, stable version.
(<a
href="https://redirect.github.com/actions/checkout/issues/1776">#1776</a>)</li>
<li><a
href="https://github.com/actions/checkout/commit/b17fe1e4d59a9d1d95a7aead5e6fcd13e50939a5"><code>b17fe1e</code></a>
Handle hidden refs (<a
href="https://redirect.github.com/actions/checkout/issues/1774">#1774</a>)</li>
<li><a
href="https://github.com/actions/checkout/commit/b80ff79f1755d06ba70441c368a6fe801f5f3a62"><code>b80ff79</code></a>
Bump actions/checkout from 3 to 4 (<a
href="https://redirect.github.com/actions/checkout/issues/1697">#1697</a>)</li>
<li><a
href="https://github.com/actions/checkout/commit/b1ec3021b8fa02164da82ca1557d017d83b0e179"><code>b1ec302</code></a>
Bump the minor-npm-dependencies group across 1 directory with 4 updates
(<a
href="https://redirect.github.com/actions/checkout/issues/1739">#1739</a>)</li>
<li>See full diff in <a
href="https://github.com/actions/checkout/compare/a5ac7e51b41094c92402da3b24376905380afc29...692973e3d937129bcbf40652eb9f2f61becf3332">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=actions/checkout&package-manager=github_actions&previous-version=4.1.6&new-version=4.1.7)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

You can trigger a rebase of this PR by commenting `@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

> **Note**
> Automatic rebases have been disabled on this pull request as it has
been open for over 30 days.

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…red/golang (#34724)

Bumps debian from `804194b` to `67f3931`.


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=debian&package-manager=docker&previous-version=bookworm-slim&new-version=bookworm-slim)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

You can trigger a rebase of this PR by commenting `@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

> **Note**
> Automatic rebases have been disabled on this pull request as it has
been open for over 30 days.

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…hared/postgres (#34745)

Bumps postgres from `1bf73cc` to `f08a57b`.


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=postgres&package-manager=docker&previous-version=latest&new-version=latest)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…in /examples/shared/node (#35041)

Bumps node from 22.2-bookworm-slim to 22.4-bookworm-slim.


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=node&package-manager=docker&previous-version=22.2-bookworm-slim&new-version=22.4-bookworm-slim)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps [flake8](https://github.com/pycqa/flake8) from 7.0.0 to 7.1.0.
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/PyCQA/flake8/commit/65a38c42a7f1a05ff8d99b313160754fc9b7a0d8"><code>65a38c4</code></a>
Release 7.1.0</li>
<li><a
href="https://github.com/PyCQA/flake8/commit/34c97e046a459b0682c82660f16c620369abd6b7"><code>34c97e0</code></a>
Merge pull request <a
href="https://redirect.github.com/pycqa/flake8/issues/1939">#1939</a>
from PyCQA/new-pycodestyle</li>
<li><a
href="https://github.com/PyCQA/flake8/commit/defd315175b7b77472affb61a410e5720dabdc1a"><code>defd315</code></a>
latest pycodestyle</li>
<li><a
href="https://github.com/PyCQA/flake8/commit/408d4d695c71b0b232cea576876e757c87a3379c"><code>408d4d6</code></a>
Merge pull request <a
href="https://redirect.github.com/pycqa/flake8/issues/1930">#1930</a>
from mzagol/patch-1</li>
<li><a
href="https://github.com/PyCQA/flake8/commit/866ad729c64eea359960a8ac4e3f1201104ee55c"><code>866ad72</code></a>
Add --extend-exclude to the TOC</li>
<li><a
href="https://github.com/PyCQA/flake8/commit/33e508307ac4545a45472fdc32c6eaadbc7b9580"><code>33e5083</code></a>
Merge pull request <a
href="https://redirect.github.com/pycqa/flake8/issues/1923">#1923</a>
from Viicos/entry-points-docs</li>
<li><a
href="https://github.com/PyCQA/flake8/commit/6659b213c9aa8fa49235e13a365fcd34f58cbc6b"><code>6659b21</code></a>
Fix toctree ordering in index</li>
<li><a
href="https://github.com/PyCQA/flake8/commit/ba0f56610adbd4d8733772ce1c63efcab1b70079"><code>ba0f566</code></a>
Use explicit external references</li>
<li><a
href="https://github.com/PyCQA/flake8/commit/350f2545fd3ec75640a1605e4995a2f921e8b38b"><code>350f254</code></a>
Use explicit external references</li>
<li><a
href="https://github.com/PyCQA/flake8/commit/49f52a8598d8a934b07f367a1b3ad87dbe51be5b"><code>49f52a8</code></a>
Update documentation regarding entry points</li>
<li>Additional commits viewable in <a
href="https://github.com/pycqa/flake8/compare/7.0.0...7.1.0">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=flake8&package-manager=pip&previous-version=7.0.0&new-version=7.1.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…4923)

Bumps [setuptools](https://github.com/pypa/setuptools) from 70.0.0 to
70.1.1.
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/pypa/setuptools/blob/main/NEWS.rst">setuptools's
changelog</a>.</em></p>
<blockquote>
<h1>v70.1.1</h1>
<h2>Misc</h2>
<ul>
<li><a
href="https://redirect.github.com/pypa/setuptools/issues/4429">#4429</a></li>
</ul>
<h1>v70.1.0</h1>
<h2>Features</h2>
<ul>
<li>
<p>Adopted the <code>bdist_wheel</code> command from the
<code>wheel</code> project -- by :user:<code>agronholm</code> (<a
href="https://redirect.github.com/pypa/setuptools/issues/1386">#1386</a>)</p>
</li>
<li>
<p>Improve error message when <code>pkg_resources.ZipProvider</code>
tries to extract resources with a missing Egg -- by
:user:<code>Avasam</code></p>
<p>Added variables and parameter type annotations to
<code>pkg_resources</code> to be nearly on par with typeshed.* -- by
:user:<code>Avasam</code>
* Excluding <code>TypeVar</code> and <code>overload</code>. Return types
are currently inferred. (<a
href="https://redirect.github.com/pypa/setuptools/issues/4246">#4246</a>)</p>
</li>
<li>
<p>Migrated Setuptools' own config to pyproject.toml (<a
href="https://redirect.github.com/pypa/setuptools/issues/4310">#4310</a>)</p>
</li>
</ul>
<h2>Bugfixes</h2>
<ul>
<li>Prevent a <code>TypeError: 'NoneType' object is not callable</code>
when <code>shutil_rmtree</code> is called without an <code>onexc</code>
parameter on Python&lt;=3.11 -- by :user:<code>Avasam</code> (<a
href="https://redirect.github.com/pypa/setuptools/issues/4382">#4382</a>)</li>
<li>Replace use of mktemp with can_symlink from the stdlib test suite.
(<a
href="https://redirect.github.com/pypa/setuptools/issues/4403">#4403</a>)</li>
<li>Improvement for <code>attr:</code> directives in configuration to
handle
more edge cases related to complex <code>package_dir</code>. (<a
href="https://redirect.github.com/pypa/setuptools/issues/4405">#4405</a>)</li>
<li>Fix accidental implicit string concatenation. (<a
href="https://redirect.github.com/pypa/setuptools/issues/4411">#4411</a>)</li>
</ul>
<h2>Misc</h2>
<ul>
<li><a
href="https://redirect.github.com/pypa/setuptools/issues/4365">#4365</a>,
<a
href="https://redirect.github.com/pypa/setuptools/issues/4422">#4422</a></li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/pypa/setuptools/commit/222ebf921a4a1cca69d6a5193121f3090580e502"><code>222ebf9</code></a>
Bump version: 70.1.0 → 70.1.1</li>
<li><a
href="https://github.com/pypa/setuptools/commit/a66cedcb6be6f89729452a28c587673b119bed06"><code>a66cedc</code></a>
&quot;Embed&quot; test_bdist_wheel files and execution (<a
href="https://redirect.github.com/pypa/setuptools/issues/4429">#4429</a>)</li>
<li><a
href="https://github.com/pypa/setuptools/commit/48ce5edb10e034b058682dc923c17bf138f95a65"><code>48ce5ed</code></a>
pkg_resources: Merge <code>@overload</code> and <code>TypeVar</code>
annotations from typeshed (<a
href="https://redirect.github.com/pypa/setuptools/issues/4390">#4390</a>)</li>
<li><a
href="https://github.com/pypa/setuptools/commit/11bd24c785b762aec2419607ad23418f958ca33b"><code>11bd24c</code></a>
Use set instead of True-only dict for non-public names (<a
href="https://redirect.github.com/pypa/setuptools/issues/4381">#4381</a>)</li>
<li><a
href="https://github.com/pypa/setuptools/commit/82145bc7fe2e63201dbf14d87055663b42b261d6"><code>82145bc</code></a>
Merge branch 'main' of <a
href="https://github.com/pypa/setuptools">https://github.com/pypa/setuptools</a>
into typeshed-overl...</li>
<li><a
href="https://github.com/pypa/setuptools/commit/807d7c14bd11709f51b2d32a9ead08604ce05d44"><code>807d7c1</code></a>
Move check to _fn</li>
<li><a
href="https://github.com/pypa/setuptools/commit/2adbd4ff29fa5c1115c24df35517eb4daf71455f"><code>2adbd4f</code></a>
Simplify setuptools own <code>tool.setuptools.packages.find</code> by
using include rule...</li>
<li><a
href="https://github.com/pypa/setuptools/commit/b4f5a07734dc8c2bfc6456b3ceb0538095bbc8aa"><code>b4f5a07</code></a>
Add news fragment</li>
<li><a
href="https://github.com/pypa/setuptools/commit/ffea3b0abc3425e21c578bcd1460e366f7d0f34f"><code>ffea3b0</code></a>
Remove no longer used bdist_wheel_testdata directory</li>
<li><a
href="https://github.com/pypa/setuptools/commit/61e18ff75de5e77b2587efaa56f473e3ed78936d"><code>61e18ff</code></a>
Adopt latest change from wheel test</li>
<li>Additional commits viewable in <a
href="https://github.com/pypa/setuptools/compare/v70.0.0...v70.1.1">compare
view</a></li>
</ul>
</details>
<br />


Signed-off-by: Ryan Northey <ryan@synca.io>
Co-authored-by: Ryan Northey <ryan@synca.io>
birenroy and others added 29 commits July 29, 2024 21:43
Updates Envoy code that depends on QUICHE HTTP/2 libraries to reference
the new location of some header files.

Commit Message: fixes QUICHE HTTP/2 includes
Additional Description:
Risk Level: low
Testing: ran unit and integration tests locally
Docs Changes:
Release Notes:
Platform Specific Features:

---------

Signed-off-by: Biren Roy <birenroy@google.com>

Signed-off-by: Ryan Northey <ryan@synca.io>
This PR adds an optional parameter to indicate whether a request is an
idempotent in the `sendHeaders`. This can be useful to automatically add
a retry policy, such as `http3-post-connect-failure` when the
`idempotent` flag is set. This makes the Envoy Mobile API similar to
Cronet API. The Cronvoy implementation has also been updated to respect
the `idempotency` flag.

Risk Level: low
Testing: unit test
Docs Changes: n/a
Release Notes: n/a
Platform Specific Features: mobile

---------

Signed-off-by: Fredy Wijaya <fredyw@google.com>
Update QUICHE from f8ca4ffbe to f4ed5e0c7
https://github.com/google/quiche/compare/f8ca4ffbe..f4ed5e0c7
    
```
$ git log f8ca4ffbe..f4ed5e0c7 --date=short --no-merges --format="%ad %al %s"

2024-07-26 rch Modernize the HTTP/3 HttpDecoder by using non-const references in place of non-null pointers, when they do not outlive the call. Annotate with absl::NonNull when pointer do outlive the call.
2024-07-25 quiche-dev Add method to serialize connection close packet with large packet number
2024-07-24 birenroy Always obeys BalsaFrame::invalid_chars_level_ when parsing header fields.
2024-07-24 wub Inline QuicDispatcher::BufferEarlyPacket() from all call sites, and remove this function.
2024-07-22 quiche-dev Fix bug for call to Visitor::OnWrite()
2024-07-19 vasilvv Bump version number to draft-05.
2024-07-19 vasilvv Implement draft-05 SUBSCRIBE/SUBSCRIBE_UPDATE
2024-07-18 vasilvv Support serialization and parsing for MoQT draft-05 group order in SUBSCRIBE_OK.
2024-07-18 vasilvv Support serialization and parsing for MoQT draft-05 publisher priority.
2024-07-18 vasilvv Refactor MoQT sending logic to pull objects from the application, instead of pushing them onto individual MoQT sessions.
2024-07-18 birenroy Updates SpdyFrameSequence::GetIR() to return a pointer rather than a reference.
2024-07-18 danzh Unhide security fix to QuicStreamSequencerBuffer added in cl/626072759.
2024-07-18 fayang Add NOIP connection option and AddConnectionOptionsToSend method.
```

---------

Signed-off-by: Fredy Wijaya <fredyw@google.com>
These configs have been around for a few releases, and
seem to be stable. Removing this status so that Envoy no longer warns
when they are used.

Signed-off-by: Greg Greenway <ggreenway@apple.com>
Signed-off-by: Adi Suissa-Peleg <adip@google.com>
When the thread terminates, the `thread_local` storage will be
destroyed. However, the `GlobalRef` `jclass` references inside the
`thread_local` don't get destroyed automatically causing a leak. This PR
fixes it by wrapping the `jclass` with an RAII-style wrapper,
`GlobalRefUniquePtr` that has a custom deleter to delete the `GlobalRef`
upon `threal_local` destruction.

Risk Level: low
Testing: CI
Docs Changes: n/a
Release Notes: n/a
Platform Specific Features: mobile

Signed-off-by: Fredy Wijaya <fredyw@google.com>
…rs_before_disabling_read` (#35502)

Remove
`envoy.reloadable_features.upstream_wait_for_response_headers_before_disabling_read`
and update change log.

Risk Level: low
Testing: N/A
Docs Changes: N/A
Release Notes: Yes
Platform Specific Features: N/A
Fixes #30427

Signed-off-by: Dan Zhang <danzh@google.com>
Co-authored-by: Dan Zhang <danzh@google.com>
…280)

Commit Message: access log: added new START_TIME_LOCAL & EMIT_TIME_LOCAL
command
Additional Description:

Same as START_TIME & EMIT_TIME, but use local time zone.

close #35116 

Risk Level: low.
Testing: unit.
Docs Changes: added.
Release Notes: TODO.
Platform Specific Features: n/a.

---------

Signed-off-by: doujiang24 <doujiang24@gmail.com>
…#35503)

HttpServerPropertiesCacheManager was created in a weird way using the
singleton manager and creating at whichever call site instantiated it
first. Changing to be a proper server-wide manager as most managers are.

Risk Level: low
Testing: updated tests
Docs Changes: n/a
Release Notes: n/a

---------

Signed-off-by: Alyssa Wilk <alyssar@chromium.org>
Risk Level: low
Testing: updated tests
Docs Changes: n/a
Release Notes: n/a
envoyproxy/envoy-mobile#176

Signed-off-by: Alyssa Wilk <alyssar@chromium.org>
Fixes #35467

The failure is not during an important part of
the test, but we are receiving some packet while there is no socket
interface. To workaround this, do an atomic swap of the interface
pointer so there is never a time when we don't have a socket interface.

Signed-off-by: Greg Greenway <ggreenway@apple.com>
Commit Message: date formatter: fix the precision of date formatter
Additional Description:

In the previous implementation, the `DateFormatter` doesn't provide the
full featured `absl::FormatTime` support. (Only seconds level precision
is supported and the extended subseconds specifiers (`%E#S, %E*S, %E#f,
%E*f` cannot work correctly).

This PR refactored the DateFormatter class to provide related support. 

Risk Level: mid, core class.
Testing: unit.
Docs Changes: n/a.
Release Notes: n/a.
Platform Specific Features: n/a.

---------

Signed-off-by: wbpcode <wbphub@gmail.com>
… via a hardcoded dynamic metadata field (#34184)

<!--
!!!ATTENTION!!!

If you are fixing *any* crash or *any* potential security issue, *do
not*
open a pull request in this repo. Please report the issue via emailing
envoy-security@googlegroups.com where the issue will be triaged
appropriately.
Thank you in advance for helping to keep Envoy secure.

!!!ATTENTION!!!

For an explanation of how to fill out the fields, please see the
relevant section
in
[PULL_REQUESTS.md](https://github.com/envoyproxy/envoy/blob/main/PULL_REQUESTS.md)
-->

Commit Message: Adds the ability to set the hits_addend for a given
rate_limit request via a hardcoded dynamic metadata field:
envoy.ratelimit:hits_addend.
Additional Description: 
Risk Level: Low
Testing: Added unit test. I have also manually tested this using
gloo-edge as the control-plane.
Docs Changes:
Release Notes:
Platform Specific Features: N/A
[Optional Runtime guard:] N/A
[Optional Fixes #Issue] N/A
[Optional Fixes commit #PR or SHA] N/A
[Optional Deprecated:] N/A
[Optional [API
Considerations](https://github.com/envoyproxy/envoy/blob/main/api/review_checklist.md):]
N/A

---------

Signed-off-by: Eitan Yarmush <eitan.yarmush@solo.io>
Signed-off-by: code <wbphub@gmail.com>
Co-authored-by: code <wbphub@gmail.com>
Created by Envoy dependency bot for @phlax

Fix #34792 

Signed-off-by: dependency-envoy[bot]
<148525496+dependency-envoy[bot]@users.noreply.github.com>

---------

Signed-off-by: Ryan Northey <ryan@synca.io>
Co-authored-by: dependency-envoy[bot] <148525496+dependency-envoy[bot]@users.noreply.github.com>
Co-authored-by: Ryan Northey <ryan@synca.io>
…5492)


Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>

Signed-off-by: Alyssa Wilk <alyssar@chromium.org>
There are some variables that are only used if
check_for_deferred_close is true. Move them to be inside the `if
(check_for_deferred_close)` block.

Signed-off-by: antoniovleonti <leonti@google.com>
This is to address the 1st step, i.e, the API change needed for
envoyproxy/envoy#35488.

---------

Signed-off-by: Yanjun Xiang <yanjunxiang@google.com>
Signed-off-by: Vikas Choudhary <choudharyvikas16@gmail.com>
…n only one copy of StreamFilterBase. (#35341)

Change Stream(Decode|Encode)Filter to inherit from StreamFilterBase
virtually.
Move the default implementation of
PassThrough(Decoder|Encode)Filter::onDestroy into StreamFilterBase.

---------

Signed-off-by: Bin Wu <wub@google.com>
---------

Signed-off-by: chenylh <chenyuliang@jd.com>
When the ``AsyncTcpClient`` is being destroyed but it
also has an active client connection, there's a crash since during the
instance destruction, the ``ClientConnection`` object would also be
destroyed, causing ``raiseEvent`` to be called back to
``AsyncTcpClient`` while it is being destroyed

Caught with the following stack trace:
```
Caught Segmentation fault, suspect faulting address 0x0
Backtrace (use tools/stack_decode.py to get line numbers):
Envoy version: ee8c765a07037033766ea556c032120b497152b3/1.27.0/Clean/RELEASE/BoringSSL
#0: __restore_rt [0x7d80ab903420]
#1: Envoy::Extensions::AccessLoggers::Fluentd::FluentdAccessLoggerImpl::onEvent() [0x58313528746b]
#2: Envoy::Tcp::AsyncTcpClientImpl::onEvent() [0x5831359da00a]
#3: Envoy::Network::ConnectionImplBase::raiseConnectionEvent() [0x583135f0521d]
#4: Envoy::Network::ConnectionImpl::raiseEvent() [0x583135e9fed9]
#5: Envoy::Network::ConnectionImpl::closeSocket() [0x583135e9f90c]
#6: Envoy::Network::ConnectionImpl::close() [0x583135e9e54c]
#7: Envoy::Network::ConnectionImpl::~ConnectionImpl() [0x583135e9de5c]
#8: Envoy::Network::ClientConnectionImpl::~ClientConnectionImpl() [0x5831355fd25e]
#9: Envoy::Tcp::AsyncTcpClientImpl::~AsyncTcpClientImpl() [0x5831359da247]
#10: Envoy::Extensions::AccessLoggers::Fluentd::FluentdAccessLoggerImpl::~FluentdAccessLoggerImpl() [0x583135289350]
#11: Envoy::Extensions::AccessLoggers::Fluentd::FluentdAccessLog::ThreadLocalLogger::~ThreadLocalLogger() [0x58313528adbf]
#12: Envoy::ThreadLocal::InstanceImpl::shutdownThread() [0x58313560373a]
#13: Envoy::Server::WorkerImpl::threadRoutine() [0x583135630c0a]
#14: Envoy::Thread::ThreadImplPosix::ThreadImplPosix()::{lambda()#1}::__invoke() [0x5831364e88d5]
#15: start_thread [0x7d80ab8f7609]
```
Risk Level: low
Testing: unit tests
Docs Changes: none
Release Notes: none
Platform Specific Features: none

---------

Signed-off-by: Ohad Vano <ohadvano@gmail.com>
Commit Message: Switch to using `wait_for_log_contains` to fix race
condition between stats increment and log flushing when expecting a LOG
line caused by QUIC connection closing.
Additional Description:
Risk Level:
Testing:
Docs Changes:
Release Notes:
Platform Specific Features:
Fixes #34492

Signed-off-by: Will Lampert <wlampert@google.com>
Go 1.20 has already reached EOF a few months ago.

Signed-off-by: Takeshi Yoneda <t.y.mathetake@gmail.com>
Since we are probing the Google DNS server, we should specify the DNS
port, which is 53.

Risk Level: low
Testing: n/a
Docs Changes: n/a
Release Notes: n/a
Platform Specific Features: mobile

Signed-off-by: Fredy Wijaya <fredyw@google.com>

Signed-off-by: Ryan Northey <ryan@synca.io>
…(#35529)

Commit Message: remove
`envoy.restart_features.udp_read_normalize_addresses` and update change
log.

Risk Level: low
Testing: N/A
Docs Changes: N/A
Release Notes: Yes
Platform Specific Features: N/A
Fixes #30430

---------

Signed-off-by: Dan Zhang <danzh@google.com>
Co-authored-by: Dan Zhang <danzh@google.com>
@tedjpoole tedjpoole closed this Aug 2, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.