Bump jsonpath-ng from 1.7.0 to 1.8.0#213
Conversation
Bumps [jsonpath-ng](https://github.com/h2non/jsonpath-ng) from 1.7.0 to 1.8.0. - [Release notes](https://github.com/h2non/jsonpath-ng/releases) - [Changelog](https://github.com/h2non/jsonpath-ng/blob/master/CHANGELOG.md) - [Commits](h2non/jsonpath-ng@v1.7.0...v1.8.0) --- updated-dependencies: - dependency-name: jsonpath-ng dependency-version: 1.8.0 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com>
LabelsThe following labels could not be found: Please fix the above issues or remove invalid values from |
|
The latest updates on your projects. Learn more about Vercel for GitHub.
|
|
Review the following changes in direct dependencies. Learn more about Socket for GitHub.
|
|
Caution Review the following alerts detected in dependencies. According to your organization's Security Policy, you must resolve all "Block" alerts before proceeding. Learn more about Socket for GitHub.
|
guibranco
left a comment
There was a problem hiding this comment.
Automatically approved by gstraccini[bot]
|
|
Overall Grade |
Security Reliability Complexity Hygiene |
Code Review Summary
| Analyzer | Status | Updated (UTC) | Details |
|---|---|---|---|
| Secrets | Apr 20, 2026 1:33p.m. | Review ↗ | |
| Python | Apr 20, 2026 1:33p.m. | Review ↗ |
Important
AI Review is run only on demand for your team. We're only showing results of static analysis review right now. To trigger AI Review, comment @deepsourcebot review on this thread.
|
Infisical secrets check: ✅ No secrets leaked! 💻 Scan logs2026-04-20T13:33:57Z INF scanning for exposed secrets...
1:33PM INF 136 commits scanned.
2026-04-20T13:33:57Z INF scan completed in 22.4ms
2026-04-20T13:33:57Z INF no leaks found
|
Up to standards ✅🟢 Issues
|
| Metric | Results |
|---|---|
| Duplication | 0 |
TIP This summary will be updated as you push new changes. Give us feedback
Bumps jsonpath-ng from 1.7.0 to 1.8.0.
Changelog
Sourced from jsonpath-ng's changelog.
Commits
e59ead3Release v1.8.0ee53af8Update setup.py485ffb3Update requirements.txte00121bFix a number of bugs uncovered by roundtrip testingeeed776Remove pickle support in ply modules314401cVendor ply as it is no longer maintaineda44b275Bump github/codeql-action from 3 to 49878070Bump actions/checkout from 5 to 60ff6eddTest with Python 3.143fb3558Remove official support for Python 3.8 and 3.9Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)