Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Oct 24, 2022

Bumps pex from 2.1.105 to 2.1.112.

Release notes

Sourced from pex's releases.

pex 2.1.112


2.1.112

This release brings support for the latest Pip release and includes some internal changes to help debug intermittent issues some users are seeing that implicate what may be file locking related bugs.

  • Add support for --pip-version 22.3. (#1953)

pex 2.1.111


2.1.111

This release fixes resolving requirements from a lock using arbitrary equality (===).

In addition, you can now "inject" runtime environment variables and arguments into PEX files such that, when run, the PEX runtime ensures those environment variables and command line arguments are passed to the PEXed application. See PEX Recipes for more information.

  • Fix lock resolution to handle arbitrary equality. (#1951)
  • Support injecting args and env vars in a PEX. (#1948)

pex 2.1.110


2.1.110

This release fixes Pex runtime sys.path scrubbing for cases where Pex is not the main entry point. An important example of this is in Lambdex where the AWS Lambda Python runtime packages (boto3 and botocore) are leaked into the PEX runtime sys.path.

  • Fix sys.path scrubbing. (#1946)

pex 2.1.109


2.1.109

This release brings musllinux wheel support and a fix for a regression introduced in Pex 2.1.105 by #1902 that caused PEX_PATH= (an exported PEX_PATH with an empty string value) to raise an error in almost all use cases.

  • Vendor latest packaging; support musllinux wheels. (#1937)

... (truncated)

Changelog

Sourced from pex's changelog.

2.1.112

This release brings support for the latest Pip release and includes some internal changes to help debug intermittent issues some users are seeing that implicate what may be file locking related bugs.

  • Add support for --pip-version 22.3. (#1953) PR [#1953](https://github.com/pantsbuild/pex/issues/1953) <https://github.com/pantsbuild/pex/pull/1953>_

2.1.111

This release fixes resolving requirements from a lock using arbitrary equality (===).

In addition, you can now "inject" runtime environment variables and arguments into PEX files such that, when run, the PEX runtime ensures those environment variables and command line arguments are passed to the PEXed application. See PEX Recipes <https://pex.readthedocs.io/en/latest/recipes.html #uvicorn-and-other-customizable-application-servers>_ for more information.

  • Fix lock resolution to handle arbitrary equality. (#1951) PR [#1951](https://github.com/pantsbuild/pex/issues/1951) <https://github.com/pantsbuild/pex/pull/1951>_

  • Support injecting args and env vars in a PEX. (#1948) PR [#1948](https://github.com/pantsbuild/pex/issues/1948) <https://github.com/pantsbuild/pex/pull/1948>_

2.1.110

This release fixes Pex runtime sys.path scrubbing for cases where Pex is not the main entry point. An important example of this is in Lambdex where the AWS Lambda Python runtime packages (boto3 and botocore) are leaked into the PEX runtime sys.path.

  • Fix sys.path scrubbing. (#1946) PR [#1946](https://github.com/pantsbuild/pex/issues/1946) <https://github.com/pantsbuild/pex/pull/1946>_

2.1.109

This release brings musllinux wheel support and a fix for a regression introduced in Pex 2.1.105 by #1902 that caused PEX_PATH= (an exported PEX_PATH with an empty string value) to raise an error in almost all use cases.

  • Vendor latest packaging; support musllinux wheels. (#1937)

... (truncated)

Commits

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [pex](https://github.com/pantsbuild/pex) from 2.1.105 to 2.1.112.
- [Release notes](https://github.com/pantsbuild/pex/releases)
- [Changelog](https://github.com/pantsbuild/pex/blob/main/CHANGES.rst)
- [Commits](pex-tool/pex@v2.1.105...v2.1.112)

---
updated-dependencies:
- dependency-name: pex
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Oct 24, 2022
@codecov
Copy link

codecov bot commented Oct 24, 2022

Codecov Report

Merging #233 (6ed3eb3) into main (95117b0) will not change coverage.
The diff coverage is n/a.

@@            Coverage Diff            @@
##              main      #233   +/-   ##
=========================================
  Coverage   100.00%   100.00%           
=========================================
  Files            6         6           
  Lines          472       472           
  Branches        76        67    -9     
=========================================
  Hits           472       472           

Help us with your feedback. Take ten seconds to tell us how you rate us. Have a feature suggestion? Share it here.

@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Nov 4, 2022

Superseded by #235.

@dependabot dependabot bot closed this Nov 4, 2022
@dependabot dependabot bot deleted the dependabot/pip/pex-2.1.112 branch November 4, 2022 04:02
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant