Merge pull request #1811 from GSA/dependabot/pip/bandit-1.8.6

Bump bandit from 1.8.5 to 1.8.6
This commit is contained in:
Alex Janousek
2025-07-08 08:29:34 -04:00
committed by GitHub

6
poetry.lock generated
View File

@@ -266,14 +266,14 @@ s3transfer = ">=0.13.0,<0.14.0"
[[package]]
name = "bandit"
version = "1.8.5"
version = "1.8.6"
description = "Security oriented static analyser for python code."
optional = false
python-versions = ">=3.9"
groups = ["dev"]
files = [
{file = "bandit-1.8.5-py3-none-any.whl", hash = "sha256:cb2e57524e99e33ced48833c6cc9c12ac78ae970bb6a450a83c4b506ecc1e2f9"},
{file = "bandit-1.8.5.tar.gz", hash = "sha256:db812e9c39b8868c0fed5278b77fffbbaba828b4891bc80e34b9c50373201cfd"},
{file = "bandit-1.8.6-py3-none-any.whl", hash = "sha256:3348e934d736fcdb68b6aa4030487097e23a501adf3e7827b63658df464dddd0"},
{file = "bandit-1.8.6.tar.gz", hash = "sha256:dbfe9c25fc6961c2078593de55fd19f2559f9e45b99f1272341f5b95dea4e56b"},
]
[package.dependencies]