Skip to content

chore: Bump bandit from 1.11.0 to 1.11.1#1015

Open
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/hex/bandit-1.11.1
Open

chore: Bump bandit from 1.11.0 to 1.11.1#1015
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/hex/bandit-1.11.1

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github May 14, 2026

Bumps bandit from 1.11.0 to 1.11.1.

Changelog

Sourced from bandit's changelog.

1.11.1 (13 May 2026)

Fixes

Changes

  • We no longer disallow . and .. path components in HTTP/2 absolute paths (#581)
Commits

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file elixir Pull requests that update Elixir code labels May 14, 2026
@dependabot dependabot Bot requested a review from a team as a code owner May 14, 2026 13:25
@dependabot dependabot Bot requested review from dks-mbta and removed request for a team May 14, 2026 13:25
Bumps [bandit](https://github.com/mtrudel/bandit) from 1.11.0 to 1.11.1.
- [Changelog](https://github.com/mtrudel/bandit/blob/main/CHANGELOG.md)
- [Commits](mtrudel/bandit@1.11.0...1.11.1)

---
updated-dependencies:
- dependency-name: bandit
  dependency-version: 1.11.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/hex/bandit-1.11.1 branch from dc45714 to 64f50b9 Compare May 14, 2026 16:58
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file elixir Pull requests that update Elixir code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants