Skip to content

chore(deps-dev): bump the pylint group across 1 directory with 2 updates - #1529

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/pip/pylint-a5d59e72ce
Open

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/pip/pylint-a5d59e72ce

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jun 15, 2026 •

Copy link
Copy Markdown
Contributor

Bumps the pylint group with 2 updates in the / directory: astroid and pylint.

Updates astroid from 4.0.2 to 4.3.3

Release notes

Sourced from astroid's releases.

v4.3.3

What's new in astroid 4.3.3?

Release date: 2026-09-30

Bug Fixes

  • Preserve the length of inferred list and tuple concatenations when an element has multiple possible values. An ambiguous or uninferable element is now represented as unknown instead of being expanded into multiple sequence items.

    Refs #3221 Closes pylint-dev/pylint#2621

  • Fix TypeError in ClassDef.getitem when __class_getitem__ is uninferable.

    Closes #3312

  • Fix AssertionError in NodeNG.root() when inferring Class.__bases__, which previously returned a parentless Tuple.

    Closes pylint-dev/pylint#11491

v4.3.2

What's new in astroid 4.3.2?

Release date: 2026-09-25

Bug Fixes

  • Fix a crash when a namedtuple or Enum type name or field name contains str.format markup, as in namedtuple("{0}", "abc"). The name is interpolated into an error message that astroid then reformats, so building the message raised IndexError. Inference now falls back to its default.

    Closes #3199

  • Infer a functional TypeVar or NewType whose name is not an identifier without splicing that name into the synthesized class source. A crafted value such as TypeVar("T(Base): #") no longer breaks out of the identifier position to inject bases or a body; the name is assigned to the class verbatim.

    Refs #3217

  • Raise InferenceError instead of crashing with IndexError when a class uses six.with_metaclass() with no positional metaclass argument, both while

... (truncated)

Changelog

Sourced from astroid's changelog.

=================== astroid's ChangeLog

The changes for astroid 4.3.0 and later are documented in doc/whatsnew/ using towncrier: add a news fragment in doc/whatsnew/fragments/ instead of editing this file.

What's New in astroid 4.1.2?

Release date: 2026-03-22

  • Fix crash accessing property fset in generic classes with type annotations. Closes #2996

  • Fix infinite recursion caused by cyclic inference in Constraint.

  • Fix RecursionError in _compute_mro() when circular class hierarchies are created through runtime name rebinding. Circular bases are now resolved to the original class instead of recursing.

    Closes #2967 Closes pylint-dev/pylint#10821

  • Fix DuplicateBasesError crash in dataclass transform when a class has duplicate bases in its MRO (e.g., Protocol appearing both directly and indirectly). Catch MroError at .mro() call sites in brain_dataclasses.py, consistent with the existing pattern elsewhere.

    Closes #2628

  • Fix FunctionModel returning descriptor attributes for builtin functions.

    Closes #2743

  • Catch MemoryError when inferring f-strings with extremely large format widths (e.g. f'{0:11111111111}') so that inference yields Uninferable instead of crashing.

    Closes #2762

  • Fix ValueError in __str__/repr and error messages when nodes have extreme values (very long identifiers or large integers). Clamp pprint width to a minimum of 1 and truncate oversized values in error messages.

    Closes #2764

What's New in astroid 4.1.1?

Release date: 2026-02-22

... (truncated)

Commits
  • fc14188 Bump astroid to 4.3.3, update changelog
  • 9d97d07 [Backport maintenance/4.3.x] Fix crash when inferring Class.bases without...
  • 0698518 [Backport maintenance/4.3.x] Fix crash inferring class subscription with unin...
  • 9034c98 [Backport maintenance/4.3.x] Preserve sequence length with ambiguous elements...
  • e6e7908 Bump astroid to 4.3.2, update changelog
  • 69e47dd Point towncrier at the 4.3 what's new page on the maintenance branch
  • 164f1ef Add a CI check for missing news fragments
  • ee28385 Move the what's new documentation to a towncrier tree
  • b9d1b59 Add towncrier configuration and scripts
  • 8d33a23 [Backport maintenance/4.3.x] Catch OverflowError when inferring "c" format sp...
  • Additional commits viewable in compare view

Updates pylint from 4.0.5 to 4.1.2

Release notes

Sourced from pylint's releases.

v4.1.2

What's new in Pylint 4.1.2?

Release date: 2026-10-03

False Positives Fixed

  • Fixed a false positive unbalanced-tuple-unpacking when unpacking a tuple concatenation whose elements have several possible values.

    Fixed by upgrading astroid to 4.3.3.

    Closes #2621

Other Bug Fixes

  • Fixed a crash when calling __bases__ on a class.

    Fixed by upgrading astroid to 4.3.3.

    Closes #11491

  • Fix a crash (astroid-error) when the class of a called attribute cannot be fully inferred, for example when the attribute is used as a with statement target or inside a comprehension.

    Closes #11492

  • Fix a crash when a name bound by a type statement (a TypeVar) is used in a with statement.

    Closes #11510

  • Fixed a crash (TypeError) in the variables checker when checking a class whose metaclass name binding has no line number, for example a class defined with metaclass=__annotations__.

    Closes #11511

  • Fix a crash in the using-final-decorator-in-unsupported-version check when import final is used.

    Closes #11521

  • Fix a crash when a plugin passes confidence=None to add_message, as pylint-pytest does, for a message that is disabled. confidence=None is

... (truncated)

Commits
  • 40be3a2 Bump pylint to 4.1.2, update changelog (#11536)
  • 253023d [Backport maintenance/4.1.x] Revert confidence non nullable 11530 (#11535)
  • 9b05c7a [Backport maintenance/4.1.x] Fix crash on TypeVar used as context manager in ...
  • e44b7a4 [Backport maintenance/4.1.x] Use is_typing_member to determine if a `typing...
  • aa353f9 [Backport maintenance/4.1.x] Fix TypeError crash on metaclass with lineno-les...
  • a787175 [Backport maintenance/4.1.x] Upgrade astroid to 4.3.3 (#11514)
  • 5e1e72a [Backport maintenance/4.1.x] Fix crash (F0002) on call whose class lookup rai...
  • 8c6daca Bump pylint to 4.1.1, update changelog (#11499)
  • bdb17b3 [Backport maintenance/4.1.x] Only pin the unreleased dill for the tests (#11498)
  • 92bb7ba Bump pylint to 4.1.0, update changelog
  • Additional commits viewable in compare view

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python Pull requests that update Python code labels Jun 15, 2026
@dependabot
dependabot Bot requested a review from a team as a code owner June 15, 2026 05:16
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python Pull requests that update Python code labels Jun 15, 2026
@github-actions
github-actions Bot enabled auto-merge June 15, 2026 05:16
Gavin Barron (gavinbarron) pushed a commit that referenced this pull request Jul 9, 2026
* chore(deps): consolidate open dependabot dependency updates

Combines the 13 open dependabot PRs into a single update.

requirements-dev.txt:
- aiohttp: 3.13.5 -> 3.14.1 (#1530; supersedes #1521 -> 3.14.0)
- astroid: 4.0.2 -> 4.1.2 (pylint group #1529)
- pylint: 4.0.5 -> 4.0.6 (pylint group #1529)
- click: 8.1.8 -> 8.4.1 (#1519)
- cryptography: 46.0.7 -> 48.0.1 (#1531)
- docutils: 0.22.4 -> 0.23 (#1522)
- microsoft-kiota-*: 1.10.1 -> 1.10.2 (kiota group #1516)
- msal: 1.36.0 -> 1.37.0 (#1523)
- opentelemetry-api/sdk: 1.42.0 -> 1.42.1 (open-telemetry group #1515)
- opentelemetry-semantic-conventions: 0.63b0 -> 0.63b1 (#1515)
- platformdirs: 4.9.6 -> 4.10.0 (#1518)
- PyJWT: 2.12.1 -> 2.13.0 (#1520)
- wrapt: 2.2.0 -> 2.2.1 (#1517)

GitHub Actions:
- actions/checkout: v6 -> v7 (#1532)

Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>

* fix(deps): pin astroid 4.0.4 to satisfy pylint 4.0.6 constraint

pylint 4.0.6 requires astroid<=4.1.dev0,>=4.0.2, so astroid 4.1.2 caused a
ResolutionImpossible error. Downgrade to 4.0.4 (latest 4.0.x) to fix CI.

Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>

* chore(deps): exclude pylint group entirely (astroid/pylint)

Group PRs are all-or-nothing. Dependabot's pylint group pairs astroid 4.1.2
with pylint 4.0.6, but pylint 4.0.6 requires astroid<=4.1.dev0, so the pair
is unresolvable. Rather than partially apply the group with an astroid
workaround, leave the whole group out (astroid/pylint stay at main values)
so it remains a clean standalone Dependabot PR.

Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>

---------

Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
@github-actions

github-actions Bot commented Jul 9, 2026

Copy link
Copy Markdown
Contributor

This pull request has conflicting changes, the author must resolve the conflicts before this pull request can be merged.

@dependabot
dependabot Bot force-pushed the dependabot/pip/pylint-a5d59e72ce branch from 1e577a1 to 2557d7d Compare July 9, 2026 16:11
@github-actions

github-actions Bot commented Jul 9, 2026

Copy link
Copy Markdown
Contributor

Conflicts have been resolved. A maintainer will take a look shortly.

@dependabot
dependabot Bot force-pushed the dependabot/pip/pylint-a5d59e72ce branch 4 times, most recently from f561344 to 39d6db0 Compare July 14, 2026 20:37
@dependabot
dependabot Bot force-pushed the dependabot/pip/pylint-a5d59e72ce branch 2 times, most recently from 3c28c9e to 86a8f55 Compare July 23, 2026 05:12
@dependabot
dependabot Bot force-pushed the dependabot/pip/pylint-a5d59e72ce branch from 86a8f55 to f87564e Compare August 6, 2026 05:12
@dependabot
dependabot Bot force-pushed the dependabot/pip/pylint-a5d59e72ce branch from f87564e to d08facd Compare August 21, 2026 05:15
@dependabot
dependabot Bot force-pushed the dependabot/pip/pylint-a5d59e72ce branch from d08facd to 1d6e706 Compare September 3, 2026 05:13
@dependabot
dependabot Bot force-pushed the dependabot/pip/pylint-a5d59e72ce branch 2 times, most recently from d2f1c16 to 8d8299d Compare September 17, 2026 05:13
Bumps the pylint group with 2 updates in the / directory: [astroid](https://github.com/pylint-dev/astroid) and [pylint](https://github.com/pylint-dev/pylint).


Updates `astroid` from 4.0.2 to 4.3.3
- [Release notes](https://github.com/pylint-dev/astroid/releases)
- [Changelog](https://github.com/pylint-dev/astroid/blob/main/ChangeLog)
- [Commits](pylint-dev/astroid@v4.0.2...v4.3.3)

Updates `pylint` from 4.0.5 to 4.1.2
- [Release notes](https://github.com/pylint-dev/pylint/releases)
- [Commits](pylint-dev/pylint@v4.0.5...v4.1.2)

---
updated-dependencies:
- dependency-name: astroid
  dependency-version: 4.1.2
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: pylint
- dependency-name: pylint
  dependency-version: 4.0.6
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: pylint
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/pip/pylint-a5d59e72ce branch from 8d8299d to d9829eb Compare October 7, 2026 05:13

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python Pull requests that update Python code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants