chore(deps): bump dulwich from 0.23.0 to 1.2.5 #11387
+25
−21
Open
StepSecurity Actions Security / StepSecurity Required Checks
failed
May 28, 2026 in 0s
StepSecurity Required Checks
Finished StepSecurity Required Checks
- PyPI Compromised Packages Check - Checks for compromised PyPI package versions in the PR
- PyPI Package Cooldown Check - Fails if any PyPI package version in the PR was released within the configured cooldown period
- Pwn Request Vulnerabilities Check - Checks for Pwn Request vulnerabilities in the PR via risky triggers
- Script Injection Check - Checks for script injection vulnerabilities in the PR
- NPM Compromised Packages Check - Checks for compromised npm package versions in the PR
- NPM Package Cooldown Check - Fails if any package version in the PR was released within the configured cooldown period, helping to avoid brand-new (and potentially unreviewed or malicious) releases
Details
🔐 Approve Check Run
One or more security checks failed. To approve this check run, click here.
❌ PyPI Package Cooldown Check
The following PyPI packages added in current PR are recent versions (not older than 7 days). This check will pass at 2026-06-04 22:26:50 UTC
| Package Name | Ecosystem | Previous Version | Current Version | File | Release Date |
|---|---|---|---|---|---|
| dulwich | uv | 0.23.0 | 1.2.5 | uv.lock | 2026-05-28 22:26:50.998582 +0000 UTC |
✅ PyPI Compromised Packages Check
✅ Pwn Request Vulnerabilities Check
No Pwn Request vulnerabilities found in this PR.
✅ Script Injection Vulnerabilities Check
No Script Injection vulnerabilities found in this PR.
✅ NPM Package Cooldown Check
No npm package upgrades to recent releases found in current PR.
✅ NPM Compromised Packages Check
No Compromised npm packages are added in current PR.
Loading