Skip to content

chore(deps): Most deps in requirements.txt lack pinned versions so current versions w#1599

Open
isagoakira wants to merge 2 commits into
nvbn:masterfrom
isagoakira:fix/deps-update-1780538787
Open

chore(deps): Most deps in requirements.txt lack pinned versions so current versions w#1599
isagoakira wants to merge 2 commits into
nvbn:masterfrom
isagoakira:fix/deps-update-1780538787

Conversation

@isagoakira

Copy link
Copy Markdown

🔧 依赖维护更新 — nvbn/thefuck

此 PR 由 Code Legacy Reviver 自动生成🤖

📋 更新摘要

Most deps in requirements.txt lack pinned versions so current versions would install. The real issues are: (1) setuptools floor is 11 years old (2) restrictive upper bounds on decorator/pyte for Python 2.7 are outdated — but this code targets legacy Python anyway so raising bounds carries some risk. Note: 'mock' is bundled in stdlib since Python 3.3.

📦 变更清单

🟡 setuptools: >=17.1>=65.0.0
setuptools 17.1 is from 2014; modern versions (65+) include security fixes, better PEP compliance, and build isolation

🟡 decorator (Python 2.7 constraint): <5<5.3
decorator 4.x is ancient; 5.2/5.3 are stable with same API, dropping the upper bound or raising it is safe

🟡 pyte (Python 2.7 constraint): <0.8.1<2.0
pyte 0.8.x is years old; 1.x and 2.x series have bug fixes and compatibility improvements while maintaining API

⚠️ 风险等级

🟡 Medium

📝 文件变更

  • requirements.txt
  • setup.py

Generated by Code Legacy Reviver

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant