Upgrade pydantic-settings from v2.11.0 to 2.14.0 to resolve dependabot alert that requires python-dotenv 1.2.2:
https://github.com/CDLUC3/resolver/security/dependabot/29
Current resolver setting (pyproject.toml):
"pydantic-settings (>=2.7.1,<3.0.0)"
Package dependencies:
pydantic-settings v2.11.0
|---- python-dotenv v1.2.1
pydantic-settings v2.14.0 release notes on python-dotenv version update:
[[package]]
name = "python-dotenv"
- version = "1.2.1"
+ version = "1.2.2"
Upgrade pydantic-settings from v2.11.0 to 2.14.0 to resolve dependabot alert that requires python-dotenv 1.2.2:
https://github.com/CDLUC3/resolver/security/dependabot/29
Current resolver setting (pyproject.toml):
Package dependencies:
pydantic-settings v2.14.0 release notes on python-dotenv version update: