Deps updates (#24581)

* update fastapi and unpin starlette

fastapi 0.116 capped starlette below 0.49, which kept us on a version with several open advisories, the earliest of which is fixed in 0.49.1. fastapi moves to 0.142 and the starlette pin is removed so the latest (1.7.0 today) is pulled in.

fastapi 0.137 and later stopped flattening included routers into app.routes, so the spec generator found no routes to classify and every endpoint failed validation. The generator now reads routes from the routers directly. The spec is regenerated on the new versions.

* pin starlette
This commit is contained in:
Josh Hawkins
2026-10-06 15:19:31 -06:00
committed by GitHub
parent 6b1e084fdc
commit 8b89b79ef5
3 changed files with 41 additions and 29 deletions
+2 -2
View File
@@ -2,9 +2,9 @@ aiofiles == 25.1.*
click == 8.5.*
# FastAPI
aiohttp == 3.12.*
starlette == 0.47.*
starlette == 1.7.*
starlette-context == 0.5.*
fastapi[standard-no-fastapi-cloud-cli] == 0.116.*
fastapi[standard-no-fastapi-cloud-cli] == 0.142.*
uvicorn == 0.52.*
slowapi == 0.1.*
joserfc == 1.6.*