5e689f2d85
Update uvicorn requirement from ==0.46.* to ==0.52.* in /docker/main ( #24341 )
...
Updates the requirements on [uvicorn](https://github.com/Kludex/uvicorn ) to permit the latest version.
- [Release notes](https://github.com/Kludex/uvicorn/releases )
- [Changelog](https://github.com/Kludex/uvicorn/blob/main/docs/release-notes.md )
- [Commits](https://github.com/Kludex/uvicorn/compare/0.46.0...0.52.4 )
---
updated-dependencies:
- dependency-name: uvicorn
dependency-version: 0.52.4
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-15 10:16:40 -05:00
57a2765d00
Update netaddr requirement from ==0.8.* to ==1.3.* in /docker/main ( #24346 )
...
Updates the requirements on [netaddr](https://github.com/netaddr/netaddr ) to permit the latest version.
- [Release notes](https://github.com/netaddr/netaddr/releases )
- [Changelog](https://github.com/netaddr/netaddr/blob/master/CHANGELOG.rst )
- [Commits](https://github.com/netaddr/netaddr/compare/0.8.0...1.3.0 )
---
updated-dependencies:
- dependency-name: netaddr
dependency-version: 1.3.0
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-15 10:16:33 -05:00
dd77bae4f7
Bump @radix-ui/react-progress from 1.1.8 to 1.1.16 in /web ( #24342 )
...
Bumps [@radix-ui/react-progress](https://github.com/radix-ui/primitives/tree/HEAD/packages/react/progress ) from 1.1.8 to 1.1.16.
- [Changelog](https://github.com/radix-ui/primitives/blob/main/packages/react/progress/CHANGELOG.md )
- [Commits](https://github.com/radix-ui/primitives/commits/HEAD/packages/react/progress )
---
updated-dependencies:
- dependency-name: "@radix-ui/react-progress"
dependency-version: 1.1.16
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-15 10:16:16 -05:00
8a98d7c9b1
Bump @radix-ui/react-radio-group from 1.3.8 to 1.4.7 in /web ( #24339 )
...
Bumps [@radix-ui/react-radio-group](https://github.com/radix-ui/primitives/tree/HEAD/packages/react/radio-group ) from 1.3.8 to 1.4.7.
- [Changelog](https://github.com/radix-ui/primitives/blob/main/packages/react/radio-group/CHANGELOG.md )
- [Commits](https://github.com/radix-ui/primitives/commits/HEAD/packages/react/radio-group )
---
updated-dependencies:
- dependency-name: "@radix-ui/react-radio-group"
dependency-version: 1.4.7
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-15 10:00:33 -05:00
8a8da663c0
Bump lucide-react from 0.577.0 to 1.45.0 in /web ( #24337 )
...
Bumps [lucide-react](https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react ) from 0.577.0 to 1.45.0.
- [Release notes](https://github.com/lucide-icons/lucide/releases )
- [Commits](https://github.com/lucide-icons/lucide/commits/1.45.0/packages/lucide-react )
---
updated-dependencies:
- dependency-name: lucide-react
dependency-version: 1.45.0
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-15 10:00:26 -05:00
eddc9fccd1
Bump autoprefixer from 10.4.20 to 10.5.6 in /web ( #24340 )
...
Bumps [autoprefixer](https://github.com/postcss/autoprefixer ) from 10.4.20 to 10.5.6.
- [Release notes](https://github.com/postcss/autoprefixer/releases )
- [Changelog](https://github.com/postcss/autoprefixer/blob/main/CHANGELOG.md )
- [Commits](https://github.com/postcss/autoprefixer/compare/10.4.20...10.5.6 )
---
updated-dependencies:
- dependency-name: autoprefixer
dependency-version: 10.5.6
dependency-type: direct:development
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-15 10:00:19 -05:00
84f981a77c
Bump @radix-ui/react-toggle from 1.1.10 to 1.1.18 in /web ( #24344 )
...
Bumps [@radix-ui/react-toggle](https://github.com/radix-ui/primitives/tree/HEAD/packages/react/toggle ) from 1.1.10 to 1.1.18.
- [Changelog](https://github.com/radix-ui/primitives/blob/main/packages/react/toggle/CHANGELOG.md )
- [Commits](https://github.com/radix-ui/primitives/commits/HEAD/packages/react/toggle )
---
updated-dependencies:
- dependency-name: "@radix-ui/react-toggle"
dependency-version: 1.1.18
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-15 10:00:12 -05:00
Josh Hawkins and GitHub
4100383738
Miscellaneous fixes ( #24352 )
...
* fix recordings unavailable endpoint when no params are provided
we already import the datetime class directly, so those attribute lookups raised AttributeError and the request returned 500
* reject JWTs whose role is no longer in the config
`/auth` trusted the role inside the JWT and re-signed it on refresh without checking the config, so a user whose restricted role was deleted kept a session carrying a role that isn't in `auth.roles`. The media, clip, recording, export and go2rtc checks treat a missing role the same as a role with no camera list, so that session could open every camera. `/auth` now returns 401 for a token whose role isn't configured, which sends the user back through login, and login already falls back to `viewer` for a role that's gone.
* delete the deleted camera group's layout, not the open one's
Deleting a camera group removed the layout of the group being viewed, because the dialog's delete was bound to `${activeGroup}-draggable-layout`. It also cleared the saved group, and both ran before the `config/set` request whether or not it succeeded, so deleting one group while viewing another lost the open group's layout and left the deleted group's layout behind. The deleted group's own layout is now removed after a successful save, and the saved group is only cleared when it was the open group.
* don't block API when querying PTZ info
camera_ptz_info is async but waited on the ONVIF controller's future with future.result(), blocking the API event loop for as long as a slow or unreachable ONVIF camera took to answer (including reconnect attempts), so every other async request stalled with it. Await the future with asyncio.wrap_future instead. The coroutine runs on the controller's own loop and thread, so this cannot deadlock.
* for custom exports, only allow admin users to add to existing cases
follows the existing convention where attaching an export to an existing case is admin-only on `POST /export/{camera}/...` and `POST /exports/batch`
* drop pending edits for a camera or profile that no longer exists
* match cached preview frames to their camera exactly
https://github.com/blakeblackshear/frigate/pull/22594 added a trailing `-` to the `preview_{camera}` prefix so `camera` stopped matching `camera2`'s frames, but camera names can contain `-`, so `front` still matched `front-door`'s. After a restart, `front`'s preview recorder deleted this hour's frames of a matching camera that sorted before it and added the timestamps of one that sorted after it, so ffmpeg was asked for files that don't exist and that hour's preview was lost. The offline fallback for `latest.jpg` could also return `front-door`'s frame for `front`, even to a user without access to `front-door`, and a short export could take its fallback thumbnail from the other camera. These now compare the full camera name taken from the file name.
2026-09-15 07:48:30 -05:00
Josh Hawkins and GitHub
fa30a7e1ae
Replace react-logviewer with virtua ( #24334 )
...
* bump react-logviewer to 6.5.5
* use virtua for UI logs
2026-09-15 05:44:04 -06:00
Josh Hawkins and GitHub
eecc43ccef
bump rjsf to 6.10.0 and add e2e test ( #24332 )
CI / AMD64 Build (push) Canceled after 0s
CI / AMD64 Smoke Test (push) Canceled after 0s
CI / ARM Build (push) Canceled after 0s
CI / Jetson Jetpack 6 (push) Canceled after 0s
CI / AMD64 Extra Build (push) Canceled after 0s
CI / ARM Extra Build (push) Canceled after 0s
CI / Synaptics Build (push) Canceled after 0s
CI / Assemble and push default build (push) Canceled after 0s
2026-09-14 13:36:27 -05:00
Nicolas Mowen and GitHub
7821ecbb43
Migrate Hailo detector key and support hailo device ( #24327 )
...
* Migrate Hailo detector key and support hailo device
* Fix missing check
2026-09-14 08:23:36 -06:00
Josh Hawkins and GitHub
caa6edecac
Migrate web to ESLint 10 flat config ( #24326 )
...
* migrate web to eslint 10 flat config
ESLint 10 dropped `.eslintrc` support, so `.eslintrc.cjs` is replaced with `eslint.config.js` and the lint scripts no longer pass `--ext` or `--ignore-path`. typescript-eslint moves to 8, react-hooks to 7, and react-refresh to 0.5, and the unused jest and vitest-globals plugins are removed. Lint behaves as it did before: catch variables aren't checked, unused disable directives aren't reported, and rules newly added to the recommended sets are off until the code passes them. typescript-eslint 8 flags constants used only in `typeof`, so those are now exported, or replaced with a union type where the export would trip react-refresh.
* fix lint findings from the eslint 10 recommended rules
Remove the rule overrides from the flat config migration and fix what they were hiding. Unused catch bindings are dropped, 20 disable directives that suppressed nothing are removed (react-hooks 5.2 and 7.1.1 report identical exhaustive-deps findings with inline config ignored), dead initial values are dropped, short-circuit calls become if statements or optional calls, rethrown errors pass `cause`, and the disabled "No recordings" tooltip in `ReviewTimeline` is removed along with its memo and the `getRecordingAvailability` prop. The 3 react-refresh warnings for files that export contexts or classes are left for a later refactor.
2026-09-14 07:53:45 -06:00
Josh Hawkins and GitHub
acc740a976
Update deps ( #24324 )
...
* update docusaurus to 3.10.2
* bump @types/node to 25.9.6 and ES2022
target ES2022, which already includes ES2020 and ES2021.String, so the lib list was also trimmed
* bump vite to 8.3.0 and vitest to 4.1.11
Swap `@vitejs/plugin-react-swc` for `@vitejs/plugin-react` and add `esbuild` as a devDependency, since `vite-plugin-monaco-editor` requires it and Vite 8 no longer ships it. `keepNames` moves to `build.rolldownOptions.output` because Vite 8 ignores the `esbuild` block. Rolldown's minifier now writes the preload helper's base path as a template literal instead of a double-quoted string, so the nginx `sub_filter` for `return"/BASE_PATH/"` stopped matching and lazy-loaded chunks and their CSS were requested from a literal `/BASE_PATH/` under Home Assistant ingress. The rule now matches the backtick form.
* bump apexcharts to 7.3.0 and react-apexcharts to 2.1.1
Under Vite 8, a default import from a CommonJS package resolves to its whole `module.exports` when `package.json` has `"type": "module"`, so react-apexcharts 1.4.1 handed React an object and every chart crashed. 2.x ships an ESM build. apexcharts 7 no longer sets `window.ApexCharts`, so the chart components now import it for `ApexCharts.exec`, and `ApexAxisChartSeries` is derived in `types/graph.ts` because it's no longer a global type.
* remove unused immer dep
* remove unused cython pin from tensorrt requirements
The pin was added alongside tensorrt 8.5.3 and cuda-python 11.8, which needed Cython to build, and both have since been dropped from this file. Nothing imports Cython at runtime, and `pip3 wheel` runs with build isolation, so any source build gets its own build dependencies. The pin only installed an unused Cython wheel into the TensorRT image.
* require node 20.19 for docs
2026-09-14 07:16:31 -06:00
Josh Hawkins and GitHub
3931ab74a8
fix mypy errors from types-peewee 4.0 ( #24323 )
...
types-peewee 4.0 types model fields precisely, so 17 `type: ignore` comments and 2 `cast(str, ...)` calls are no longer needed. Its stubs type `.namedtuples()` and `.dicts()` queries as returning model instances, so the review cleanup reads namedtuple fields by name and the storage usage query casts its dict rows. `start_time` is declared `DateTimeField` but stores unix timestamps, so two reads cast it like `debug_replay.py` already does. `Export` gets an annotation for the `export_case_id` attribute peewee adds at runtime.
2026-09-14 07:52:23 -05:00
5be162a22c
Update sherpa-onnx requirement from ==1.12.* to ==1.13.* in /docker/main ( #24303 )
...
Updates the requirements on [sherpa-onnx](https://github.com/k2-fsa/sherpa-onnx ) to permit the latest version.
- [Changelog](https://github.com/k2-fsa/sherpa-onnx/blob/master/CHANGELOG.md )
- [Commits](https://github.com/k2-fsa/sherpa-onnx/compare/v1.12.0...v1.13.8 )
---
updated-dependencies:
- dependency-name: sherpa-onnx
dependency-version: 1.13.8
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-14 07:29:35 -05:00
e57eeb8288
Update unidecode requirement from ==1.3.* to ==1.4.* in /docker/main ( #24320 )
...
Updates the requirements on [unidecode](https://github.com/kmike/text-unidecode ) to permit the latest version.
- [Release notes](https://github.com/kmike/text-unidecode/releases )
- [Commits](https://github.com/kmike/text-unidecode/commits )
---
updated-dependencies:
- dependency-name: unidecode
dependency-version: 1.4.0
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-14 07:29:30 -05:00
cf03df8a98
Update prometheus-client requirement in /docker/main ( #24313 )
...
Updates the requirements on [prometheus-client](https://github.com/prometheus/client_python ) to permit the latest version.
- [Release notes](https://github.com/prometheus/client_python/releases )
- [Commits](https://github.com/prometheus/client_python/compare/v0.21.0...v0.26.0 )
---
updated-dependencies:
- dependency-name: prometheus-client
dependency-version: 0.26.0
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-14 07:29:25 -05:00
fa36fa403b
Update starlette-context requirement in /docker/main ( #24305 )
...
Updates the requirements on [starlette-context](https://github.com/tomwojcik/starlette-context ) to permit the latest version.
- [Release notes](https://github.com/tomwojcik/starlette-context/releases )
- [Commits](https://github.com/tomwojcik/starlette-context/compare/v0.4.0...v0.5.1 )
---
updated-dependencies:
- dependency-name: starlette-context
dependency-version: 0.5.1
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-14 07:29:20 -05:00
069315be33
Bump @radix-ui/react-aspect-ratio from 1.1.2 to 1.1.15 in /web ( #24314 )
...
Bumps [@radix-ui/react-aspect-ratio](https://github.com/radix-ui/primitives/tree/HEAD/packages/react/aspect-ratio ) from 1.1.2 to 1.1.15.
- [Changelog](https://github.com/radix-ui/primitives/blob/main/packages/react/aspect-ratio/CHANGELOG.md )
- [Commits](https://github.com/radix-ui/primitives/commits/HEAD/packages/react/aspect-ratio )
---
updated-dependencies:
- dependency-name: "@radix-ui/react-aspect-ratio"
dependency-version: 1.1.15
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-14 07:28:06 -05:00
c583e21b70
Bump framer-motion from 12.38.0 to 13.2.0 in /web ( #24307 )
...
Bumps [framer-motion](https://github.com/motiondivision/motion ) from 12.38.0 to 13.2.0.
- [Changelog](https://github.com/motiondivision/motion/blob/main/CHANGELOG.md )
- [Commits](https://github.com/motiondivision/motion/compare/v12.38.0...v13.2.0 )
---
updated-dependencies:
- dependency-name: framer-motion
dependency-version: 13.2.0
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-14 07:28:01 -05:00
bb6c2e98eb
Bump docker/login-action from 3.5.0 to 4.6.0 ( #23872 )
...
CI / AMD64 Build (push) Canceled after 0s
CI / AMD64 Smoke Test (push) Canceled after 0s
CI / ARM Build (push) Canceled after 0s
CI / Jetson Jetpack 6 (push) Canceled after 0s
CI / AMD64 Extra Build (push) Canceled after 0s
CI / ARM Extra Build (push) Canceled after 0s
CI / Synaptics Build (push) Canceled after 0s
CI / Assemble and push default build (push) Canceled after 0s
Bumps [docker/login-action](https://github.com/docker/login-action ) from 3.5.0 to 4.6.0.
- [Release notes](https://github.com/docker/login-action/releases )
- [Commits](https://github.com/docker/login-action/compare/184bdaa0721073962dff0199f1fb9940f07167d1...dbcb813823bdd20940b903addbd779551569679f )
---
updated-dependencies:
- dependency-name: docker/login-action
dependency-version: 4.6.0
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 17:39:20 -05:00
0570a9c4eb
Bump actions/checkout from 6 to 7 ( #23510 )
...
Bumps [actions/checkout](https://github.com/actions/checkout ) from 6 to 7.
- [Release notes](https://github.com/actions/checkout/releases )
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md )
- [Commits](https://github.com/actions/checkout/compare/v6...v7 )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-version: '7'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 17:36:45 -05:00
ced95a1a31
Bump actions/setup-python from 5.4.0 to 7.0.0 ( #23768 )
...
Bumps [actions/setup-python](https://github.com/actions/setup-python ) from 5.4.0 to 7.0.0.
- [Release notes](https://github.com/actions/setup-python/releases )
- [Commits](https://github.com/actions/setup-python/compare/v5.4.0...v7.0.0 )
---
updated-dependencies:
- dependency-name: actions/setup-python
dependency-version: 7.0.0
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 17:27:51 -05:00
1f340f389f
Bump actions/setup-node from 6 to 7 ( #23715 )
...
Bumps [actions/setup-node](https://github.com/actions/setup-node ) from 6 to 7.
- [Release notes](https://github.com/actions/setup-node/releases )
- [Commits](https://github.com/actions/setup-node/compare/v6...v7 )
---
updated-dependencies:
- dependency-name: actions/setup-node
dependency-version: '7'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 17:27:44 -05:00
94422ff24f
Update click requirement from ==8.1.* to ==8.5.* in /docker/main ( #23067 )
...
Updates the requirements on [click](https://github.com/pallets/click ) to permit the latest version.
- [Release notes](https://github.com/pallets/click/releases )
- [Changelog](https://github.com/pallets/click/blob/main/CHANGES.md )
- [Commits](https://github.com/pallets/click/compare/8.1.0...8.5.0 )
---
updated-dependencies:
- dependency-name: click
dependency-version: 8.3.3
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 17:13:38 -05:00
06ff2ced5d
bump cryptography to 46 and pin py-vapid to 1.9.4 ( #24292 )
...
Co-authored-by: t <t@t>
2026-09-13 15:52:19 -06:00
35b9c4978d
Bump python-multipart from 0.0.26 to 0.0.31 in /docker/main ( #23497 )
...
Bumps [python-multipart](https://github.com/Kludex/python-multipart ) from 0.0.26 to 0.0.31.
- [Release notes](https://github.com/Kludex/python-multipart/releases )
- [Changelog](https://github.com/Kludex/python-multipart/blob/main/CHANGELOG.md )
- [Commits](https://github.com/Kludex/python-multipart/compare/0.0.26...0.0.31 )
---
updated-dependencies:
- dependency-name: python-multipart
dependency-version: 0.0.31
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 16:16:50 -05:00
2106d10e2e
Update faster-whisper requirement in /docker/main ( #23075 )
...
Updates the requirements on [faster-whisper](https://github.com/SYSTRAN/faster-whisper ) to permit the latest version.
- [Release notes](https://github.com/SYSTRAN/faster-whisper/releases )
- [Commits](https://github.com/SYSTRAN/faster-whisper/compare/v1.1.0...v1.2.1 )
---
updated-dependencies:
- dependency-name: faster-whisper
dependency-version: 1.2.1
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 16:16:45 -05:00
8b8c90ee1a
Update aiofiles requirement from ==24.1.* to ==25.1.* in /docker/main ( #23074 )
...
Updates the requirements on [aiofiles](https://github.com/Tinche/aiofiles ) to permit the latest version.
- [Release notes](https://github.com/Tinche/aiofiles/releases )
- [Changelog](https://github.com/Tinche/aiofiles/blob/main/CHANGELOG.md )
- [Commits](https://github.com/Tinche/aiofiles/compare/v24.1.0...v25.1.0 )
---
updated-dependencies:
- dependency-name: aiofiles
dependency-version: 25.1.0
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 16:16:41 -05:00
d462aeb068
Update uvicorn requirement from ==0.35.* to ==0.46.* in /docker/main ( #23073 )
...
Updates the requirements on [uvicorn](https://github.com/Kludex/uvicorn ) to permit the latest version.
- [Release notes](https://github.com/Kludex/uvicorn/releases )
- [Changelog](https://github.com/Kludex/uvicorn/blob/main/docs/release-notes.md )
- [Commits](https://github.com/Kludex/uvicorn/compare/0.35.0...0.46.0 )
---
updated-dependencies:
- dependency-name: uvicorn
dependency-version: 0.46.0
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 16:16:37 -05:00
828ecdd0ea
Update joserfc requirement from ==1.2.* to ==1.6.* in /docker/main ( #23071 )
...
Updates the requirements on [joserfc](https://github.com/authlib/joserfc ) to permit the latest version.
- [Release notes](https://github.com/authlib/joserfc/releases )
- [Changelog](https://github.com/authlib/joserfc/blob/main/docs/changelog.rst )
- [Commits](https://github.com/authlib/joserfc/compare/1.2.0...1.6.4 )
---
updated-dependencies:
- dependency-name: joserfc
dependency-version: 1.6.4
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 16:16:33 -05:00
d5e3fed130
Update requests requirement from ==2.32.* to ==2.33.* in /docker/main ( #23068 )
...
Updates the requirements on [requests](https://github.com/psf/requests ) to permit the latest version.
- [Release notes](https://github.com/psf/requests/releases )
- [Changelog](https://github.com/psf/requests/blob/main/HISTORY.md )
- [Commits](https://github.com/psf/requests/compare/v2.32.0...v2.33.1 )
---
updated-dependencies:
- dependency-name: requests
dependency-version: 2.33.1
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 16:16:28 -05:00
3e7cb396e2
Update pyzmq requirement from ==26.2.* to ==27.1.* in /docker/main ( #23064 )
...
Updates the requirements on [pyzmq](https://github.com/zeromq/pyzmq ) to permit the latest version.
- [Release notes](https://github.com/zeromq/pyzmq/releases )
- [Commits](https://github.com/zeromq/pyzmq/compare/v26.2.0...v27.1.0 )
---
updated-dependencies:
- dependency-name: pyzmq
dependency-version: 27.1.0
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 16:16:24 -05:00
d71d573edf
Update pyclipper requirement from ==1.3.* to ==1.4.* in /docker/main ( #23063 )
...
Updates the requirements on [pyclipper](https://github.com/fonttools/pyclipper ) to permit the latest version.
- [Release notes](https://github.com/fonttools/pyclipper/releases )
- [Commits](https://github.com/fonttools/pyclipper/compare/1.3.0...1.4.0 )
---
updated-dependencies:
- dependency-name: pyclipper
dependency-version: 1.4.0
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 16:16:20 -05:00
4b71cb76dd
bump i18next-http-backend to 4.0.2 ( #24290 )
...
Co-authored-by: t <t@t>
2026-09-13 15:05:41 -06:00
cf59d9ad56
Bump browserslist from 4.23.3 to 4.28.9 in /web ( #24287 )
...
Bumps [browserslist](https://github.com/browserslist/browserslist ) from 4.23.3 to 4.28.9.
- [Release notes](https://github.com/browserslist/browserslist/releases )
- [Changelog](https://github.com/browserslist/browserslist/blob/main/CHANGELOG.md )
- [Commits](https://github.com/browserslist/browserslist/compare/4.23.3...4.28.9 )
---
updated-dependencies:
- dependency-name: browserslist
dependency-version: 4.28.9
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 15:27:19 -05:00
94b37ceb6e
Bump nanoid from 3.3.11 to 3.3.19 in /web ( #24286 )
...
Bumps [nanoid](https://github.com/ai/nanoid ) from 3.3.11 to 3.3.19.
- [Release notes](https://github.com/ai/nanoid/releases )
- [Changelog](https://github.com/ai/nanoid/blob/main/CHANGELOG.md )
- [Commits](https://github.com/ai/nanoid/compare/3.3.11...3.3.19 )
---
updated-dependencies:
- dependency-name: nanoid
dependency-version: 3.3.19
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 15:27:14 -05:00
ea84b1be82
Bump js-yaml from 4.1.1 to 4.3.2 in /web ( #24273 )
...
Bumps [js-yaml](https://github.com/nodeca/js-yaml ) from 4.1.1 to 4.3.2.
- [Changelog](https://github.com/nodeca/js-yaml/blob/4.3.2/CHANGELOG.md )
- [Commits](https://github.com/nodeca/js-yaml/compare/4.1.1...4.3.2 )
---
updated-dependencies:
- dependency-name: js-yaml
dependency-version: 4.3.2
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 15:27:09 -05:00
105b7bb79d
Bump micromatch from 4.0.5 to 4.0.8 in /web ( #23840 )
...
Bumps [micromatch](https://github.com/micromatch/micromatch ) from 4.0.5 to 4.0.8.
- [Release notes](https://github.com/micromatch/micromatch/releases )
- [Changelog](https://github.com/micromatch/micromatch/blob/master/CHANGELOG.md )
- [Commits](https://github.com/micromatch/micromatch/compare/4.0.5...4.0.8 )
---
updated-dependencies:
- dependency-name: micromatch
dependency-version: 4.0.8
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 15:27:05 -05:00
c46b099e14
Bump braces from 3.0.2 to 3.0.3 in /web ( #23839 )
...
Bumps [braces](https://github.com/micromatch/braces ) from 3.0.2 to 3.0.3.
- [Changelog](https://github.com/micromatch/braces/blob/master/CHANGELOG.md )
- [Commits](https://github.com/micromatch/braces/compare/3.0.2...3.0.3 )
---
updated-dependencies:
- dependency-name: braces
dependency-version: 3.0.3
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 15:26:59 -05:00
05ebab80b6
Bump form-data from 4.0.5 to 4.0.6 in /web ( #23532 )
...
Bumps [form-data](https://github.com/form-data/form-data ) from 4.0.5 to 4.0.6.
- [Changelog](https://github.com/form-data/form-data/blob/master/CHANGELOG.md )
- [Commits](https://github.com/form-data/form-data/compare/v4.0.5...v4.0.6 )
---
updated-dependencies:
- dependency-name: form-data
dependency-version: 4.0.6
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 15:26:53 -05:00
6d2bf59aa6
Bump tmp from 0.2.5 to 0.2.7 in /web ( #23334 )
...
Bumps [tmp](https://github.com/raszi/node-tmp ) from 0.2.5 to 0.2.7.
- [Changelog](https://github.com/raszi/node-tmp/blob/master/CHANGELOG.md )
- [Commits](https://github.com/raszi/node-tmp/compare/v0.2.5...v0.2.7 )
---
updated-dependencies:
- dependency-name: tmp
dependency-version: 0.2.7
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 15:26:48 -05:00
1dd5ec312b
Bump eslint-plugin-vitest-globals from 1.5.0 to 1.6.1 in /web ( #23058 )
...
Bumps [eslint-plugin-vitest-globals](https://github.com/saqqdy/eslint-plugin-vitest-globals ) from 1.5.0 to 1.6.1.
- [Release notes](https://github.com/saqqdy/eslint-plugin-vitest-globals/releases )
- [Changelog](https://github.com/saqqdy/eslint-plugin-vitest-globals/blob/master/CHANGELOG.md )
- [Commits](https://github.com/saqqdy/eslint-plugin-vitest-globals/compare/1.5.0...1.6.1 )
---
updated-dependencies:
- dependency-name: eslint-plugin-vitest-globals
dependency-version: 1.6.1
dependency-type: direct:development
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 15:26:42 -05:00
cd8a159cc6
Bump postcss from 8.5.8 to 8.5.12 in /web ( #23051 )
...
Bumps [postcss](https://github.com/postcss/postcss ) from 8.5.8 to 8.5.12.
- [Release notes](https://github.com/postcss/postcss/releases )
- [Changelog](https://github.com/postcss/postcss/blob/main/CHANGELOG.md )
- [Commits](https://github.com/postcss/postcss/compare/8.5.8...8.5.12 )
---
updated-dependencies:
- dependency-name: postcss
dependency-version: 8.5.12
dependency-type: direct:development
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 15:26:37 -05:00
3da100af62
Bump react-icons from 5.5.0 to 5.6.0 in /web ( #23072 )
...
Bumps [react-icons](https://github.com/react-icons/react-icons ) from 5.5.0 to 5.6.0.
- [Release notes](https://github.com/react-icons/react-icons/releases )
- [Commits](https://github.com/react-icons/react-icons/compare/v5.5.0...v5.6.0 )
---
updated-dependencies:
- dependency-name: react-icons
dependency-version: 5.6.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 15:26:32 -05:00
d25dbb69e1
Bump uuid and @rjsf/shadcn in /web ( #23120 )
...
Bumps [uuid](https://github.com/uuidjs/uuid ) to 14.0.0 and updates ancestor dependency [@rjsf/shadcn](https://github.com/rjsf-team/react-jsonschema-form ). These dependencies need to be updated together.
Updates `uuid` from 13.0.0 to 14.0.0
- [Release notes](https://github.com/uuidjs/uuid/releases )
- [Changelog](https://github.com/uuidjs/uuid/blob/main/CHANGELOG.md )
- [Commits](https://github.com/uuidjs/uuid/compare/v13.0.0...v14.0.0 )
Updates `@rjsf/shadcn` from 6.4.1 to 6.5.2
- [Release notes](https://github.com/rjsf-team/react-jsonschema-form/releases )
- [Changelog](https://github.com/rjsf-team/react-jsonschema-form/blob/main/CHANGELOG.md )
- [Commits](https://github.com/rjsf-team/react-jsonschema-form/compare/6.4.1...6.5.2 )
---
updated-dependencies:
- dependency-name: uuid
dependency-version: 14.0.0
dependency-type: indirect
- dependency-name: "@rjsf/shadcn"
dependency-version: 6.5.2
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 15:26:27 -05:00
049263eb42
Bump axios from 1.13.6 to 1.18.0 in /web ( #23782 )
...
Bumps [axios](https://github.com/axios/axios ) from 1.13.6 to 1.18.0.
- [Release notes](https://github.com/axios/axios/releases )
- [Changelog](https://github.com/axios/axios/blob/v1.x/CHANGELOG.md )
- [Commits](https://github.com/axios/axios/compare/v1.13.6...v1.18.0 )
---
updated-dependencies:
- dependency-name: axios
dependency-version: 1.18.0
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 15:26:22 -05:00
9182d07f12
Bump react-router-dom from 6.30.3 to 6.30.6 in /web ( #24282 )
...
Bumps [react-router-dom](https://github.com/remix-run/react-router/tree/HEAD/packages/react-router-dom ) from 6.30.3 to 6.30.6.
- [Release notes](https://github.com/remix-run/react-router/releases )
- [Changelog](https://github.com/remix-run/react-router/blob/react-router-dom@6.30.6/packages/react-router-dom/CHANGELOG.md )
- [Commits](https://github.com/remix-run/react-router/commits/react-router-dom@6.30.6/packages/react-router-dom )
---
updated-dependencies:
- dependency-name: react-router-dom
dependency-version: 6.30.6
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 15:26:18 -05:00
8d652ce6e4
Bump @ai-sdk/provider-utils, @ai-sdk/react and ai in /docs ( #24284 )
...
CI / AMD64 Build (push) Canceled after 0s
CI / AMD64 Smoke Test (push) Canceled after 0s
CI / ARM Build (push) Canceled after 0s
CI / Jetson Jetpack 6 (push) Canceled after 0s
CI / AMD64 Extra Build (push) Canceled after 0s
CI / ARM Extra Build (push) Canceled after 0s
CI / Synaptics Build (push) Canceled after 0s
CI / Assemble and push default build (push) Canceled after 0s
Bumps [@ai-sdk/provider-utils](https://github.com/vercel/ai/tree/HEAD/packages/provider-utils ), [@ai-sdk/react](https://github.com/vercel/ai/tree/HEAD/packages/react ) and [ai](https://github.com/vercel/ai/tree/HEAD/packages/ai ). These dependencies needed to be updated together.
Updates `@ai-sdk/provider-utils` from 3.0.19 to 3.0.37
- [Release notes](https://github.com/vercel/ai/releases )
- [Changelog](https://github.com/vercel/ai/blob/@ai-sdk/provider-utils@3.0.37/packages/provider-utils/CHANGELOG.md )
- [Commits](https://github.com/vercel/ai/commits/@ai-sdk/provider-utils@3.0.37/packages/provider-utils )
Updates `@ai-sdk/react` from 2.0.113 to 2.0.260
- [Release notes](https://github.com/vercel/ai/releases )
- [Changelog](https://github.com/vercel/ai/blob/@ai-sdk/react@2.0.260/packages/react/CHANGELOG.md )
- [Commits](https://github.com/vercel/ai/commits/@ai-sdk/react@2.0.260/packages/react )
Updates `ai` from 5.0.111 to 5.0.257
- [Release notes](https://github.com/vercel/ai/releases )
- [Changelog](https://github.com/vercel/ai/blob/ai@5.0.257/packages/ai/CHANGELOG.md )
- [Commits](https://github.com/vercel/ai/commits/ai@5.0.257/packages/ai )
---
updated-dependencies:
- dependency-name: "@ai-sdk/provider-utils"
dependency-version: 3.0.37
dependency-type: indirect
- dependency-name: "@ai-sdk/react"
dependency-version: 2.0.260
dependency-type: indirect
- dependency-name: ai
dependency-version: 5.0.257
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 12:58:35 -05:00
9056696ee5
Bump fast-uri from 3.1.2 to 3.1.7 in /web ( #24283 )
...
Bumps [fast-uri](https://github.com/fastify/fast-uri ) from 3.1.2 to 3.1.7.
- [Release notes](https://github.com/fastify/fast-uri/releases )
- [Commits](https://github.com/fastify/fast-uri/compare/v3.1.2...v3.1.7 )
---
updated-dependencies:
- dependency-name: fast-uri
dependency-version: 3.1.7
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-09-13 12:57:45 -05:00