Update msal requirement from >=1.28.0 to >=1.36.0#68
Update msal requirement from >=1.28.0 to >=1.36.0#68dependabot[bot] wants to merge 1 commit intomainfrom
Conversation
Updates the requirements on [msal](https://github.com/AzureAD/microsoft-authentication-library-for-python) to permit the latest version. - [Release notes](https://github.com/AzureAD/microsoft-authentication-library-for-python/releases) - [Changelog](https://github.com/AzureAD/microsoft-authentication-library-for-python/blob/dev/RELEASES.md) - [Commits](AzureAD/microsoft-authentication-library-for-python@1.28.0...1.36.0) --- updated-dependencies: - dependency-name: msal dependency-version: 1.36.0 dependency-type: direct:production ... Signed-off-by: dependabot[bot] <support@github.com>
|
Up to standards ✅🟢 Issues
|
| Metric | Results |
|---|---|
| Complexity | 0 |
| Duplication | 0 |
NEW Get contextual insights on your PRs based on Codacy's metrics, along with PR and Jira context, without leaving GitHub. Enable AI reviewer
TIP This summary will be updated as you push new changes.
Sync runtime pins across requirements.txt / dev_requirements.txt / dev.toml / stable.toml so dependabot's per-file PRs don't leave the four manifests out of step. - cryptography 46.0.7 -> 47.0.0 - opentelemetry-api 1.25.0 -> 1.41.1 - opentelemetry-sdk 1.25.0 -> 1.41.1 - msal 1.28.0 -> 1.36.0 - PyYAML 6.0 -> 6.0.3 boxsdk 10.x renamed the import path (`boxsdk` -> `box_sdk_gen`) and would break automation_file/remote/box/client.py, so pin <4 to keep the legacy import path. Migrating to box_sdk_gen is a separate effort. Supersedes #64, #65, #67, #68 (dependabot PRs against single files); declines #66 in favour of the <4 cap.
|
OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting If you change your mind, just re-open this PR and I'll resolve any conflicts on it. |



Updates the requirements on msal to permit the latest version.
Release notes
Sourced from msal's releases.
Commits
4a2cb98Update sku.pya3ba722Fix OIDC issuer domain spoofing in B2C host validation (#896)6a92f24Use cryptographically secure randomness for PKCE, state, and nonce generation...ecf515aAdded withFmi method for cca app (#876)eb78068Potential fix for code scanning alert no. 74: Workflow does not contain permi...6de712eAdd documentation for Managed Identity v2 Hackathon (#885)1f71edeAdd ADO CI, SDL, and release pipelines with e2e test enablement (#890)e4e692cFix the PoP flow in the console app (#887)2de45aeInstance discovery remains cloud local on known clouds (#875)09c8821Create RELEASE_GUIDE.md (#880)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)