Skip to content

Conversation

@rjrudin
Copy link
Contributor

@rjrudin rjrudin commented Jan 23, 2026

No description provided.

dependabot bot and others added 10 commits September 26, 2025 09:59
Bumps [nokogiri](https://github.com/sparklemotion/nokogiri) from 1.18.8 to 1.18.9.
- [Release notes](https://github.com/sparklemotion/nokogiri/releases)
- [Changelog](https://github.com/sparklemotion/nokogiri/blob/main/CHANGELOG.md)
- [Commits](sparklemotion/nokogiri@v1.18.8...v1.18.9)

---
updated-dependencies:
- dependency-name: nokogiri
  dependency-version: 1.18.9
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
Bumps [rexml](https://github.com/ruby/rexml) from 3.3.9 to 3.4.2.
- [Release notes](https://github.com/ruby/rexml/releases)
- [Changelog](https://github.com/ruby/rexml/blob/master/NEWS.md)
- [Commits](ruby/rexml@v3.3.9...v3.4.2)

---
updated-dependencies:
- dependency-name: rexml
  dependency-version: 3.4.2
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
Just running "poetry update" seemed to do the trick for ensuring that urllib3 2.6.0 is used instead of 2.5.0. Bumped the patch version for requests since it was updated in August too.
Copy link

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

This PR merges release version 1.3.1 into the master branch, incorporating dependency updates, security fixes, and infrastructure improvements.

Changes:

  • Updated Python dependencies to address CVEs (urllib3, jupyter-core)
  • Enhanced Docker configuration with NET_RAW capability drop
  • Improved MarkLogic initialization using Gradle task instead of sleep timer

Reviewed changes

Copilot reviewed 8 out of 10 changed files in this pull request and generated no comments.

Show a summary per file
File Description
pyproject.toml Version bump to 1.3.1 with dependency updates for security fixes
NOTICE.txt Updated third-party license information with expanded legal notices
test-app/docker-compose.yml Added NET_RAW capability drop for security compliance
test-app/build.gradle Upgraded ml-gradle to 6.2-SNAPSHOT and properties plugin to 1.6.0
Jenkinsfile Replaced sleep timer with mlWaitTillReady task for reliable initialization
CODEOWNERS Updated ownership list
.github/workflows/pr-workflow.yaml Added copyright validation workflow
.copyrightconfig Added copyright validation configuration

@rjrudin rjrudin merged commit 13cfeaf into master Jan 23, 2026
6 checks passed
@rjrudin rjrudin deleted the release/1.3.1 branch January 23, 2026 15:03
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants