Skip to content

ci: bump pip from 26.0.1 to 26.1.2 #155

ci: bump pip from 26.0.1 to 26.1.2

ci: bump pip from 26.0.1 to 26.1.2 #155

Triggered via pull request July 10, 2026 20:30
Status Failure
Total duration 56s
Artifacts 1

ci.yml

on: pull_request
Fit to window
Zoom out
Zoom in

Annotations

2 errors, 8 warnings, and 10 notices
Security audit
Process completed with exit code 1.
Security audit
Process completed with exit code 1.
Security audit
pip-audit: urllib3@2.6.3 — PYSEC-2026-141 (fix: 2.7.0)
Security audit
pip-audit: urllib3@2.6.3 — PYSEC-2026-142 (fix: 2.7.0)
Security audit
pip-audit: urllib3@2.6.3 — PYSEC-2026-142 (fix: 2.7.0)
Security audit
pip-audit: pydantic-settings@2.13.1 — GHSA-4xgf-cpjx-pc3j (fix: 2.14.2)
Security audit
pip-audit: idna@3.11 — PYSEC-2026-215 (fix: 3.15)
Security audit
pip-audit: idna@3.11 — PYSEC-2026-215 (fix: 3.15)
Security audit
pip-audit: msgpack@1.1.2 — GHSA-6v7p-g79w-8964 (fix: 1.2.1)
Pre-commit
Failed to save: Unable to reserve cache with key setup-uv-2-x86_64-unknown-linux-gnu-ubuntu-24.04-3.13.14-pruned-15b9f119fc7de1b9ddce3cc454f61c0ad6859a5fa5541e6e686ef29b73a9d4c4, another job may be creating this cache.
Security audit: src/python_security_auditing/runners.py#L86
[B603] subprocess call - check for execution of untrusted input.
Security audit: src/python_security_auditing/runners.py#L79
[B603] subprocess call - check for execution of untrusted input.
Security audit: src/python_security_auditing/runners.py#L71
[B603] subprocess call - check for execution of untrusted input.
Security audit: src/python_security_auditing/runners.py#L53
[B603] subprocess call - check for execution of untrusted input.
Security audit: src/python_security_auditing/runners.py#L7
[B404] Consider possible security implications associated with the subprocess module.
Security audit: src/python_security_auditing/pr_comment.py#L101
[B603] subprocess call - check for execution of untrusted input.
Security audit: src/python_security_auditing/pr_comment.py#L88
[B603] subprocess call - check for execution of untrusted input.
Security audit: src/python_security_auditing/pr_comment.py#L76
[B603] subprocess call - check for execution of untrusted input.
Security audit: src/python_security_auditing/pr_comment.py#L35
[B603] subprocess call - check for execution of untrusted input.
Security audit: src/python_security_auditing/pr_comment.py#L7
[B404] Consider possible security implications associated with the subprocess module.

Artifacts

Produced during runtime
Name Size Digest
security-audit-reports
7.05 KB
sha256:bd11a303e88a01d569057c897ea310641527fad0a04ca213b501ad8df2a292b3