From 9a62480cc7fd9ac91cc5c727766637f1db6ea957 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Mon, 28 Apr 2025 04:31:22 +0000 Subject: [PATCH 1/2] Bump pypa/cibuildwheel from 2.23.0 to 2.23.3 Bumps [pypa/cibuildwheel](https://github.com/pypa/cibuildwheel) from 2.23.0 to 2.23.3. - [Release notes](https://github.com/pypa/cibuildwheel/releases) - [Changelog](https://github.com/pypa/cibuildwheel/blob/main/docs/changelog.md) - [Commits](https://github.com/pypa/cibuildwheel/compare/v2.23.0...v2.23.3) --- updated-dependencies: - dependency-name: pypa/cibuildwheel dependency-version: 2.23.3 dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] --- .github/workflows/pypi.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/pypi.yml b/.github/workflows/pypi.yml index fe6cc96ff4..7b828037ad 100644 --- a/.github/workflows/pypi.yml +++ b/.github/workflows/pypi.yml @@ -80,7 +80,7 @@ jobs: persist-credentials: false - name: Build wheels - uses: pypa/cibuildwheel@v2.23.0 + uses: pypa/cibuildwheel@v2.23.3 - name: Attest GitHub build provenance uses: actions/attest-build-provenance@v2 From d6ea230a95b79d6b1afc10eb730d3cb54647295c Mon Sep 17 00:00:00 2001 From: Ben Mares Date: Fri, 9 May 2025 09:16:39 +0200 Subject: [PATCH 2/2] Pin hash for cibuildwheel --- .github/workflows/pypi.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/pypi.yml b/.github/workflows/pypi.yml index 7b828037ad..75ab17f4b1 100644 --- a/.github/workflows/pypi.yml +++ b/.github/workflows/pypi.yml @@ -80,7 +80,7 @@ jobs: persist-credentials: false - name: Build wheels - uses: pypa/cibuildwheel@v2.23.3 + uses: pypa/cibuildwheel@faf86a6ed7efa889faf6996aa23820831055001a # v2.23.3 - name: Attest GitHub build provenance uses: actions/attest-build-provenance@v2