Skip to content

Conversation

@dependabot
Copy link

@dependabot dependabot bot commented on behalf of github Apr 16, 2025

Bumps markdown2 from 2.3.9 to 2.5.3.

Changelog

Sourced from markdown2's changelog.

python-markdown2 2.5.3

  • [pull #616] make tables without body gfm compatible

python-markdown2 2.5.2

  • [pull #605] Add support for Python 3.13, drop EOL 3.8
  • [pull #607] Fix middle-word-em extra preventing strongs from being recognized (#606)
  • [pull #609] Add option to output to file in CLI (#608)
  • [pull #612] Fix footnote labels appearing out-of-order (#536)
  • [pull #613] Fix smarty pants extra not triggering when it should (#611)

python-markdown2 2.5.1

  • [pull #590] Fix underscores within bold text getting emphasized (#589)
  • [pull #591] Add Alerts extra
  • [pull #595] Fix img alt text being processed as markdown (#594)
  • [pull #598] Add link-shortrefs extra (#597)
  • [pull #600] Use urandom for SECRET_SALT
  • [pull #602] Fix XSS issue in safe mode (#601)
  • [pull #604] Fix XSS injection in image URLs (#603)

python-markdown2 2.5.0

  • [pull #519] Add support for custom extras
  • [pull #519] Drop Python 3.5 support
  • [pull #568] Add prepend arg to toc extra (#397)
  • [pull #569] Process HTML comments as markdown in 'escape' safe mode
  • [pull #570] Fix syntax warnings in test suite
  • [pull #572] Process inline tags as HTML blocks when they span multiple lines (#571)
  • [pull #573] Add new LaTeX Extra
  • [pull #576] Fix html, head and body tags being wrapped in <p> tags (#575)
  • [pull #578] Graceful handling of broken lists when cuddled-lists extra is enabled
  • [pull #581] Add type hints (#562)
  • [pull #581] Drop Python 3.6 and 3.7 support
  • [pull #582] Fix fenced code blocks breaking lists (#580)
  • [pull #586] Fix #583 by tweaking incomplete tag regex
  • [pull #587] Fix AssertionError on malformed HTML (#584)

python-markdown2 2.4.13

  • [pull #559] Allow cuddled tables (#557)
  • [pull #560] Fix markdown-in-html not always splitting HTML tags into separate lines (#558)
  • [pull #564] Fix incomplete comments in safe mode not being escaped (#563)
  • [pull #566] Fix crash in markdown-in-html extra (#565)

... (truncated)

Commits

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [markdown2](https://github.com/trentm/python-markdown2) from 2.3.9 to 2.5.3.
- [Changelog](https://github.com/trentm/python-markdown2/blob/master/CHANGES.md)
- [Commits](trentm/python-markdown2@2.3.9...2.5.3)

---
updated-dependencies:
- dependency-name: markdown2
  dependency-version: 2.5.3
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file python Pull requests that update python code labels Apr 16, 2025
@dependabot @github
Copy link
Author

dependabot bot commented on behalf of github Aug 1, 2025

Superseded by #258.

@dependabot dependabot bot closed this Aug 1, 2025
@dependabot dependabot bot deleted the dependabot/pip/markdown2-2.5.3 branch August 1, 2025 21:36
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python Pull requests that update python code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant