Commit d6fbc47
chore(deps): bump mkdocs-material 9.7.0 -> 9.7.7 (CVE-2026-73295)
Patch-level upgrade closing the sole remaining pip-audit finding
attributable to a project dependency (docs/dev-only, not shipped in
the runtime). Sole remaining cause of CI red after 7ce0f60/a64256a9.
Verified: poetry run pip-audit now reports only the pip bootstrap
vulnerability (PYSEC-2026-3721), which CI's own "Upgrade pip in Poetry
venv" step already resolves in that environment; pip itself is
untouched here per scope. poetry run mkdocs build --clean exits 0.
Lockfile diff is limited to mkdocs-material's own version/hash/
dependency-bound metadata plus the content-hash -- no unrelated
package churn.
Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>1 parent a64256a commit d6fbc47
2 files changed
Lines changed: 10 additions & 10 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
143 | 143 | | |
144 | 144 | | |
145 | 145 | | |
146 | | - | |
| 146 | + | |
147 | 147 | | |
148 | 148 | | |
149 | 149 | | |
| |||
0 commit comments