Skip to content

Bump cachebox from 5.2.3 to 6.2.0#8331

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/pip/cachebox-6.2.0
Open

Bump cachebox from 5.2.3 to 6.2.0#8331
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/pip/cachebox-6.2.0

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jul 23, 2026

Copy link
Copy Markdown
Contributor

Bumps cachebox from 5.2.3 to 6.2.0.

Release notes

Sourced from cachebox's releases.

Release v6.2.0

This release introduces a new method and improves the atomicity of an existing one, along with a bug fix.

New Features

  • Added setdefault_with method to cache classes for more flexible atomic operations.

Changes

  • setdefault is now fully atomic, improving thread-safety and reliability.

Bug Fixes

  • #61: Cache stampede doesn't work in free threading

Thanks To

Release v6.1.2

This release updates the core dependency to PyO3 0.29.0. This is a patch release with dependency and compatibility updates.

Changes

  • Dropped support for Python 3.13t (as per PyO3 upstream).
  • Improved compatibility with Python 3.15 beta and free-threaded builds.
  • Security fixes and internal soundness improvements from PyO3.
  • Minor build and dependency updates.

Release v6.1.1

This release includes a critical fix for a bug where exceptions raised by functions wrapped with @cached ( with enabled lock ) could get permanently stuck in the cache. Once an exception was cached, subsequent calls would always re-raise it immediately without re-executing the function or allowing the cache to clear properly.

Bug fixes

  • #57: Caching raised exceptions never clears the cache

Thanks to

Release v6.1.0

A critical bug has been fixed, and a new feature has been added. Now you can disable or use a custom lock for cache stampede prevention in @cached decorator.

New Features

  • Added lock parameter to the @cached decorator, providing more control on cache stampede prevention. Also fixes #54.

Bug Fixes

  • #55: GC traversing a concurrently-constructed cache aborts the interpreter (SIGABRT)
  • #54: 5.x.x / 6.0.0: Inherent lock for cached method causes deadlocks in some situations

Thanks To

Release v6.0.0

The library has been completely optimized and rewritten for maximum performance and stability. All core algorithms have been reviewed and improved, multiple long-standing bugs have been fixed, and several requested features have been added.

... (truncated)

Commits

Dependabot compatibility score

You can trigger a rebase of this PR by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [cachebox](https://github.com/awolverp/cachebox) from 5.2.3 to 6.2.0.
- [Release notes](https://github.com/awolverp/cachebox/releases)
- [Commits](awolverp/cachebox@v5.2.3...v6.2.0)

---
updated-dependencies:
- dependency-name: cachebox
  dependency-version: 6.2.0
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python Pull requests that update Python code labels Jul 23, 2026
@dependabot
dependabot Bot requested a review from a team as a code owner July 23, 2026 04:44
@dependabot dependabot Bot added the python Pull requests that update Python code label Jul 23, 2026
@codecov

codecov Bot commented Jul 23, 2026

Copy link
Copy Markdown

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 70.13%. Comparing base (c19cba5) to head (b5c0a63).
⚠️ Report is 12 commits behind head on main.

Additional details and impacted files
@@            Coverage Diff             @@
##             main    #8331      +/-   ##
==========================================
- Coverage   71.11%   70.13%   -0.99%     
==========================================
  Files         305      305              
  Lines       32004    32004              
==========================================
- Hits        22760    22445     -315     
- Misses       9244     9559     +315     

☔ View full report in Codecov by Harness.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

blocked on third party dependency dependencies Pull requests that update a dependency file python Pull requests that update Python code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant