chore(deps): update dependency uvicorn to v0.54.0 - #261
Open
renovate[bot] wants to merge 1 commit into
Open
renovate[bot] wants to merge 1 commit into
renovate[bot] wants to merge 1 commit into
Conversation
renovate
Bot
force-pushed
the
renovate/uvicorn-0.x
branch
from
February 17, 2026 01:15
b457c5a to
30075f9
Compare
renovate
Bot
force-pushed
the
renovate/uvicorn-0.x
branch
from
March 13, 2026 16:55
30075f9 to
5b3a134
Compare
renovate
Bot
force-pushed
the
renovate/uvicorn-0.x
branch
from
March 16, 2026 09:32
5b3a134 to
84fc26c
Compare
renovate
Bot
force-pushed
the
renovate/uvicorn-0.x
branch
from
April 3, 2026 21:55
84fc26c to
ceff13b
Compare
renovate
Bot
force-pushed
the
renovate/uvicorn-0.x
branch
from
April 6, 2026 09:33
ceff13b to
cab32be
Compare
renovate
Bot
force-pushed
the
renovate/uvicorn-0.x
branch
from
April 21, 2026 16:14
cab32be to
7d62036
Compare
renovate
Bot
force-pushed
the
renovate/uvicorn-0.x
branch
from
April 23, 2026 09:35
7d62036 to
3069247
Compare
renovate
Bot
force-pushed
the
renovate/uvicorn-0.x
branch
from
May 14, 2026 21:59
3069247 to
9ecca7c
Compare
renovate
Bot
force-pushed
the
renovate/uvicorn-0.x
branch
from
May 24, 2026 12:57
9ecca7c to
1f31fa3
Compare
renovate
Bot
force-pushed
the
renovate/uvicorn-0.x
branch
from
June 3, 2026 22:38
1f31fa3 to
e13db91
Compare
renovate
Bot
force-pushed
the
renovate/uvicorn-0.x
branch
from
July 4, 2026 05:14
e13db91 to
9c82047
Compare
renovate
Bot
force-pushed
the
renovate/uvicorn-0.x
branch
2 times, most recently
from
July 8, 2026 15:45
6f938c4 to
d358d5e
Compare
renovate
Bot
force-pushed
the
renovate/uvicorn-0.x
branch
from
July 29, 2026 11:01
d358d5e to
d2c2578
Compare
renovate
Bot
force-pushed
the
renovate/uvicorn-0.x
branch
from
August 1, 2026 22:26
d2c2578 to
9116579
Compare
renovate
Bot
force-pushed
the
renovate/uvicorn-0.x
branch
from
August 13, 2026 11:55
9116579 to
37a20c3
Compare
renovate
Bot
force-pushed
the
renovate/uvicorn-0.x
branch
2 times, most recently
from
August 19, 2026 06:59
f9b072f to
10ca118
Compare
renovate
Bot
force-pushed
the
renovate/uvicorn-0.x
branch
from
September 14, 2026 10:50
10ca118 to
613f2a3
Compare
renovate
Bot
force-pushed
the
renovate/uvicorn-0.x
branch
from
September 25, 2026 13:55
613f2a3 to
5845f41
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
==0.37.0→==0.54.0Release Notes
Kludex/uvicorn (uvicorn)
v0.54.0: Version 0.54.0Compare Source
📨 Send metadata after the response body
uvicorn0.54.0 adds response trailers and103 Early Hintsto its experimental HTTP/2 implementation throughzttp.uv add uvicorn==0.54.0 "zttp>=0.0.34"http.response.trailersextension lets applications send metadata, such as checksums, after the response body. Clients must sendTE: trailersto receive them. Multiple trailer messages are combined before completing the response.--http zttp --http2. Upgrade-based h2c and WebSockets over HTTP/2 remain unsupported.💡 Hint at resources before the final response
103 Early Hintsover HTTP/2 (#3137). Applications can use the ASGIhttp.response.early_hintextension to send resource hints before the final response. Each supplied link becomes a separateLinkheader.Full changelog: 0.53.0...0.54.0
v0.53.0: Version 0.53.0Compare Source
🌐 Opt-in HTTP/2 support
uvicorn0.53.0 adds experimental HTTP/2 throughzttp, alongside a newzuvloopintegration and connection-handling improvements.uv add uvicorn==0.53.0zttp(#2982, #3101). Installzttp, then enable HTTP/2 with--http zttp --http2. Uvicorn negotiates HTTP/2 over TLS with ALPN and supports cleartext prior knowledge.⚙️ More event loop choice
zuvloop(#3104). Installzuvloopseparately and select it explicitly with--loop zuvloopon CPython 3.14 or newer.🛡️ More reliable connections and proxies
Connection: closetoken lists (#3103). Uvicorn now parses comma-separated tokens case-insensitively across HTTP implementations.FORWARDED_ALLOW_IPSvalue now includes::1.Full changelog: 0.52.4...0.53.0
v0.52.4: Version 0.52.4Compare Source
Fixed
Dateheaders from accepted WebSocket handshakes withwebsockets-sansio(#3078)Full Changelog: Kludex/uvicorn@0.52.3...0.52.4
v0.52.3: Version 0.52.3Compare Source
Changed
zttpto 0.0.24 and use its combined receive path, improving HTTP/1.1 request parsing performance (#3067)Full Changelog: Kludex/uvicorn@0.52.2...0.52.3
v0.52.2: Version 0.52.2Compare Source
Fixed
zttpto 0.0.22, fixing bodyless request receives and improving HTTP/1 request parsing performance (#3063)Full Changelog: Kludex/uvicorn@0.52.1...0.52.2
v0.52.1: Version 0.52.1Compare Source
Fixed
websockets-sansioandwsprotoimplementations, waiting for the client's close reply with a 10 second timeout instead of resetting the connection (#3053)websockets-sansioimplementation, preventing data truncation on server-initiated closes with large in-flight payloads (#3048)Content-TypeandContent-Lengthheaders from WebSocket denial responses on thewebsockets-sansioimplementation, and deliver non-UTF-8 denial bodies intact (#3041)Full Changelog: Kludex/uvicorn@0.52.0...0.52.1
v0.52.0: Version 0.52.0Compare Source
This release adds an experimental HTTP/1.1 implementation backed by zttp, a sans-IO HTTP parser I've been developing on the side: a core written in Zig, with bindings to Python. It has been running under a fuzzer for some weeks now, and has been through multiple rounds of security auditing.
It is still experimental, so don't put it in front of production traffic yet. Try it with
--http zttp, and please send any feedback to the issue tracker.Added
zttpHTTP/1.1 implementation, selectable with--http zttp(#2979)Fixed
Full Changelog: Kludex/uvicorn@0.51.0...0.52.0
v0.51.0: Version 0.51.0Compare Source
What's Changed
Full Changelog: Kludex/uvicorn@0.50.2...0.51.0
v0.50.2: Version 0.50.2Compare Source
What's Changed
Full Changelog: Kludex/uvicorn@0.50.1...0.50.2
v0.50.1: Version 0.50.1Compare Source
What's Changed
Sec-WebSocket-Protocolvalues in the websockets-sansio implementation by @Aayush7352 in #3019New Contributors
Full Changelog: Kludex/uvicorn@0.50.0...0.50.1
v0.50.0: Version 0.50.0Compare Source
What's Changed
asgiscope sub-dict per connection by @Kludex in #2976asgiscope dict per request by @Kludex in #2977autoto websockets-sansio by @Kludex in #2985Full Changelog: Kludex/uvicorn@0.49.0...0.50.0
v0.49.0: Version 0.49.0Compare Source
What's Changed
Full Changelog: Kludex/uvicorn@0.48.0...0.49.0
v0.48.0: Version 0.48.0Compare Source
What's Changed
ssl_cipherstoNoneand use OpenSSL defaults by @Kludex in #2940ProxyHeadersMiddlewareby @Kludex in #2944Full Changelog: Kludex/uvicorn@0.47.0...0.48.0
v0.47.0: Version 0.47.0Compare Source
What's Changed
ssl_context_factoryfor customSSLContextconfiguration by @Kludex in #2920fd=0as a valid file descriptor with reload/workers by @eltoder in #2927Full Changelog: Kludex/uvicorn@0.46.0...0.47.0
v0.46.0: Version 0.46.0Compare Source
What's Changed
ws_max_sizeinwsprotoimplementation by @Kludex in #2915ws_ping_intervalandws_ping_timeoutinwsprotoimplementation by @Kludex in #2916bytearrayfor incoming WebSocket message buffer in websockets-sansio by @Kludex in #2917Full Changelog: Kludex/uvicorn@0.45.0...0.46.0
v0.45.0: Version 0.45.0Compare Source
What's Changed
os.PathLikeforlog_configby @Kludex in #2905log_levelstrings case-insensitively by @Kludex in #2907ImportErrorwhen PyYAML is missing for YAML log config by @Kludex in #2906--reset-contextvarsflag to isolate ASGI request context by @Kludex in #2912http.disconnecton server shutdown for streaming responses" (#2829) by @Kludex in #2913New Contributors
Full Changelog: Kludex/uvicorn@0.44.0...0.45.0
v0.44.0: Version 0.44.0Compare Source
What's Changed
Full Changelog: Kludex/uvicorn@0.43.0...0.44.0
v0.43.0: Version 0.43.0Compare Source
Changed
http.disconnectASGIreceive()event on server shutting down for streaming responses (#2829)contextparameter forcreate_taskon Python 3.11+ (#2859)Full Changelog: Kludex/uvicorn@0.42.0...0.43.0
v0.42.0: Version 0.42.0Compare Source
Changed
bytearrayfor request body accumulation to avoid O(n^2) allocation on fragmented bodies (#2845)Fixed
HEADER_REregex (#2824)New Contributors
Full Changelog: Kludex/uvicorn@0.41.0...0.42.0
v0.41.0: Version 0.41.0Compare Source
Added
--limit-max-requests-jitterto stagger worker restarts (#2707)scope["server"](#2561)Changed
LifespanOn.error_occuredtoerror_occurred(#2776)Fixed
should_exitis set during startup (#2812)New Contributors
Full Changelog: Kludex/uvicorn@0.40.0...0.41.0
v0.40.0: Version 0.40.0Compare Source
What's Changed
Full Changelog: Kludex/uvicorn@0.39.0...0.40.0
v0.39.0: Version 0.39.0Compare Source
What's Changed
New Contributors
Full Changelog: Kludex/uvicorn@0.38.0...0.39.0
v0.38.0: Version 0.38.0Compare Source
What's Changed
New Contributors
Full Changelog: Kludex/uvicorn@0.37.0...0.38.0
Configuration
📅 Schedule: (UTC)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR was generated by Mend Renovate. View the repository job log.