Pip vulnerabilityAlerts is case sensitive #27069
-
How are you running Renovate?Mend Renovate hosted app on github.com If you're self-hosting Renovate, tell us what version of Renovate you run.No response If you're self-hosting Renovate, select which platform you are using.None What is your question?Pip package names are case-insensitive.
Logs (if relevant)Logs
|
Beta Was this translation helpful? Give feedback.
Replies: 2 comments 2 replies
-
Yes, in my opinion, this is a bug on Renovate side. GitHub is using original package names like "Pillow". This bug also reappears in pip-compile manager, as So during name comparison, normalized names are skipped. I would see a fix to that comparison logic for Python packages. But first I need to find it. |
Beta Was this translation helpful? Give feedback.
-
Hi there, Please do not unnecessarily For example, never It's OK to comment in an issue or discussion after multiple days or weeks. But please, still don't Thanks, the Renovate team |
Beta Was this translation helpful? Give feedback.
This has been fixed with #28214. Alerts can be duplicated now. But they are all created. #27733 should mitigate this if its released in
v38
.