Skip to content

chore(deps): bump flask-admin from 2.2.0 to 2.2.1 in /frontend_multi_user - #904

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/pip/frontend_multi_user/flask-admin-2.2.1
Open

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/pip/frontend_multi_user/flask-admin-2.2.1

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 27, 2026

Copy link
Copy Markdown
Contributor

Bumps flask-admin from 2.2.0 to 2.2.1.

Release notes

Sourced from flask-admin's releases.

v2.2.1

Bugfixes:

  • BaseTimeBetweenFilter.validate() now returns False on invalid input instead of raising an exception.
  • Fix encoding for editing file in FileAdmin. Now it uses UTF-8 and accepts non-ASCII characters.
  • SQLAlchemy backend: conv_ARRAY now infers the array element's python_type and passes it through as the Select2TagsField coerce callable. Saving a Postgres ARRAY(Integer) / ARRAY(Float) column no longer fails with column "x" is of type integer[] but expression is of type text[] (closes #1724).
  • Fix sorting arrow direction in admin list view. Now it reflects the current sorting state (closes #2933).
  • MongoEngine fileadmin backend: downloading GridFS files now preserves their name and extension instead of saving them as file (closes #2916).
  • MongoEngine backend: stop reading the deprecated GridOut.contentType property. File downloads and list/form widgets now resolve the MIME type via metadata["content_type"], the GridFS document directly (for legacy data), or filename-based guessing (closes #2920).
  • MongoEngine backend: QueryAjaxModelLoader.format now handles unresolved DBRef values gracefully instead of crashing with AttributeError: 'DBRef' object has no attribute 'pk' (which surfaced as HTTP 500 from the autocomplete endpoint when a ReferenceField target was deleted). Broken references are shown as (missing: <collection>/<id>) so users can clear them (closes #2917).
  • Peewee backend: inline model forms now support form_extra_fields when the child form is autogenerated. Previously, inline forms ignored these fields because they bypassed get_form() and called model_form() directly.
  • SQLAlchemy backend: the Unique validator now resolves its session when it runs instead of capturing the session that was active when the form was scaffolded. With flask-sqlalchemy-lite, forms scaffolded inside a startup app_context() previously kept querying that context's Session, which was never committed, rolled back or closed, so one connection per process sat "idle in transaction" after the first save of a form with a unique column (and failed permanently with PendingRollbackError once the server dropped it). Both ModelView(Model, db) and the deprecated ModelView(Model, db.session) continue to work (relates to #2831).
  • Peewee backend: ModelView.get_one() now returns None when no record matches, instead of letting peewee's DoesNotExist propagate. Requesting the details, edit or delete view for an absent or malformed id no longer returns HTTP 500; it flashes "Record does not exist." and redirects, matching the other backends (closes #2924).

Type hints:

  • Type hints added to all functions and methods (some still use typing.Any where full typing not yet available)
  • Updated InlineBaseFormAdmin.get_form() to return type[BaseForm] | None rather than T_MODEL_VIEW | None
  • Minor type hinting improvements for peewee backend
  • Admin(index_view=...) now accepts a BaseView instance rather than AdminIndexView, allowing e.g. FileAdmin
Changelog

Sourced from flask-admin's changelog.

2.2.1

Bugfixes:

  • BaseTimeBetweenFilter.validate() now returns False on invalid input instead of raising an exception.
  • Fix encoding for editing file in FileAdmin. Now it uses UTF-8 and accepts non-ASCII characters.
  • SQLAlchemy backend: conv_ARRAY now infers the array element's python_type and passes it through as the Select2TagsField coerce callable. Saving a Postgres ARRAY(Integer) / ARRAY(Float) column no longer fails with column "x" is of type integer[] but expression is of type text[] (closes #1724).
  • Fix sorting arrow direction in admin list view. Now it reflects the current sorting state (closes #2933).
  • MongoEngine fileadmin backend: downloading GridFS files now preserves their name and extension instead of saving them as file (closes #2916).
  • MongoEngine backend: stop reading the deprecated GridOut.contentType property. File downloads and list/form widgets now resolve the MIME type via metadata["content_type"], the GridFS document directly (for legacy data), or filename-based guessing (closes #2920).
  • MongoEngine backend: QueryAjaxModelLoader.format now handles unresolved DBRef values gracefully instead of crashing with AttributeError: 'DBRef' object has no attribute 'pk' (which surfaced as HTTP 500 from the autocomplete endpoint when a ReferenceField target was deleted). Broken references are shown as (missing: <collection>/<id>) so users can clear them (closes #2917).
  • Peewee backend: inline model forms now support form_extra_fields when the child form is autogenerated. Previously, inline forms ignored these fields because they bypassed get_form() and called model_form() directly.
  • SQLAlchemy backend: the Unique validator now resolves its session when it runs instead of capturing the session that was active when the form was scaffolded. With flask-sqlalchemy-lite, forms scaffolded inside a startup app_context() previously kept querying that context's Session, which was never committed, rolled back or closed, so one connection per process sat "idle in transaction" after the first save of a form with a unique column (and failed permanently with PendingRollbackError once the server dropped it). Both ModelView(Model, db) and the deprecated ModelView(Model, db.session) continue to work (relates to #2831).
  • Peewee backend: ModelView.get_one() now returns None when no record matches, instead of letting peewee's DoesNotExist propagate. Requesting the details, edit or delete view for an absent or malformed id no longer returns HTTP 500; it flashes "Record does not exist." and redirects, matching the other backends (closes #2924).

Type hints:

  • Type hints added to all functions and methods (some still use typing.Any where full typing not yet available)
  • Updated InlineBaseFormAdmin.get_form() to return type[BaseForm] | None rather than T_MODEL_VIEW | None
  • Minor type hinting improvements for peewee backend
  • Admin(index_view=...) now accepts a BaseView instance rather than AdminIndexView, allowing e.g. FileAdmin
Commits
  • 42c221e Prepare release v2.2.1
  • 90e0e44 Merge pull request #2953 from pallets-eco/lazy-unique-session
  • 844338a Fetch session during request context, not startup context
  • b1964dd build(deps): bump astral-sh/setup-uv in the github-actions group (#2950)
  • 7fee024 [type hints]: Admin(index_view=...) now accepts a BaseView instance rather th...
  • 73eeed0 update dependencies (#2946)
  • 7bae149 Fix typo in comment (#2945)
  • e386a19 build(deps): bump the github-actions group with 3 updates (#2941)
  • 564d4bf fix(peewee): return None from get_one() when no record matches (#2939)
  • 4c24e9a build(deps): bump pillow from 12.2.0 to 12.3.0 (#2938)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [flask-admin](https://github.com/pallets-eco/flask-admin) from 2.2.0 to 2.2.1.
- [Release notes](https://github.com/pallets-eco/flask-admin/releases)
- [Changelog](https://github.com/pallets-eco/flask-admin/blob/master/doc/changelog.rst)
- [Commits](pallets-eco/flask-admin@v2.2.0...v2.2.1)

---
updated-dependencies:
- dependency-name: flask-admin
  dependency-version: 2.2.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python Pull requests that update python code labels Sep 27, 2026

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python Pull requests that update python code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants