- update to 1.3.0 (bsc#1259172, CVE-2026-28231): * Pixel aspect ratio (pasp) read/write support. #408 * No-GIL (free-threaded Python) support. #405 * Integer overflow in encode path buffer validation leading to heap out-of-bounds read. (CVE-2026-28231, GHSA-5gjj-6r7v-ph3x) OBS-URL: https://build.opensuse.org/request/show/1336314 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/python-pillow-heif?expand=0&rev=11