Skip to content

Update uvicorn requirement from ~=0.17.4 to ~=0.17.5#108

Merged
V3lop5 merged 1 commit intomainfrom
dependabot/pip/uvicorn-approx-eq-0.17.5
Feb 26, 2022
Merged

Update uvicorn requirement from ~=0.17.4 to ~=0.17.5#108
V3lop5 merged 1 commit intomainfrom
dependabot/pip/uvicorn-approx-eq-0.17.5

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot bot commented on behalf of github Feb 17, 2022

Updates the requirements on uvicorn to permit the latest version.

Release notes

Sourced from uvicorn's releases.

Version 0.17.5

0.17.5 - 2022-02-16

Fixed

  • Fix case where url is fragmented in httptools protocol (#1263) 2/16/22
  • Fix WSGI middleware not to explode quadratically in the case of a larger body (#1329) 2/16/16

Changed

  • Send HTTP 400 response for invalid request (#1352) 2/11/22

Full Changelog: Kludex/uvicorn@0.17.4...0.17.5

Changelog

Sourced from uvicorn's changelog.

0.17.5 - 2022-02-16

Fixed

  • Fix case where url is fragmented in httptools protocol (#1263) 2/16/22
  • Fix WSGI middleware not to explode quadratically in the case of a larger body (#1329) 2/16/16

Changed

  • Send HTTP 400 response for invalid request (#1352) 2/11/22

0.17.4 - 2022-02-04

Fixed

  • Replace create_server by create_unix_server (#1362) 04/02/22

0.17.3 - 2022-02-03

Fixed

  • Drop wsproto version checking. (#1359) 03/02/22

0.17.2 - 2022-02-03

Fixed

  • Revert #1332. While trying to solve the memory leak, it introduced an issue (#1345) when the server receives big chunks of data using the httptools implementation. (#1354) 03/02/22
  • Revert stream interface changes. This was introduced on 0.14.0, and caused an issue (#1226), which caused a memory leak when sending TCP pings. (#1355) 03/02/22
  • Fix wsproto version check expression (#1342) 28/01/22

0.17.1 - 2022-01-28

Fixed

  • Move all data handling logic to protocol and ensure connection is closed. (#1332) 28/01/22
  • Change spec_version field from "2.1" to "2.3", as Uvicorn is compliant with that version of the ASGI specifications. (#1337) 25/01/22

0.17.0.post1 - 2022-01-24

Fixed

  • Add the python_requires version specifier (#1328) 17/01/22

0.17.0 - 2022-01-14

Added

  • Allow configurable websocket per-message-deflate setting (#1300) 29/12/21
  • Support extra_headers for WS accept message (#1293) 06/01/22

... (truncated)

Commits
  • b6b783b Release 0.17.5 (#1381)
  • a694ee4 Fix WSGI middleware not to explode quadratically in the case of a larger body...
  • 399f90a Fix case where url is fragmented in httptools protocol (#1263)
  • 4e8781c Fix misleading docs around --reload behaviors (#1331)
  • 521b83e Switch to a discussion-first workflow (#1374)
  • 5b0e3b9 Add note on 'UVICORN_' prefixed settings and '--env-file' (#1372)
  • 90acede Moved warning about missing ws library only in upgrade case (#1370)
  • 93e07fd Send HTTP 400 response for invalid request (#1352)
  • 3d007ce Ignore coverage on MockLoop.is_running method (#1347)
  • 9206350 Docs refresh (#1365)
  • See full diff in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

@dependabot dependabot bot added dependencies Pull requests that update a dependency file python Pull requests that update Python code labels Feb 17, 2022
Updates the requirements on [uvicorn](https://github.com/encode/uvicorn) to permit the latest version.
- [Release notes](https://github.com/encode/uvicorn/releases)
- [Changelog](https://github.com/encode/uvicorn/blob/master/CHANGELOG.md)
- [Commits](Kludex/uvicorn@0.17.4...0.17.5)

---
updated-dependencies:
- dependency-name: uvicorn
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot force-pushed the dependabot/pip/uvicorn-approx-eq-0.17.5 branch from 2c92b67 to 63a7533 Compare February 26, 2022 10:15
@V3lop5 V3lop5 closed this Feb 26, 2022
@dependabot @github
Copy link
Copy Markdown
Contributor Author

dependabot bot commented on behalf of github Feb 26, 2022

OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting @dependabot ignore this major version or @dependabot ignore this minor version. You can also ignore all major, minor, or patch releases for a dependency by adding an ignore condition with the desired update_types to your config file.

If you change your mind, just re-open this PR and I'll resolve any conflicts on it.

@V3lop5 V3lop5 reopened this Feb 26, 2022
@github-actions
Copy link
Copy Markdown
Contributor

Unit Test Results

    1 files  ±0      1 suites  ±0   48s ⏱️ +13s
400 tests ±0  384 ✔️ ±0  16 💤 ±0  0 ±0 

Results for commit 63a7533. ± Comparison against base commit cd8f45f.

@codecov-commenter
Copy link
Copy Markdown

Codecov Report

Merging #108 (63a7533) into main (cd8f45f) will not change coverage.
The diff coverage is n/a.

Impacted file tree graph

@@           Coverage Diff           @@
##             main     #108   +/-   ##
=======================================
  Coverage   79.42%   79.42%           
=======================================
  Files         104      104           
  Lines        2522     2522           
=======================================
  Hits         2003     2003           
  Misses        519      519           
Flag Coverage Δ
pytest 79.42% <ø> (ø)

Flags with carried forward coverage won't be shown. Click here to find out more.


Continue to review full report at Codecov.

Legend - Click here to learn more
Δ = absolute <relative> (impact), ø = not affected, ? = missing data
Powered by Codecov. Last update cd8f45f...63a7533. Read the comment docs.

@github-actions github-actions bot temporarily deployed to PR-108-Preview February 26, 2022 10:40 Destroyed
@V3lop5 V3lop5 merged commit 31155a2 into main Feb 26, 2022
@V3lop5 V3lop5 deleted the dependabot/pip/uvicorn-approx-eq-0.17.5 branch February 26, 2022 10:42
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python Pull requests that update Python code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants