Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore(deps): bump github.com/gin-gonic/gin from 1.7.0 to 1.7.7 #139

Merged

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Feb 9, 2023

Bumps github.com/gin-gonic/gin from 1.7.0 to 1.7.7.

Release notes

Sourced from github.com/gin-gonic/gin's releases.

Release v1.7.7

BUGFIXES

  • Fixed X-Forwarded-For unsafe handling of CVE-2020-28483 #2844, closed issue #2862
  • Tree: updated the code logic for latestNode #2897, closed issue #2894 #2878
  • Tree: fixed the misplacement of adding slashes #2847, closed issue #2843
  • Tree: fixed tsr with mixed static and wildcard paths #2924, closed issue #2918

ENHANCEMENTS

  • TrustedProxies: make it backward-compatible #2887, closed issue #2819
  • TrustedPlatform: provide custom options for another CDN services #2906

DOCS

  • NoMethod: added usage annotation (#2832)

Release v1.7.6

Handle pre release v1.7.5 error, so release v1.7.6 but still use v1.7.4 codes.

bump new release to fix checksum mismatch

No release notes provided.

v1.7.3

BUGFIXES

release v1.7.2

BUGFIXES

  • Fix conflict between param and exact path #2706. Close issue #2682 #2696.

v1.7.1

BUGFIXES

  • fix: data race with trustedCIDRs from #2674(#2675)
Changelog

Sourced from github.com/gin-gonic/gin's changelog.

Gin v1.7.7

BUGFIXES

  • Fixed X-Forwarded-For unsafe handling of CVE-2020-28483 #2844, closed issue #2862.
  • Tree: updated the code logic for latestNode #2897, closed issue #2894 #2878.
  • Tree: fixed the misplacement of adding slashes #2847, closed issue #2843.
  • Tree: fixed tsr with mixed static and wildcard paths #2924, closed issue #2918.

ENHANCEMENTS

  • TrustedProxies: make it backward-compatible #2887, closed issue #2819.
  • TrustedPlatform: provide custom options for another CDN services #2906.

DOCS

  • NoMethod: added usage annotation (#2832).

Gin v1.7.6

BUGFIXES

  • bump new release to fix v1.7.5 release error by using v1.7.4 codes.

Gin v1.7.4

BUGFIXES

  • bump new release to fix checksum mismatch

Gin v1.7.3

BUGFIXES

Gin v1.7.2

BUGFIXES

  • Fix conflict between param and exact path #2706. Close issue #2682 #2696.

Gin v1.7.1

BUGFIXES

  • fix: data race with trustedCIDRs from #2674(#2675)
Commits
  • 84d927b chore(docs): Bump to v1.7.7 (#2952)
  • 2d3572a Update version.go (#2923)
  • ae6f7a3 fix tsr with mixed static and wildcard paths (#2924)
  • bb945cf fix the misplacement of adding slashes (#2847)
  • a3f0872 Provide custom options of TrustedPlatform for another CDN services (#2906)
  • b5ad462 Update the code logic for latestNode in tree.go (#2897)
  • 3b555a5 ClientIP: check every proxy for trustiness (#2844)
  • fc5d6dd Tidy: Complete TrustedProxies feature (#2887)
  • 7d20914 Quick Fix c.ClientIP() mistakely parsing to 127.0.0.1 for who not using r.Run...
  • 4ad9526 Fix grammatical and spelling errors in context.go (#2883)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
  • @dependabot use these labels will set the current labels as the default for future PRs for this repo and language
  • @dependabot use these reviewers will set the current reviewers as the default for future PRs for this repo and language
  • @dependabot use these assignees will set the current assignees as the default for future PRs for this repo and language
  • @dependabot use this milestone will set the current milestone as the default for future PRs for this repo and language

You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps [github.com/gin-gonic/gin](https://github.com/gin-gonic/gin) from 1.7.0 to 1.7.7.
- [Release notes](https://github.com/gin-gonic/gin/releases)
- [Changelog](https://github.com/gin-gonic/gin/blob/master/CHANGELOG.md)
- [Commits](gin-gonic/gin@v1.7.0...v1.7.7)

---
updated-dependencies:
- dependency-name: github.com/gin-gonic/gin
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Feb 9, 2023
@codecov-commenter
Copy link

Codecov Report

Merging #139 (618679c) into master (4de1bfa) will not change coverage.
The diff coverage is n/a.

Additional details and impacted files

Impacted file tree graph

@@           Coverage Diff           @@
##           master     #139   +/-   ##
=======================================
  Coverage   45.35%   45.35%           
=======================================
  Files          35       35           
  Lines        3819     3819           
=======================================
  Hits         1732     1732           
  Misses       1874     1874           
  Partials      213      213           
Flag Coverage Δ
unittests 45.35% <ø> (ø)

Flags with carried forward coverage won't be shown. Click here to find out more.

Copy link
Collaborator

@simlecode simlecode left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@simlecode simlecode merged commit ba26b2e into master Feb 16, 2023
@simlecode simlecode deleted the dependabot/go_modules/github.com/gin-gonic/gin-1.7.7 branch February 16, 2023 06:16
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file
Projects
Status: In Review
Development

Successfully merging this pull request may close these issues.

2 participants