Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump the rust-dependencies group with 3 updates #182

Merged
merged 1 commit into from
Jun 24, 2024

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jun 24, 2024

Updates the requirements on actix-web, url and uuid to permit the latest version.
Updates actix-web to 4.8.0

Release notes

Sourced from actix-web's releases.

actix-web: v4.8.0

Added

  • Add web::Html responder.
  • Add HttpRequest::full_url() method to get the complete URL of the request.

Fixed

  • Always remove port from return value of ConnectionInfo::realip_remote_addr() when handling IPv6 addresses. from the Forwarded header.
  • The UrlencodedError::ContentType variant (relevant to the Form extractor) now uses the 415 (Media Type Unsupported) status code in it's ResponseError implementation.
  • Apply HttpServer::max_connection_rate() setting when using rustls v0.22 or v0.23.
Commits
  • 4222f92 chore(actix-web): prepare release 4.8.0
  • d92a73e chore(actix-http): prepare release 3.8.0
  • c612b5c ci: fix checks
  • cbb55ba ci: use just for feature combos check
  • 643d645 Fix Rustls 0.22 & 0.23 are limited to 256 handshakes per second. (#3408)
  • 66905ef build(deps): bump taiki-e/install-action from 2.38.0 to 2.39.1 (#3404)
  • c076e34 build(deps): bump codecov/codecov-action from 4.4.1 to 4.5.0 (#3405)
  • 3ecaff5 build(deps): bump taiki-e/cache-cargo-install-action from 1.2.2 to 2.0.1 (#3406)
  • fa74ab3 remove references to StaticFiles (#3400)
  • 188206a feat: Html responder (#3399)
  • Additional commits viewable in compare view

Updates url to 2.5.2

Commits

Updates uuid to 1.9.0

Release notes

Sourced from uuid's releases.

1.9.0

Uuid::now_v7() is guaranteed to be monotonic

Before this release, Uuid::now_v7() would only use the millisecond-precision timestamp for ordering. It now also uses a global 42-bit counter that's re-initialized each millisecond so that the following will always pass:

let a = Uuid::now_v7();
let b = Uuid::now_v7();
assert!(a < b);

What's Changed

New Contributors

Full Changelog: uuid-rs/uuid@1.8.0...1.9.0

Commits
  • 4a129e7 Merge pull request #760 from uuid-rs/cargo/1.9.0
  • 6bfee6b prepare for 1.9.0 release
  • 62b7145 Merge pull request #759 from uuid-rs/chore/v7-counter-cleanup
  • 62e968c clean up new Timestamp APIs
  • 49319a7 Merge pull request #758 from uuid-rs/chore/test-overflow
  • 47b9130 ensure v7 methods don't overflow on max values
  • 0c561e3 Merge pull request #757 from uuid-rs/ci/more-miri
  • 252770b expand miri tests to cover all features
  • e62647f Merge pull request #755 from uuid-rs/feat/v7-counter
  • c270b3d improve testing for contexts
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Updates the requirements on [actix-web](https://github.com/actix/actix-web), [url](https://github.com/servo/rust-url) and [uuid](https://github.com/uuid-rs/uuid) to permit the latest version.

Updates `actix-web` to 4.8.0
- [Release notes](https://github.com/actix/actix-web/releases)
- [Changelog](https://github.com/actix/actix-web/blob/master/CHANGES.md)
- [Commits](actix/actix-web@web-v4.7.0...web-v4.8.0)

Updates `url` to 2.5.2
- [Release notes](https://github.com/servo/rust-url/releases)
- [Commits](servo/rust-url@v2.5.1...v2.5.2)

Updates `uuid` to 1.9.0
- [Release notes](https://github.com/uuid-rs/uuid/releases)
- [Commits](uuid-rs/uuid@1.8.0...1.9.0)

---
updated-dependencies:
- dependency-name: actix-web
  dependency-type: direct:production
  dependency-group: rust-dependencies
- dependency-name: url
  dependency-type: direct:production
  dependency-group: rust-dependencies
- dependency-name: uuid
  dependency-type: direct:production
  dependency-group: rust-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file rust Pull requests that update Rust code labels Jun 24, 2024
@madiele madiele merged commit 1fccf6e into main Jun 24, 2024
4 checks passed
@dependabot dependabot bot deleted the dependabot/cargo/rust-dependencies-7f1d42659e branch June 24, 2024 17:39
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file rust Pull requests that update Rust code
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant