Revisions of python-Flask-Cors
buildservice-autocommit
accepted
request 1204119
from
Markéta Machová (mcalabkova)
(revision 27)
baserev update by copy to link target
Markéta Machová (mcalabkova)
accepted
request 1203634
from
Caroline Sena (csena)
(revision 26)
- version update to 5.0.0: * Breaking: Change default to disable private network access by @corydolphin in #368. This effectively resolves GHSA-hxwh-jpp2-84pm https://osv.dev/vulnerability/PYSEC-2024-71
buildservice-autocommit
accepted
request 1197029
from
Matej Cepl (mcepl)
(revision 25)
baserev update by copy to link target
Matej Cepl (mcepl)
accepted
request 1194158
from
Guang Yee (yeey)
(revision 24)
- version update to 4.0.1 * Address CVE-2024-1681 which is a log injection vulnerability when the log level is set to debug by @aneshujevic in :issue:`351`
buildservice-autocommit
accepted
request 1114847
from
Matej Cepl (mcepl)
(revision 23)
baserev update by copy to link target
Matej Cepl (mcepl)
accepted
request 1114805
from
Petr Gajdos (pgajdos)
(revision 22)
- version update to 4.0.0 * Remove support for Python versions older than 3.8 by @WAKayser in #330 * Add GHA tooling by @corydolphin in #331
buildservice-autocommit
accepted
request 1093054
from
Markéta Machová (mcalabkova)
(revision 21)
baserev update by copy to link target
Markéta Machová (mcalabkova)
accepted
request 1092828
from
Eric Schirra (ecsos)
(revision 20)
- Add %{?sle15_python_module_pythons}
Matej Cepl (mcepl)
accepted
request 944514
from
Benjamin Greiner (bnavigator)
(revision 19)
- Six is required unconditionally
Steve Kowalik (StevenK)
committed
(revision 18)
- Use pytest to run the testsuite.
buildservice-autocommit
accepted
request 896574
from
Matej Cepl (mcepl)
(revision 17)
baserev update by copy to link target
Matej Cepl (mcepl)
accepted
request 882933
from
Arun Persaud (apersaud)
(revision 16)
update to latest version
buildservice-autocommit
accepted
request 831046
from
Antonio Larrosa (alarrosa)
(revision 15)
baserev update by copy to link target
Antonio Larrosa (alarrosa)
accepted
request 831035
from
Antonio Larrosa (alarrosa)
(revision 14)
- Update to 3.0.9: * Escape path before evaluating resource rules. Prior to this, flask-cors incorrectly evaluated CORS resource matching before path expansion. E.g. "/api/../foo.txt" would incorrectly match resources for "/api/*" whereas the path actually expands simply to "/foo.txt" (CVE-2020-25032, boo#1175986) - Remove patch which is no longer required when using (at least) Flask 1.1, which is the case in Factory: * 0001-Disable-ACL_ORIGIN-check.patch
buildservice-autocommit
accepted
request 742134
from
Petr Cervinka (czerw)
(revision 13)
baserev update by copy to link target
Petr Cervinka (czerw)
committed
(revision 12)
Petr Cervinka (czerw)
accepted
request 741992
from
Petr Cervinka (czerw)
(revision 11)
- Add patch to disable failing ACL_ORIGIN check in test (boo#1154808)
buildservice-autocommit
accepted
request 709898
from
Petr Cervinka (czerw)
(revision 10)
baserev update by copy to link target
Petr Cervinka (czerw)
accepted
request 708780
from
Arun Persaud (apersaud)
(revision 9)
update to latest version
buildservice-autocommit
accepted
request 648443
from
Antonio Larrosa (alarrosa)
(revision 8)
baserev update by copy to link target
Displaying revisions 1 - 20 of 27