Brightspace / D2L.Security.OAuth2

Brightspace OAuth 2.0 for C#
Apache License 2.0
7 stars 16 forks source link

Bump Moq from 4.17.2 to 4.18.1 #244

Closed dependabot[bot] closed 2 years ago

dependabot[bot] commented 2 years ago

Bumps Moq from 4.17.2 to 4.18.1.

Changelog

Sourced from Moq's changelog.

4.18.1 (2022-05-16)

Fixed

  • Regression with lazy evaluation of It.Is predicates in setup expressions after updating from 4.13.1 to 4.16.1 (@​b3go, #1217)
  • Regression with SetupProperty where Moq fails to match a property accessor implementation against its definition in an interface (@​Naxemar, #1248)
  • Difference in behavior when mocking async method using .Result vs without (@​cyungmann, #1253)

4.18.0 (2022-05-12)

New major version of DynamicProxy (you may get better performance!), so please update with care.

Changed

Fixed

  • Can't set up "private protected" properties (@​RobSiklos, #1170)
  • Using [...] an old version of System.Net.Http which is vulnerable to "DoS", "Spoofing", "Privilege Escalation", "Authentication Bypass" and "Information Exposure" (@​sidseter, #1219)
  • Failure when invoking a method with by-ref parameter & mockable return type on a mock with CallBase and DefaultValue.Mock configured (@​IanKemp, #1249)
Commits
  • ecd5404 Update version to 4.18.1
  • c969604 Merge pull request #1262 from stakx/bugfix/lazy-setup-expr-evaluation
  • dee0746 Update the changelog
  • 819f315 Optimize capture evaluation during expr comparison
  • 3535d7a Leave quoted exprs unchanged when evaluating captures
  • 37b24ad Add failing test re: lazy evaluation of It.Is predicates
  • 6c7e7a1 Update link to documentation website
  • 6e98431 Move changelog entry to correct release
  • a844d5e Merge pull request #1260 from stakx/bugfix/stubbedpropertysetup-ismatch
  • 7a7a76b Update the changelog
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)