Checkmarx / capital

A built-to-be-vulnerable API application based on the OWASP top 10 API vulnerabilities. Use c{api}tal to learn, train and exploit API Security vulnerabilities within your own API Security CTF.
GNU Affero General Public License v3.0
274 stars 67 forks source link

Bump aiosql from 5.0 to 8.0 #37

Closed dependabot[bot] closed 1 year ago

dependabot[bot] commented 1 year ago

Bumps aiosql from 5.0 to 8.0.

Release notes

Sourced from aiosql's releases.

v8.0

  • make select an iterable
  • support /* ... */ comments
  • warn on strange query names

v7.2

Fix overlapping re issue with :v+:w which was missing detecting the second variable.

v7.1

Improve testing.

v7.0

Features:

  • add MariaDB support
  • allow to change file extension when loading directories
  • switch mysql.connector dependency to mysql-connector-python because mysql-connector is obsolete
  • improved documentation

Tests:

  • simplify github CI tests, no service needed
  • run from Python 3.7 to 3.11
  • extensive rework of tests to ignore missing modules, use marks…
  • add tests with docker images, needed for mariadb
  • depend on pytest 7.

v6.5

  • improved documentation
  • add missing dependency on setuptools
  • improved Makefile
  • add untested mariadb support (will be tested and advertised in the next release)
  • some refactoring (for next release really)

v6.4

Version 6.4 brings:

  • improved CI checks with rstcheck
  • dynamic query functions point to the SQL query file
  • illegal query names such as 1st are filtered out
  • documentation has been improved
  • some code refactoring…

v6.3

Metainformation and documentation updates.

v6.2

  • Improved documentation and tests.
  • normalize adapter names to lowercase.

v6.1

This v6.1 does:

  • make very minor code and doc changes

... (truncated)

Commits
  • 6ba030b fix docker composition
  • 521d6b5 rename targets for better consistency
  • 77f2f42 cleanup dquote/squote SQL escaping handling
  • ef6dd91 rework project urls
  • 8ead910 prepare for v8.0
  • 947b30b improve docker README
  • 6817aa9 warn on non ascii chars
  • 60a375f add support for /* ... */ comments
  • 720a0df make select() an iterable instead of returning a list
  • 4affb00 prepare for 7.2
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
dependabot[bot] commented 1 year ago

Superseded by #63.