Checkmarx / capital

A built-to-be-vulnerable API application based on the OWASP top 10 API vulnerabilities. Use c{api}tal to learn, train and exploit API Security vulnerabilities within your own API Security CTF.
GNU Affero General Public License v3.0
274 stars 67 forks source link

Bump aiosql from 5.0 to 9.0 #63

Open dependabot[bot] opened 1 year ago

dependabot[bot] commented 1 year ago

Bumps aiosql from 5.0 to 9.0.

Release notes

Sourced from aiosql's releases.

v9.0

  • add duckdb support
  • switch to pyproject.toml only configuration
  • rename master to main
  • improve some docs
  • remove python 3.7 support and simplify code accordingly

v8.0

  • make select an iterable
  • support /* ... */ comments
  • warn on strange query names

v7.2

Fix overlapping re issue with :v+:w which was missing detecting the second variable.

v7.1

Improve testing.

v7.0

Features:

  • add MariaDB support
  • allow to change file extension when loading directories
  • switch mysql.connector dependency to mysql-connector-python because mysql-connector is obsolete
  • improved documentation

Tests:

  • simplify github CI tests, no service needed
  • run from Python 3.7 to 3.11
  • extensive rework of tests to ignore missing modules, use marks…
  • add tests with docker images, needed for mariadb
  • depend on pytest 7.

v6.5

  • improved documentation
  • add missing dependency on setuptools
  • improved Makefile
  • add untested mariadb support (will be tested and advertised in the next release)
  • some refactoring (for next release really)

v6.4

Version 6.4 brings:

  • improved CI checks with rstcheck
  • dynamic query functions point to the SQL query file
  • illegal query names such as 1st are filtered out
  • documentation has been improved
  • some code refactoring…

v6.3

Metainformation and documentation updates.

... (truncated)

Commits


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)