Techini / vulnado

Purposely vulnerable Java application to help lead secure coding workshops
Apache License 2.0
0 stars 0 forks source link

Bump postgresql from 42.2.5 to 42.2.10 #17

Closed dependabot-preview[bot] closed 4 years ago

dependabot-preview[bot] commented 4 years ago

Bumps postgresql from 42.2.5 to 42.2.10.

Changelog

Sourced from postgresql's changelog.

[42.2.10] (2020-01-30)

Changed

Added

  • Add maxResultBuffer property (#1657)
  • add caller push of binary data (rebase of #953) (#1659)

Fixed

  • Cleanup PGProperty, sort values, and add some missing to docs (#1686)
  • Fixing LocalTime rounding (losing precision) (#1570)
  • Network Performance of PgDatabaseMetaData.getTypeInfo() method (#1668)
  • Issue #1680 updating a boolean field requires special handling to set it to t or f instead of true or false (#1682)
  • bug in pgstream for replication (#1681)
  • Issue #1677 NumberFormatException when fetching PGInterval with small value (#1678)
  • Metadata queries improvements with large schemas. (#1673)
  • Utf 8 encoding optimizations (#1444)
  • interval overflow (#1658)
  • Issue #1482 where the port was being added to the GSSAPI service name (#1651)
  • remove receiving EOF from backend after cancel since according to protocol the server closes the connection once cancel is sent (connection reset exception is always thrown) (#1641)
  • Unable to register out parameter Issue #1646 (#1648)

[42.2.9] (2019-12-06)

Changed

Added

  • read only transactions PR 1252
  • pkcs12 key functionality PR 1599
  • new "escapeSyntaxCallMode" connection property PR 1560
  • connection property to limit server error detail in exception exceptions PR 1579
  • cancelQuery() to PGConnection public interface PR 1157
  • support for large update counts (JDBC 4.2) PR 935
  • Add Binary Support for Oid.NUMERIC and Oid.NUMERIC_ARRAY PR 1636

Fixed

  • issue 716 getTypeInfo() may not return data in the order specified in Oracle documentation PR 1506
  • PgSQLXML setCharacterStream() results in null value PR 1608
  • get correct column length for simple domains PR 1605
  • NPE as a result of calling executeQuery twice on a statement fixes issue #684 [PR 1610] (pgjdbc/pgjdbc#1610)
  • handle numeric domain types PR 1611
  • pginterval to take iso8601 strings PR 1612
  • remove currentTimeMillis from code, tests are OK PR 1617
  • NPE when calling setNull on a PreparedStatement with no parameters PR 1620
  • allow OUT parameter registration when using CallableStatement native CALL PR 1561
  • add release save point into execute with batch PR 1583
  • Prevent use of extended query protocol for BEGIN before COPY PR 1639

[42.2.8] (2019-09-13)

Changed

Added

... (truncated)
Commits
  • c819136 [maven-release-plugin] prepare release REL42.2.10
  • 3ce4360 pass gpg key through arguments
  • 791cb85 add passphrase to release mvn task
  • cad7ec4 chore: update signing key
  • ad8232d Metadata queries improvment (#1694)
  • d8adfa5 WIP release notes for 42.2.10 (#1688)
  • 997790e chore(deps): bump checkstyle from 8.28 to 8.29 in /pgjdbc (#1691)
  • 47e366d Cleanup PGProperty, sort values, and add some missing to docs (#1686)
  • 1191076 fix: Fixes issue #1592 where one thread is reading the copy and another threa...
  • a7480d2 Fixing LocalTime rounding (losing precision) (#1570)
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Note: This repo was added to Dependabot recently, so you'll receive a maximum of 5 PRs for your first few update runs. Once an update run creates fewer than 5 PRs we'll remove that limit.

You can always request more updates by clicking Bump now in your Dependabot dashboard.

Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language - `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language - `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language - `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language - `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com): - Update frequency (including time of day and day of week) - Pull request limits (per update run and/or open at any time) - Out-of-range updates (receive only lockfile updates, if desired) - Security updates (receive only security updates, if desired)
sonarcloud[bot] commented 4 years ago

Kudos, SonarCloud Quality Gate passed!

Bug A 0 Bugs
Vulnerability A 0 Vulnerabilities (and Security Hotspot 0 Security Hotspots to review)
Code Smell A 0 Code Smells

No Coverage information No Coverage information
0.0% 0.0% Duplication

dependabot-preview[bot] commented 4 years ago

Superseded by #23.