YairHalberstadt / stronginject

compile time dependency injection for .NET
MIT License
845 stars 24 forks source link

Bump Microsoft.AspNetCore.Mvc.Core from 2.0.0 to 2.0.1 in /StrongInject.Extensions.DependencyInjection.AspNetCore #194

Open dependabot[bot] opened 2 years ago

dependabot[bot] commented 2 years ago

Bumps Microsoft.AspNetCore.Mvc.Core from 2.0.0 to 2.0.1.

Release notes

Sourced from Microsoft.AspNetCore.Mvc.Core's releases.

2.0.1

Bugs Fixed

  • Microsoft Security Advisory CVE-2017-11879: Open Redirect can cause Elevation Of Privilege (#7053)
  • Port fix for URL helper redirect to 2.0.x patch (#6910)
  • Port fix to 2.0.1: Zero Content-Length for static file 304 #6875 (#6887)
  • Port to 2.0.1: Injecting IViewLocalizer into Razor Page causing IndexOutOfRangeException. (#6837)
  • Port to 2.0.1: Input fields don't emit (and thus round-trip) offset value when binding against DateTimeOffset fields (#6834)
  • Port part of fix to 2.0.x for: Returning a file, accept-ranges headers, and browser behaviors #6780 (#6792)
  • Allow "page" route parameter to be used in Mvc application without Razor Pages (#6706)
  • CSharpCompiler does not parse LangVersion value correctly. (#6611)
Commits
  • f8789f5 Update build tools to 2.0.2-rc1-15526 and dependencies to 2.0.1-rtm-105
  • 3bfb023 Update how PackageReference versions are set
  • c4400d2 Port fix for URL helper redirect (#6916)
  • bf7c9e0 Use MSBuild to set NuGet feeds instead of NuGet.config
  • fb142f0 Import dependencies.props last to ensure TargetFramework is set first
  • bd8b4d8 Port fix for #6875: Only set Content-Length when serving body (#6888)
  • 1ca5884 Merge tag 'refs/tags/rel/2.0.0' into javiercn/rel/2.0.1
  • 4678e7c Update build scripts, tools, and dependencies for 2.0.x
  • a94e4df Update the list of packages patching in 2.0.x
  • f7e8efc Update bootstrappers
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language - `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language - `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language - `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/YairHalberstadt/stronginject/network/alerts).