bcgov / jag-spd-spice

Security Programs Division - Security Programs Integrated Case Environment
Apache License 2.0
2 stars 9 forks source link

Bump Swashbuckle.AspNetCore.SwaggerUi from 4.0.1 to 6.4.0 in /spice-carla-sync-service #347

Open dependabot[bot] opened 1 year ago

dependabot[bot] commented 1 year ago

Bumps Swashbuckle.AspNetCore.SwaggerUi from 4.0.1 to 6.4.0.

Release notes

Sourced from Swashbuckle.AspNetCore.SwaggerUi's releases.

v6.4.0

Changes since v6.3.0

v6.3.1

Changes since v6.3.0

v6.3.0

Changes since v6.2.3

v6.2.3

Changes since v6.1.3

v6.1.3

No release notes provided.

v6.1.0

No release notes provided.

v6.0.0

This release includes a number of small enhancements and bug fixes. See the following for a full list of issues addressed: https://github.com/domaindrivendev/Swashbuckle.AspNetCore/milestone/16?closed=1

Of note, these include:

  • include discriminator metadata in base schema if either UseOneOfForPolymorphism OR UseAllOfForInheritance are enabled
  • remove fragile logic around X-Forwarded-* headers in favor of MS's Forwarded Headers Middleware (*see breaking changes)
  • beta (opt-in) support for non-nullable reference types
  • enhancements to SwaggerSchemaAttribute incl. use on Enum types & ability to set Nullable flag explicitly
  • wrap generator exceptions to surface contextual info for troubleshooting
  • support JSON object/array syntax in XML tags
  • improved handling for enum default values to reflect serializer behavior more accurately
  • upgrade swagger-ui to 3.40.0

Breaking Changes

  • the obsolete settings DescribeAllEnumsAsStrings and DescribeStringEnumsInCamelCase are now fully removed
  • X-Forwarded-* headers are no longer honored within SB code - use MS's Forwarded Headers Middleware instead

v5.6.0

This release includes a number of small enhancements and bug fixes. See the following for a full list of issues addressed: https://github.com/domaindrivendev/Swashbuckle.AspNetCore/milestone/15?closed=1

Of note, these include:

  • Improve polymorphism & inheritance behavior, incl. more flexible config & discriminator metadata
  • Better support for reverse proxy environments, incl. assigning servers metadata based on the presence of common reverse proxy headers
  • Support for emitting Swagger / OpenAPI in yaml format
  • Improve Schema generation for ProblemDetails
  • Handle Min/MaxLength attribute for arrays
  • Upgrade swagger-ui to v3.32.5
  • Upgrade redoc to v2.0.0-rc.40

... (truncated)

Commits
  • c70947f Upgrade swagger-ui/redoc & prep for new minor release
  • 426c5bb Merge pull request #2460 from domaindrivendev/make-auth-infer-opt-in
  • ddd0627 Ensure document filters can affect inferred security schemes
  • 1332212 Make infer security schemes opt-in
  • 71ed7d3 Prep for 6.3.2. release
  • 9dbb633 Merge pull request #2457 from domaindrivendev/dependabot/nuget/test/WebSites/...
  • 4d6d79e Bump Newtonsoft.Json in /test/WebSites/NswagClientExample
  • d811d5f Merge pull request #2447 from domaindrivendev/dependabot/nuget/src/Swashbuckl...
  • 39604d9 Merge pull request #2450 from zippy1981/bugifix/2449-client-secret-warnings
  • 897ffed Merge pull request #2441 from captainsafia/op-merge
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/bcgov/jag-spd-spice/network/alerts).