marshmallow-code / apispec-webframeworks

Web framework plugins for apispec (formally in apispec.ext).
MIT License
32 stars 23 forks source link

Bump flask from 1.0.3 to 1.1.0 #50

Closed dependabot-preview[bot] closed 5 years ago

dependabot-preview[bot] commented 5 years ago

Bumps flask from 1.0.3 to 1.1.0.

Changelog *Sourced from [flask's changelog](https://github.com/pallets/flask/blob/master/CHANGES.rst).* > Version 1.1.0 > ============= > > Released 2019-07-04 > > - Bump minimum Werkzeug version to >= 0.15. > - Drop support for Python 3.4. > - Error handlers for `InternalServerError` or `500` will always be passed an instance of `InternalServerError`. If they are invoked due to an unhandled exception, that original exception is now available as `e.original_exception` rather than being passed directly to the handler. The same is true if the handler is for the base `HTTPException`. This makes error handler behavior more consistent. 3266 > - Flask.finalize\_request is called for all unhandled exceptions even if there is no `500` error handler. > - Flask.logger takes the same name as Flask.name (the value passed as `Flask(import_name)`. This reverts 1.0's behavior of always logging to `"flask.app"`, in order to support multiple apps in the same process. A warning will be shown if old configuration is detected that needs to be moved. 2866 > - flask.RequestContext.copy includes the current session object in the request context copy. This prevents `session` pointing to an out-of-date object. 2935 > - Using built-in RequestContext, unprintable Unicode characters in Host header will result in a HTTP 400 response and not HTTP 500 as previously. 2994 > - send\_file supports \~os.PathLike objects as described in PEP 0519, to support pathlib in Python 3. 3059 > - send\_file supports \~io.BytesIO partial content. 2957 > - open\_resource accepts the "rt" file mode. This still does the same thing as "r". 3163 > - The MethodView.methods attribute set in a base class is used by subclasses. 3138 > - Flask.jinja\_options is a `dict` instead of an `ImmutableDict` to allow easier configuration. Changes must still be made before creating the environment. 3190 > - Flask's `JSONMixin` for the request and response wrappers was moved into Werkzeug. Use Werkzeug's version with Flask-specific support. This bumps the Werkzeug dependency to >= 0.15. 3125 > - The `flask` command entry point is simplified to take advantage of Werkzeug 0.15's better reloader support. This bumps the Werkzeug dependency to >= 0.15. 3022 > - Support `static_url_path` that ends with a forward slash. 3134 > - Support empty `static_folder` without requiring setting an empty `static_url_path` as well. 3124 > - jsonify supports dataclasses.dataclass objects. 3195 > - Allow customizing the Flask.url\_map\_class used for routing. 3069 > - The development server port can be set to 0, which tells the OS to pick an available port. 2926 > - The return value from cli.load\_dotenv is more consistent with the documentation. It will return `False` if python-dotenv is not installed, or if the given path isn't a file. 2937 > - Signaling support has a stub for the `connect_via` method when the Blinker library is not installed. 3208 > - Add an `--extra-files` option to the `flask run` CLI command to specify extra files that will trigger the reloader on change. 2897 > - Allow returning a dictionary from a view function. Similar to how returning a string will produce a `text/html` response, returning a dict will call `jsonify` to produce a `application/json` response. 3111 > - Blueprints have a `cli` Click group like `app.cli`. CLI commands registered with a blueprint will be available as a group under the `flask` command. 1357. > - When using the test client as a context manager (`with client:`), all preserved request contexts are popped when the block exits, ensuring nested contexts are cleaned up correctly. 3157 > - Show a better error message when the view return type is not supported. 3214 > - `flask.testing.make_test_environ_builder()` has been deprecated in favour of a new class `flask.testing.EnvironBuilder`. 3232 > - The `flask run` command no longer fails if Python is not built with SSL support. Using the `--cert` option will show an appropriate error message. 3211 > - URL matching now occurs after the request context is pushed, rather than when it's created. This allows custom URL converters to access the app and request contexts, such as to query a database for an id. 3088 > > Version 1.0.4 > ============= > > Released 2019-07-04 > > - The key information for `BadRequestKeyError` is no longer cleared outside debug mode, so error handlers can still access it. This requires upgrading to Werkzeug 0.15.5. 3249 > - `send_file` url quotes the ":" and "/" characters for more compatible UTF-8 filename support in some browsers. 3074 > - Fixes for PEP451 import loaders and pytest 5.x. 3275 > - Show message about dotenv on stderr instead of stdout. 3285
Commits - [`1b4ace9`](https://github.com/pallets/flask/commit/1b4ace9ba5e77679bf9d8e409283654f7589907e) release version 1.1.0 - [`8a78fdb`](https://github.com/pallets/flask/commit/8a78fdb09cc0a645a757cbcfb1beb09a3d2e5bca) Merge branch '1.0.x' - [`626b5cc`](https://github.com/pallets/flask/commit/626b5cc166e6151dfe0e86b514b2d9a1f55752a8) release version 1.0.4 - [`2844fdb`](https://github.com/pallets/flask/commit/2844fdb82ee86b812027f700f9c566da8324e78f) Merge branch '1.0.x' - [`c074759`](https://github.com/pallets/flask/commit/c07475935cdaec6dbb5ffe2df8bd5a4abafff99b) Merge pull request [#3285](https://github-redirect.dependabot.com/pallets/flask/issues/3285) from ThiefMaster/dotenv-msg-stderr - [`975f979`](https://github.com/pallets/flask/commit/975f9792697c1a74bca3cfff201d1e0415bece6a) Move dotenv warning to stderr - [`6d0e79b`](https://github.com/pallets/flask/commit/6d0e79b33afe47525958dc23c1ebb2eea70f25fe) Merge pull request [#3284](https://github-redirect.dependabot.com/pallets/flask/issues/3284) from pallets/logger-warning - [`b08e35e`](https://github.com/pallets/flask/commit/b08e35e4ab525c207144e42af1b678a78abe09cb) show warning for old logger config - [`6665c91`](https://github.com/pallets/flask/commit/6665c91e6fad7df5997c8f3ae2136049062c1b7f) Merge pull request [#3282](https://github-redirect.dependabot.com/pallets/flask/issues/3282) from pallets/logger-name - [`df470ae`](https://github.com/pallets/flask/commit/df470aecb96efbcb17ca76e73196c25c38ce6d17) use app.name as app.logger name - Additional commits viewable in [compare view](https://github.com/pallets/flask/compare/1.0.3...1.1.0)


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.

If all status checks pass Dependabot will automatically merge this pull request.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot ignore this [patch|minor|major] version` will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it). To ignore the version in this PR you can just close it - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language - `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language - `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language - `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language - `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com): - Update frequency (including time of day and day of week) - Automerge options (never/patch/minor, and dev/runtime dependencies) - Pull request limits (per update run and/or open at any time) - Out-of-range updates (receive only lockfile updates, if desired) - Security updates (receive only security updates, if desired) Finally, you can contact us by mentioning @dependabot.