nsiregar / pegelinux

Blog aggregator for pegelinux community
https://pegelinux.id
MIT License
10 stars 9 forks source link

Bump gunicorn from 19.9.0 to 20.0.4 #116

Closed dependabot-preview[bot] closed 3 years ago

dependabot-preview[bot] commented 4 years ago

Bumps gunicorn from 19.9.0 to 20.0.4.

Release notes *Sourced from [gunicorn's releases](https://github.com/benoitc/gunicorn/releases).* > ## 20.0.4 > - fix binding a socket using the file descriptor > - remove support for the `bdist_rpm` build > > ## 20.0.3 > - fixed load of a config file without a Python extension > - fixed `socketfromfd.fromfd` when defaults are not set > > > note: we now warn when we load a config file without Python Extension > > ## 20.0.2 > > - fix changelog > > ## 20.0.1 > > - fixed the way the config module is loaded. `__file__` is now available > - fixed `wsgi.input_terminated`. It is always true. > - use the highest protocol version of openssl by default > - only support Python >= 3.5 > - added `__repr__` method to `Config` instance > - fixed support of AIX platform and musl libc in `socketfromfd.fromfd` function > - fixed support of applications loaded from a factory function > - fixed chunked encoding support to prevent any `request smuggling `_ > - Capture os.sendfile before patching in gevent and eventlet workers. > fix `RecursionError`. > - removed locking in reloader when adding new files > - load the WSGI application before the loader to pick up all files > > > **note** this release add official support for applications loaded from a factory function > as documented in Flask and other places. > > ## 20.0 > - Fixed `fdopen` `RuntimeWarning` in Python 3.8 > - Added check and exception for str type on value in Response process_headers method. > - Ensure WSGI header value is string before conducting regex search on it. > - Added pypy3 to list of tested environments > - Grouped `StopIteration` and `KeyboardInterrupt` exceptions with same body together in Arbiter.run() > - Added `setproctitle` module to `extras_require` in setup.py > - Avoid unnecessary chown of temporary files > - Logging: Handle auth type case insensitively > - Removed `util.import_module` > - Removed fallback for `types.SimpleNamespace` in tests utils > - Use `SourceFileLoader` instead instead of `execfile_` > - Use `importlib` instead of `__import__` and eval` > - Fixed eventlet patching > - Added optional `datadog `_ tags for statsd metrics > - Header values now are encoded using latin-1, not ascii. > - Rewritten `parse_address` util added test > - Removed redundant super() arguments > ... (truncated)
Commits - [`5d0c778`](https://github.com/benoitc/gunicorn/commit/5d0c7783008d4df87d579a576d19182c4a95caf7) bump to 20.0.4 - [`67cb620`](https://github.com/benoitc/gunicorn/commit/67cb62099c27de00cf80b30e37a7617c2c0ec2ed) remove socketfromfd module - [`c583377`](https://github.com/benoitc/gunicorn/commit/c58337731af5d5c9c9a3f0e7c268805e1afec4d8) Revert "socketfromfd: remove python 2 compatibility" - [`ab25bae`](https://github.com/benoitc/gunicorn/commit/ab25bae7ebc6854093eaa8bb55ffd51b7dbbb529) Revert "socketfromfd: fix cross platform usage" - [`8c759dd`](https://github.com/benoitc/gunicorn/commit/8c759dd2e3b7a913c50b4e72ecf66fe106c64fdb) Revert "fix linting on python 3.8" - [`d530e67`](https://github.com/benoitc/gunicorn/commit/d530e673c344b37fa45a3094d8cbde59d9b48253) Revert "refactor module" - [`5bae77c`](https://github.com/benoitc/gunicorn/commit/5bae77c56c245b0be3144799fa4803b5f8f4a389) Merge branch '20.x' - [`d95ed44`](https://github.com/benoitc/gunicorn/commit/d95ed4489ef51024cbd7d880b590e3a2684f748e) point website to last version - [`0c3af6e`](https://github.com/benoitc/gunicorn/commit/0c3af6e364df21413a6a08faee1ad494ce884850) Merge branch 'master' into 20.x - [`f646bde`](https://github.com/benoitc/gunicorn/commit/f646bdee39683cb30a6e30466ac1b49be8358ad5) fix bad cherry-picking - Additional commits viewable in [compare view](https://github.com/benoitc/gunicorn/compare/19.9.0...20.0.4)


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language - `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language - `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language - `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language - `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com): - Update frequency (including time of day and day of week) - Pull request limits (per update run and/or open at any time) - Out-of-range updates (receive only lockfile updates, if desired) - Security updates (receive only security updates, if desired)
dependabot-preview[bot] commented 3 years ago

Superseded by #302.