nuxeh / url-bot-rs

Minimal IRC URL bot in Rust
ISC License
25 stars 11 forks source link

Bump tiny_http from 0.8.2 to 0.10.0 #426

Closed dependabot[bot] closed 2 years ago

dependabot[bot] commented 2 years ago

Bumps tiny_http from 0.8.2 to 0.10.0.

Release notes

Sourced from tiny_http's releases.

0.10.0

  • Replace chrono with time-rs

    chrono was only used to store and format DateTime into the slightly odd format required by RFC 7231, so to avoid the numerous RUSTSEC advisories generated by the localtime_r issue, we can just drop it entirely and switch to time-rs. Unfortunately this means we need to bump our minimum tested compiler version to 1.51, and as such this change requires a full minor release.

0.9.0

  • Rust 2018 Refactor

  • Enable prompt responses, before the request has been fully read

    This isn't an API change, but does result in different behaviour to 0.8.2 and so justifies a minor version bump.

    HTTP requests now return a boxed FusedReader which drops the underlying reader once it reaches EOF, such that the reader no longer needs to be explicitly consumed and the server may now respond with e.g. a "413 Payload too large" without waiting for the whole reader.

  • Bumped the minimum compiler version tested by CI to 1.48 (the version supported in Debian Bullseye)

Changelog

Sourced from tiny_http's changelog.

0.10.0

  • Replace chrono with time-rs

    chrono was only used to store and format DateTime into the slightly odd format required by RFC 7231, so to avoid the numerous RUSTSEC advisories generated by the localtime_r issue, we can just drop it entirely and switch to time-rs. Unfortunately this means we need to bump our minimum tested compiler version to 1.51, and as such this change requires a full minor release.

0.9.0

  • Rust 2018 Refactor

  • Enable prompt responses, before the request has been fully read

    This isn't an API change, but does result in different behaviour to 0.8.2 and so justifies a minor version bump.

    HTTP requests now return a boxed FusedReader which drops the underlying reader once it reaches EOF, such that the reader no longer needs to be explicitly consumed and the server may now respond with e.g. a "413 Payload too large" without waiting for the whole reader.

  • Bumped the minimum compiler version tested by CI to 1.48 (the version supported in Debian Bullseye)

Commits
  • fd2cced Prepare for v0.10.0 release
  • 75ac775 Correctly format HTTPDate using time-rs
  • 2975190 Remove chrono, use time directly, due to RUSTSEC-2020-0159
  • 9a2566c Prepare for 0.9.0 release
  • e70f8bb Remove some needless double-references
  • 4c11264 Test against MSRV 1.48 rather than 1.41.1
  • d8e065f remove uses of option::zip
  • e90289c various refactorings, 2018 edition
  • 4c52925 Update README and disable TravisCI
  • 1ca75c3 Replace slice::fill with an explicit loop for Rust 1.41 compat
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
codecov[bot] commented 2 years ago

Codecov Report

Merging #426 (149a7b7) into master (066afec) will not change coverage. The diff coverage is n/a.

Impacted file tree graph

@@           Coverage Diff           @@
##           master     #426   +/-   ##
=======================================
  Coverage   85.37%   85.37%           
=======================================
  Files          11       11           
  Lines        1641     1641           
=======================================
  Hits         1401     1401           
  Misses        240      240           

Continue to review full report at Codecov.

Legend - Click here to learn more Δ = absolute <relative> (impact), ø = not affected, ? = missing data Powered by Codecov. Last update 066afec...149a7b7. Read the comment docs.

nuxeh commented 2 years ago

@dependabot rebase