olympus-fergus / dvpwa

Damn Vulnerable Python Web App
MIT License
0 stars 1 forks source link

Bump aioredis from 1.2.0 to 2.0.0 #16

Closed dependabot[bot] closed 2 years ago

dependabot[bot] commented 3 years ago

Bumps aioredis from 1.2.0 to 2.0.0.

Release notes

Sourced from aioredis's releases.

Version v2.0.0

Version 2.0 is a complete rewrite of aioredis. Starting with this version, aioredis now follows the API of redis-py, so you can easily adapt synchronous code that uses redis-py for async applications with aioredis-py.

NOTE: This version is not compatible with earlier versions of aioredis. If you upgrade, you will need to make code changes.

For more details, read our documentation on migrating to version 2.0.

Version v1.3.1

Bugfixes

  • Fix transaction data decoding (see #657);
  • Fix duplicate calls to pool.wait_closed() upon create_pool() exception (see #671);

Deprecations and Removals

  • Drop explicit loop requirement in API. Deprecate loop argument. Throw warning in Python 3.8+ if explicit loop is passed to methods (see #666).

Misc

Changelog

Sourced from aioredis's changelog.

2.0.0 - (2021-03-18)

Features

  • Port redis-py's client implementation to aioredis.
    (see #891)

  • Make hiredis an optional dependency.
    (see #917)

1.3.1 (2019-12-02)

Bugfixes

  • Fix transaction data decoding
    (see #657)
  • Fix duplicate calls to pool.wait_closed() upon create_pool() exception.
    (see #671)

Deprecations and Removals

  • Drop explicit loop requirement in API. Deprecate loop argument. Throw warning in Python 3.8+ if explicit loop is passed to methods.
    (see #666)

Misc

1.3.0 (2019-09-24)

Features

  • Added xdel and xtrim method which missed in commands/streams.py & also added unit test code for them
    (see #438)
  • Add count argument to spop command
    (see #485)
  • Add support for zpopmax and zpopmin redis commands
    (see #550)
  • Add towncrier: change notes are now stored in CHANGES.txt
    (see #576)
  • Type hints for the library
    (see #584)
  • A few additions to the sorted set commands:
  • the blocking pop commands: BZPOPMAX and BZPOPMIN
  • the CH and INCR options of the ZADD command
    (see #618)
  • Added no_ack parameter to xread_group streams method in commands/streams.py

... (truncated)

Commits
  • 6612ba7 Merge pull request #1075 from aio-libs/release-2.0
  • eb9bd17 Change the example install command
  • ef8c278 Restore 3.6 classifier
  • c65e2e7 Auto-update pre-commit hooks (#1077)
  • cf759f7 Remove 3.6 from the list of supported versions
  • 9ad56c8 Use the correct dev status classifier
  • 9cf2643 Bump the version for 2.0.0 release
  • b2952d9 Merge pull request #1068 from aio-libs/missing-lock
  • 3e9d710 Update CHANGES/1068.bugfix
  • ff37ce6 Merge pull request #1074 from aio-libs/fix-health-check
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
sonarcloud[bot] commented 3 years ago

Kudos, SonarCloud Quality Gate passed!    Quality Gate passed

Bug A 0 Bugs
Vulnerability A 0 Vulnerabilities
Security Hotspot A 0 Security Hotspots
Code Smell A 0 Code Smells

No Coverage information No Coverage information
No Duplication information No Duplication information

dependabot[bot] commented 2 years ago

Superseded by #36.