schemacrawler / SchemaCrawler

Free database schema discovery and comprehension tool
http://www.schemacrawler.com/
Other
1.6k stars 199 forks source link

Bump org.jsoup:jsoup from 1.16.1 to 1.16.2 #1326

Closed dependabot[bot] closed 9 months ago

dependabot[bot] commented 10 months ago

Bumps org.jsoup:jsoup from 1.16.1 to 1.16.2.

Release notes

Sourced from org.jsoup:jsoup's releases.

jsoup 1.16.2

... (truncated)

Changelog

Sourced from org.jsoup:jsoup's changelog.

jsoup changelog

Release 1.17.1 [PENDING]

  • Improvement: in Jsoup.connect(), added support for request-level authentication, supporting authentication to proxies and to servers. jhy/jsoup#2046

  • Improvement: in the Elements list, added direct support for #set(index, element), #remove(index), #remove(object), #clear(), #removeAll(collection), #retainAll(collection), #removeIf(filter), #replaceAll(operator). These methods update the original DOM, as well as the Elements list. jhy/jsoup#2017

  • Improvement: when changing the OutputSettings syntax to XML, the xhtml EscapeMode is automatically set by default.

  • Improvement: added the :is(selector list) pseudo-selector, which finds elements that match any of the selectors in the selector list. Useful for making large ORed selectors more readable.

  • Improvement: repackaged the library with native (vs automatic) JPMS module support. jhy/jsoup#2025

  • Bugfix: when outputting with XML syntax, HTML elements that were parsed as data nodes ( and ) should be emitted as CDATA nodes, so that they can be parsed correctly by an XML parser. jhy/jsoup#1720

  • Bugfix: the Immediate Parent selector > could match elements above the root context element, causing incorrect elements to be returned when used on elements other than the root document. jhy/jsoup#2018

  • Bugfix: in a sub-query such as p:has(> span, > i), combinators following the , Or combinator would be incorrectly skipped, such that the sub-query was parsed as i instead of > i. jhy/jsoup#1707

  • Bugfix: in W3CDom, if the jsoup input document contained an empty doctype, the conversion would fail with a DOMException. Now, said doctype is discarded, and the conversion continues.

  • Build Improvement: added a local test proxy implementation, for proxy integration tests. jhy/jsoup#2029

  • Build Improvement: added tests for HTTPS request support, using a local self-signed cert. Includes proxy tests. jhy/jsoup#2032

Release 1.16.2 [20-Oct-2023]

  • Improvement: optimized the performance of complex CSS selectors, by adding a cost-based query planner. Evaluators are sorted by their relative execution cost, and executed in order of lower to higher cost. This speeds the matching process by ensuring that simpler evaluations (such as a tag name match) are conducted prior to more complex evaluations (such as an attribute regex, or a deep child scan with a :has).

  • Improvement: added support for and tags (and their children). This includes tag namespaces and case preservation on applicable tags and attributes. jhy/jsoup#2008

... (truncated)

Commits
  • db6dc74 [maven-release-plugin] prepare release jsoup-1.16.2
  • da4e275 Update some URL tests
  • 6ccd158 Escape supplemental characters correctly
  • f0eb6bd Don't recode ascii only strings
  • 9de27fa Only attempt to correct 8559 -> UTF on response headers
  • eff1521 Clear child nodes' parent on parent.empty()
  • 545145a Update testcase
  • 7a83ffe Made getEnforcedAttributes public
  • 8a59792 Make isSafe* public
  • 5f20fcc Prevent noscript tags in Safelist
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
dependabot[bot] commented 10 months ago

The following labels could not be found: dependencies.

dependabot[bot] commented 9 months ago

OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting @dependabot ignore this major version or @dependabot ignore this minor version. You can also ignore all major, minor, or patch releases for a dependency by adding an ignore condition with the desired update_types to your config file.

If you change your mind, just re-open this PR and I'll resolve any conflicts on it.