zitadel / saml

A SAML 2.0 server (IdP) implementation written for Go
https://zitadel.com
Apache License 2.0
45 stars 9 forks source link

chore(deps): bump github.com/russellhaering/goxmldsig from 1.3.0 to 1.4.0 #46

Closed dependabot[bot] closed 1 year ago

dependabot[bot] commented 1 year ago

Bumps github.com/russellhaering/goxmldsig from 1.3.0 to 1.4.0.

Release notes

Sourced from github.com/russellhaering/goxmldsig's releases.

v1.4.0

What's Changed

New Contributors

Full Changelog: https://github.com/russellhaering/goxmldsig/compare/v1.3.0...v1.4.0

Commits
  • 5a3be1c Merge pull request #94 from rowland66/fix-superfluous-namespace-declaration-c...
  • 1245f63 Fixed the removal of superfluous namespace declarations for canonicalization ...
  • 1bb67cd Merge pull request #82 from karlovskiy/find-signature-canonical-signinfo-order
  • f644ba4 Add a test case for namespace inheritance in canonicalization
  • 6ff53e2 Merge pull request #93 from rowland66/c14N10RecCanonicalizer-include-parent-n...
  • 32aee4e Merge pull request #91 from adamdecaf/sort-matching-attr-keys-by-ns-uri
  • f3f51b2 The spec for XML canonicalization REC-xml-c14n-20010315 section 2.4 requires ...
  • 436aac5 etreeutils: sort attrs with matching namespaces by their NS URIs
  • 21f94b7 Fix SignedInfo order in findSignature method
  • See full diff in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
codecov[bot] commented 1 year ago

Codecov Report

Merging #46 (0ab22c8) into main (29525bc) will not change coverage. The diff coverage is n/a.

@@           Coverage Diff           @@
##             main      #46   +/-   ##
=======================================
  Coverage   47.26%   47.26%           
=======================================
  Files          21       21           
  Lines        1976     1976           
=======================================
  Hits          934      934           
  Misses        984      984           
  Partials       58       58           

Help us with your feedback. Take ten seconds to tell us how you rate us. Have a feature suggestion? Share it here.

github-actions[bot] commented 1 year ago

:tada: This PR is included in version 0.1.0 :tada:

The release is available on GitHub release

Your semantic-release bot :package::rocket: