fuzzapi
fuzzapi copied to clipboard
Bump devise from 4.2.0 to 4.7.1
Bumps devise from 4.2.0 to 4.7.1.
Changelog
Sourced from devise's changelog.
4.7.1 - 2019-09-06
- bug fixes
4.7.0 - 2019-08-19
enhancements
- Support Rails 6.0
- Update CI to rails 6.0.0.beta3 (by @tunnes)
- refactor method name to be more consistent (by @saiqulhaq)
- Fix rails 6.0.rc1 email uniqueness validation deprecation warning (by @Vasfed)
bug fixes
- Add
autocomplete="new-password"topassword_confirmationfields (by @ferrl)- Fix rails_51_and_up? method for Rails 6.rc1 (by @igorkasyanchuk)
4.6.2 - 2019-03-26
- bug fixes
- Revert "Set
encrypted_passwordtonilwhenpasswordis set tonil" since it broke backward compatibility with existing applications. See more on https://github-redirect.dependabot.com/plataformatec/devise/issues/5033#issuecomment-476386275 (by @mracos)4.6.1 - 2019-02-11
- bug fixes
- Check if
root_pathis defined with#respond_to?instead of#present(by @tegon)4.6.0 - 2019-02-07
... (truncated)
enhancements
- Allow to skip email and password change notifications (by @iorme1)
- Include the use of
nilforallow_unconfirmed_access_forin the docs (by @joaumg)- Ignore useless files into the
.gemfile (by @huacnlee)- Explain the code that prevents enumeration attacks inside
Devise::Strategies::DatabaseAuthenticatable(by @tegon)- Refactor the
devise_error_messages!helper to render a partial (by @prograhamer)- Add an option (
Devise.sign_in_after_change_password) to not automatically sign in a user after changing a password (by @knjko)bug fixes
- Fix missing comma in Simple Form generator (by @colinross)
- Fix error with migration generator in Rails 6 (by @oystersauce8)
- Set
encrypted_passwordtonilwhenpasswordis set tonil(by @sivagollapalli)- Consider whether the request supports flash messages inside
Devise::Controllers::Helpers#is_flashing_format?(by @colinross)- Fix typo inside
Devise::Generators::ControllersGenerator(by @kopylovvlad)- Sanitize parameters inside
Devise::Models::Authenticatable#find_or_initialize_with_errors(by @rlue)#after_database_authenticationcallback was not called after authentication on password reset (by @kanmaniselvan)- Fix corner case when
#confirmation_period_valid?was called at the same second asconfirmation_sent_atwas set. Mostly true for date types that only have second precisions. (by @stanhu)- Fix unclosed
litag inerror_messagespartial (by @mracos)- Fix Routes issue when devise engine is mounted in another engine on Rails versions lower than 5.1 (by @a-barbieri)
- Make
#increment_failed_attemptsconcurrency safe (by @tegon)
Commits
098345aPrepare for version4.7.1caa1a55Update CHANGELOG.md [ci skip]fee43f3Always return an error whenconfirmation_tokenis blank (#5132)fad6074Merge pull request #5125 from olleolleolle/patch-15ceef2dMerge pull request #5131 from lslm/ls-fix-typo6635cafFix typoe051360CI: Drop unused Travis sudo: false directive6bb74c5Update CHANGELOG.md [ci skip]a790570Prepare for4.7.0release12fc5b7Update README.md (#5115)- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot ignore this [patch|minor|major] versionwill close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)@dependabot use these labelswill set the current labels as the default for future PRs for this repo and language@dependabot use these reviewerswill set the current reviewers as the default for future PRs for this repo and language@dependabot use these assigneeswill set the current assignees as the default for future PRs for this repo and language@dependabot use this milestonewill set the current milestone as the default for future PRs for this repo and language
You can disable automated security fix PRs for this repo from the Security Alerts page.