django-starter-template
django-starter-template copied to clipboard
Bump django-debug-toolbar from 1.9.1 to 1.11.1
Bumps django-debug-toolbar from 1.9.1 to 1.11.1.
Changelog
Sourced from django-debug-toolbar's changelog.
1.11.1 (2021-04-14)
- Fixed SQL Injection vulnerability, CVE-2021-30459. The toolbar now calculates a signature on all fields for the SQL select, explain, and analyze forms.
1.11 (2018-12-03)
- Use
deferon all<script>tags to avoid blocking HTML parsing, removed inline JavaScript.- Stop inlining images in CSS to avoid Content Security Policy errors altogether.
- Reformatted the code using
black <https://github.com/ambv/black>__.- Added the Django mail panel to the list of third-party panels.
- Convert system check errors to warnings to accomodate exotic configurations.
- Fixed a crash when explaining raw querysets.
- Fixed an obscure unicode error with binary data fields.
- Added MariaDB and Python 3.7 builds to the CI.
1.10.1 (2018-09-11)
- Fixed a problem where the duplicate query detection breaks for non-hashable query parameters.
- Added support for structured types when recording SQL.
- Made Travis CI also run one test no PostgreSQL.
- Added fallbacks for inline images in CSS.
- Improved cross-browser compatibility around
URLSearchParamsusage.- Fixed a few typos and redundancies in the documentation, removed mentions of django-debug-toolbar's jQuery which aren't accurate anymore.
1.10 (2018-09-06)
- Removed support for Django < 1.11.
- Added support and testing for Django 2.1 and Python 3.7. No actual code changes were required.
- Removed the jQuery dependency. This means that django-debug-toolbar now requires modern browsers with support for
fetch,classListetc.- Added support for the server timing header.
- Added a differentiation between similar and duplicate queries. Similar queries are what duplicate queries used to be (same SQL, different parameters).
- Stopped hiding frames from Django's contrib apps in stacktraces by default.
... (truncated)
Commits
bc08f69Merge pull request from GHSA-pghf-347x-c2gjc201ce3django-debug-toolbar 1.110a75be1Update the change loga4a5393Merge pull request #1121 from matthiask/mariadb48a0e2eReformat settings using black901aed7Mark binary payload as binary (same thing BinaryField.get_db_prep_value does)ad091e6Test with a real BinaryField2f3193eRemove the MySQL USER762e5d9Run tests with MariaDB too on Travis CIe78ac8cMerge pull request #1107 from dbowd/patch-1- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)@dependabot use these labelswill set the current labels as the default for future PRs for this repo and language@dependabot use these reviewerswill set the current reviewers as the default for future PRs for this repo and language@dependabot use these assigneeswill set the current assignees as the default for future PRs for this repo and language@dependabot use this milestonewill set the current milestone as the default for future PRs for this repo and language
You can disable automated security fix PRs for this repo from the Security Alerts page.