wayback
wayback copied to clipboard
Bump github.com/gabriel-vasile/mimetype from 1.4.2 to 1.4.5
Bumps github.com/gabriel-vasile/mimetype from 1.4.2 to 1.4.5.
Release notes
Sourced from github.com/gabriel-vasile/mimetype's releases.
v1.4.5
What's Changed
- json: improve performance by using a pool of scanners in gabriel-vasile/mimetype#535
- tar: remove strconv dependency for tar checksum octal numbers in gabriel-vasile/mimetype#536
- zip: use []byte instead of string to prevent allocs in gabriel-vasile/mimetype#537
- remove tarbomb from testdata folder in gabriel-vasile/mimetype#540
- Updating RTF Magic number to match https://www.iana.org/assignments/media-types/application/rtf by
@zdiffin gabriel-vasile/mimetype#544- alias text/rtf to application/rtf in gabriel-vasile/mimetype#547
- reduce project size by moving mimetype.gif to testdata in gabriel-vasile/mimetype#548
- Bump golang.org/x/net from 0.25.0 to 0.27.0 in the gomod group across 1 directory by
@dependabotin gabriel-vasile/mimetype#552- remove exe from testdata in gabriel-vasile/mimetype#561
New Contributors
@zdiffmade their first contribution in gabriel-vasile/mimetype#544Full Changelog: https://github.com/gabriel-vasile/mimetype/compare/v1.4.4...v1.4.5
v1.4.4
What's Changed
Security fixes:
Update
golang.org/x/netto latest. Fixes: CVE-2023-45288Performance improvements:
- Change tar detection to use checksum instead of legal ranges of values in gabriel-vasile/mimetype#466
- ftyp: exit asap to prevent mem allocs in gabriel-vasile/mimetype#517
- Improve x-subrip detection performance in gabriel-vasile/mimetype#524
- improve performance for text detection in gabriel-vasile/mimetype#532
- Using io.ReadAll instead of ioutil.ReadAll by
@phihungtfin gabriel-vasile/mimetype#525Benchmarks:
before: BenchmarkText/application/x-ndjson-8 663314 2027 ns/op 4306 B/op 6 allocs/op BenchmarkSliceRand-8 688160 1690 ns/op 728 B/op 75 allocs/op BenchmarkSrt-8 946042 1089 ns/op 4240 B/op 5 allocs/op after: BenchmarkText/application/x-ndjson-8 1930292 678.6 ns/op 160 B/op 4 allocs/op BenchmarkSliceRand-8 1232066 1173 ns/op 160 B/op 4 allocs/op BenchmarkSrt-8 3235448 368.8 ns/op 64 B/op 2 allocs/opNew Contributors
@phihungtfmade their first contribution in gabriel-vasile/mimetype#525Full Changelog: https://github.com/gabriel-vasile/mimetype/compare/v1.4.3...v1.4.4
v1.4.3
... (truncated)
Commits
b36b70fremove exe from testdata (#561)e802551Bump the github-actions group across 1 directory with 3 updates (#560)f003e99Bump golang.org/x/net in the gomod group across 1 directory (#552)e0c5c59reduce project size by moving mimetype.gif to testdata (#548)f296c1balias rtf to application/rtf (#547)8329892Updating RTF Magic number to match <https://www.iana.org/assignments/media-ty...3267116remove tarbomb from testdata folder (#540)cdceff9zip: use []byte instead of string to prevent allocs (#537)77e3848tar: remove strconv dependency for tar checksum octal numbers (#536)09ff708json: improve performance by using a pool of scanners (#535)- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)