fix(deps): bump werkzeug from 2.3.0 to 2.3.6
Bumps werkzeug from 2.3.0 to 2.3.6.
Release notes
Sourced from werkzeug's releases.
2.3.6
This is a fix release for the 2.3.x feature branch.
- Changes: https://werkzeug.palletsprojects.com/en/2.3.x/changes/#version-2-3-6
- Milestone: https://github.com/pallets/werkzeug/milestone/32?closed=1
2.3.5
This is a fix release for the 2.3.x feature branch.
- Changes: https://werkzeug.palletsprojects.com/en/2.3.x/changes/#version-2-3-5
- Milestone: https://github.com/pallets/werkzeug/milestone/31?closed=1
2.3.4
This is a fix release for the 2.3.x release branch.
- Changes: https://werkzeug.palletsprojects.com/en/2.3.x/changes/#version-2-3-4
- Milestone: https://github.com/pallets/werkzeug/milestone/30?closed=1
2.3.3
This is a fix release for the 2.3.x release branch.
- Changes: https://werkzeug.palletsprojects.com/en/2.3.x/changes/#version-2-3-3
- Milestone: https://github.com/pallets/werkzeug/milestone/29?closed=1
2.3.2
This is a fix release for the 2.3.x release branch.
- Changes: https://werkzeug.palletsprojects.com/en/2.3.x/changes/#version-2-3-2
- Milestone: https://github.com/pallets/werkzeug/milestone/28?closed=1
2.3.1
This is a fix release for the 2.3.x release branch.
Changelog
Sourced from werkzeug's changelog.
Version 2.3.6
Released 2023-06-08
FileStorage.content_lengthdoes not fail if the form data did not provide a value. :issue:2726Version 2.3.5
Released 2023-06-07
- Python 3.12 compatibility. :issue:
2704- Fix handling of invalid base64 values in
Authorization.from_header. :issue:2717- The debugger escapes the exception message in the page title. :pr:
2719- When binding
routing.Map, a long IDNAserver_namewith a port does not fail encoding. :issue:2700iri_to_urishows a deprecation warning instead of an error when passing bytes. :issue:2708- When parsing numbers in HTTP request headers such as
Content-Length, only ASCII digits are accepted rather than any format that Python'sintandfloataccept. :issue:2716Version 2.3.4
Released 2023-05-08
Authorization.from_headerandWWWAuthenticate.from_headerdetects tokens that end with base64 padding (=). :issue:2685- Remove usage of
warnings.catch_warnings. :issue:2690- Remove
max_form_partsrestriction from standard form data parsing and only use if for multipart content. :pr:2694Responsewill avoid converting theLocationheader in some cases to preserve invalid URL schemes likeitms-services. :issue:2691Version 2.3.3
Released 2023-05-01
- Fix parsing of large multipart bodies. Remove invalid leading newline, and restore parsing speed. :issue:
2658, 2675- The cookie
Pathattribute is set to/by default again, to prevent clients from falling back to RFC 6265'sdefault-pathbehavior. :issue:2672, 2679
... (truncated)
Commits
c6f3c2arelease version 2.3.6f91304fremove docs links from docstringsbb24506FileStorage.content_lengthdoes not fail if no length was provided (#2727)a184111fix parsing error in FileStorage.content_length3a8de8dstart version 2.3.662b7ed6release version 2.3.5 (#2724)2c9b513release version 2.3.586c5c78fail on Python's extended int/float syntax (#2723)6290332fail on Python's extended int/float syntax1892c10show warning instead of error when passing bytes toiri_to_uri(#2709)- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
-
@dependabot rebasewill rebase this PR -
@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it -
@dependabot mergewill merge this PR after your CI passes on it -
@dependabot squash and mergewill squash and merge this PR after your CI passes on it -
@dependabot cancel mergewill cancel a previously requested merge and block automerging -
@dependabot reopenwill reopen this PR if it is closed -
@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually -
@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)