snarkov
snarkov copied to clipboard
Bump dalli from 3.2.0 to 3.2.3
Bumps dalli from 3.2.0 to 3.2.3.
Changelog
Sourced from dalli's changelog.
3.2.3
- Sanitize CAS inputs to ensure additional commands are not passed to memcached (xhzeem / petergoldstein)
- Sanitize input to flush command to ensure additional commands are not passed to memcached (xhzeem / petergoldstein)
- Namespaces passed as procs are now evaluated every time, as opposed to just on initialization (nrw505)
- Fix missing require of uri in ServerConfigParser (adam12)
- Fix link to the CHANGELOG.md file in README.md (rud)
3.2.2
- Ensure apps are resilient against old session ids (kbrock)
3.2.1
- Fix null replacement bug on some SASL-authenticated services (veritas1)
Commits
23b2465
Prepare for version 3.2.372c4171
Fix Rubocop test lints - 2022-10 (#934)48d594d
Fixes #932 (#933)a8611e2
README: fix link to CHANGELOG.md (#929)4f6ffac
Rename History.md to CHANGELOG.md7177ad8
Add changelog entries.2143122
Require "uri" from stdlib (#925)b4b2574
Add changelog entry for namespace as proc fixf5ec74c
Evaluate Proc namespaces every time (not just at initialization) (#923)903295c
Fix new Rubocop issues (#924)- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase
.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
-
@dependabot rebase
will rebase this PR -
@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it -
@dependabot merge
will merge this PR after your CI passes on it -
@dependabot squash and merge
will squash and merge this PR after your CI passes on it -
@dependabot cancel merge
will cancel a previously requested merge and block automerging -
@dependabot reopen
will reopen this PR if it is closed -
@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually -
@dependabot ignore this major version
will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this minor version
will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this dependency
will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)