morpheus
morpheus copied to clipboard
Bump fastapi from 0.68.1 to 0.92.0
Bumps fastapi from 0.68.1 to 0.92.0.
Release notes
Sourced from fastapi's releases.
0.92.0
🚨 This is a security fix. Please upgrade as soon as possible.
Upgrades
- ⬆️ Upgrade Starlette to 0.25.0. PR #5996 by
@tiangolo
.
- This solves a vulnerability that could allow denial of service attacks by using many small multipart fields/files (parts), consuming high CPU and memory.
- Only applications using forms (e.g. file uploads) could be affected.
- For most cases, upgrading won't have any breaking changes.
0.91.0
Upgrades
- ⬆️ Upgrade Starlette version to
0.24.0
and refactor internals for compatibility. PR #5985 by@tiangolo
.
- This can solve nuanced errors when using middlewares. Before Starlette
0.24.0
, a new instance of each middleware class would be created when a new middleware was added. That normally was not a problem, unless the middleware class expected to be created only once, with only one instance, that happened in some cases. This upgrade would solve those cases (thanks@adriangb
! Starlette PR #2017). Now the middleware class instances are created once, right before the first request (the first time the app is called).- If you depended on that previous behavior, you might need to update your code. As always, make sure your tests pass before merging the upgrade.
0.90.1
Upgrades
- ⬆️ Upgrade Starlette range to allow 0.23.1. PR #5980 by
@tiangolo
.Docs
- ✏ Tweak wording to clarify
docs/en/docs/project-generation.md
. PR #5930 by@chandra-deb
.- ✏ Update Pydantic GitHub URLs. PR #5952 by
@yezz123
.- 📝 Add opinion from Cisco. PR #5981 by
@tiangolo
.Translations
Internal
- ✏ Update
zip-docs.sh
internal script, remove extra space. PR #5931 by@JuanPerdomo00
.0.90.0
Upgrades
Docs
- 📝 Add article "Tortoise ORM / FastAPI 整合快速筆記" to External Links. PR #5496 by
@Leon0824
.- 👥 Update FastAPI People. PR #5954 by
@github-actions[bot]
.- 📝 Micro-tweak help docs. PR #5960 by
@tiangolo
.- 🔧 Update new issue chooser to direct to GitHub Discussions. PR #5948 by
@tiangolo
.- 📝 Recommend GitHub Discussions for questions. PR #5944 by
@tiangolo
.Translations
... (truncated)
Commits
6879082
🔖 Release version 0.92.052ca6cb
📝 Update release notes9e283ef
📝 Update release notes75e7e9e
⬆️ Upgrade Starlette to 0.25.0 (#5996)2ca77f9
🔖 Release version 0.91.03c05189
📝 Update release notesa04acf6
📝 Update release notesd566c6c
⬆️ Upgrade Starlette version to0.24.0
and refactor internals for compatibi...6e94ec2
🔖 Release version 0.90.1e85c109
📝 Update release notes- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase
.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
-
@dependabot rebase
will rebase this PR -
@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it -
@dependabot merge
will merge this PR after your CI passes on it -
@dependabot squash and merge
will squash and merge this PR after your CI passes on it -
@dependabot cancel merge
will cancel a previously requested merge and block automerging -
@dependabot reopen
will reopen this PR if it is closed -
@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually -
@dependabot ignore this major version
will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this minor version
will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this dependency
will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)