Skip to content

Bump django-debug-toolbar from 3.2 to 3.2.2#272

Closed
dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot/pip/django-debug-toolbar-3.2.2
Closed

Bump django-debug-toolbar from 3.2 to 3.2.2#272
dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot/pip/django-debug-toolbar-3.2.2

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Aug 16, 2021

Bumps django-debug-toolbar from 3.2 to 3.2.2.

Changelog

Sourced from django-debug-toolbar's changelog.

3.2.2 (2021-08-14)

  • Ensured that the handle stays within bounds when resizing the window.
  • Disabled HistoryPanel when RENDER_PANELS is True or if RENDER_PANELS is None and the WSGI container is running with multiple processes.
  • Fixed RENDER_PANELS functionality so that when True panels are rendered during the request and not loaded asynchronously.
  • HistoryPanel now shows status codes of responses.
  • Support request.urlconf override when checking for toolbar requests.

3.2.1 (2021-04-14)

  • Fixed SQL Injection vulnerability, CVE-2021-30459. The toolbar now calculates a signature on all fields for the SQL select, explain, and analyze forms.
  • Changed djdt.cookie.set() to set sameSite=Lax by default if callers do not provide a value.
  • Added PRETTIFY_SQL configuration option to support controlling SQL token grouping. By default it's set to True. When set to False, a performance improvement can be seen by the SQL panel.
  • Added a JavaScript event when a panel loads of the format djdt.panel.[PanelId] where PanelId is the panel_id property of the panel's Python class. Listening for this event corrects the bug in the Timer Panel in which it didn't insert the browser timings after switching requests in the History Panel.
  • Fixed issue with the toolbar expecting URL paths to start with /__debug__/ while the documentation indicates it's not required.
Commits
  • f65d86b Version 3.2.2
  • 5d709b4 Update screenshot script for changes to make example.
  • f4c263a Support for request-level urlconf overrides (#1488)
  • 15a581d Add: response status to HistoryPanel (#1490)
  • 9b6aae4 Merge pull request #1440 from tim-schilling/render-panels-rework
  • 8d39876 Merge branch 'main' into render-panels-rework
  • 085f8dd Add test coverage to ensure that SQL tracker wrappers are applied only once t...
  • 3587052 Merge pull request #1484 from ashwch/history_refresh_fix
  • 8049478 Use both SignedDataForm and HistoryStoreForm in history_refresh.
  • 78425e3 Move the highlight class addition outside to allow it to be set in the first ...
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [django-debug-toolbar](https://github.com/jazzband/django-debug-toolbar) from 3.2 to 3.2.2.
- [Release notes](https://github.com/jazzband/django-debug-toolbar/releases)
- [Changelog](https://github.com/jazzband/django-debug-toolbar/blob/main/docs/changes.rst)
- [Commits](django-commons/django-debug-toolbar@3.2...3.2.2)

---
updated-dependencies:
- dependency-name: django-debug-toolbar
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Aug 16, 2021
@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Dec 20, 2021

Superseded by #291.

@dependabot dependabot bot closed this Dec 20, 2021
@dependabot dependabot bot deleted the dependabot/pip/django-debug-toolbar-3.2.2 branch December 20, 2021 19:45
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants