| AArch64 | |
| ppc64le | |
| s390x | |
| x86-64 |
- Update to 5.0.1: * Fix minor typos * Migrate packaging and environment management to use uv * Fix release pipeline * Always use trusted publishing * Workaround license publishing issue * Fix packaging: missing source files - Switch to pyproject macros. - Switch to GitHub tarball to continue running the testsuite. - Support upper case and normalized metadata directory name. - Patch version number, issue filed upstream.
- version update to 5.0.0:
* Breaking: Change default to disable private network access by
@corydolphin in #368. This effectively resolves
GHSA-hxwh-jpp2-84pm https://osv.dev/vulnerability/PYSEC-2024-71
- version update to 4.0.1
* Address CVE-2024-1681 which is a log injection vulnerability
when the log level is set to debug by @aneshujevic in :issue:`351`
- version update to 4.0.0 * Remove support for Python versions older than 3.8 by @WAKayser in #330 * Add GHA tooling by @corydolphin in #331
- Add %{?sle15_python_module_pythons}
- Six is required unconditionally
- Use pytest to run the testsuite.
- specfile:
* update copyright year
- update to version 3.0.10:
* Adds support for PPC64 and ARM64 builds for distribution. Thanks
@sreekanth370
- Add patch 0001-Disable-ACL_ORIGIN-check.patch to disable failing ACL_ORIGIN check in test (boo#1154808)
- specfile:
* update copyright year
- update to version 3.0.8:
* DeprecationWarning: Using or importing the ABCs from 'collections'
instead of from 'collections.abc' is deprecated, and in 3.8 it
will stop working
- Update to 3.0.9:
* Escape path before evaluating resource rules. Prior to this,
flask-cors incorrectly evaluated CORS resource matching before
path expansion. E.g. "/api/../foo.txt" would incorrectly match
resources for "/api/*" whereas the path actually expands
simply to "/foo.txt" (CVE-2020-25032, boo#1175986)
- Remove patch which is no longer required when using (at least)
Flask 1.1, which is the case in Factory:
* 0001-Disable-ACL_ORIGIN-check.patch
- specfile: * be more specific in %files section - update to version 3.0.7: * Updated logging.warn to logging.warning (#234) Thanks Vaibhav
- Require python-six in Leap 42.3 to fix build
- Enable testsuite
- Initial package for python-Flask-Cors 3.0.6