3.33.rst 2.14 KB
Newer Older
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
3.33.1 (2021-08-31)
===================
🎉 New features
--------------

- allowed-http-host-headers: automatically add default hostname to the allowed list on debug mode
- req: Add a "limit" parameter to RequestSessionBase.find
- req: Add exists for optimized search of at least one entity
- ux: better error message when a controller can't be select

👷 Bug fixes
-----------

- fyzz dep was missing for running certain tests
- only fyzz 0.2.2 is compatible with python 3
- typo: fix some mispellings

📝 Documentation
---------------

- fix allowed-http-host-header label and quote from Django's doc

🤖 Continuous integration
------------------------

- integrate can-i-merge

🤷 Various changes
-----------------

- 3.33: improve changelog quality
- fix(bwcompat)!: return a 400 instead of a 401 when failed to select a controller
- fix: allowed-http-host-headers has been released in 3.33 actually
- misc: fix rst syntax

36
37
38
39
40
3.33.0 (2021-08-03)
===================
🎉 New features
--------------

41
- BREAKING security: introduce allowed-http-host-header against host attack see documentation: :ref:`allowed-http-host-headers`
42
43
- add postgresql extra requires
- config: add 'debug' option in "[main]" of all-in-one.conf that does the same thing than "-D" in "cubicweb-ctl pyramid"
44
- rich: use rich.traceback to have nicer tracebacks https://github.com/willmcgugan/rich/
45
46
47
48

👷 Bug fixes
-----------

49
- add default value for params argument in pyramid webtest post function (#350)
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
- csrf: give CSRF token when using /ajax route
- empty identification cookie on webapp.reset()
- pin rdflib < 6.0.0 to avoid compatibility issues
- rdf: graph.serialize needs to encode its content in utf-8
- security: change configuration [WEB]interface default value to 127.0.0.1
- views: Fix reledit errors when trying modify relation with multi subjects

🤖 Continuous integration
------------------------

- use image from heptapod registry since r.intra was shut down

🤷 Various changes
-----------------

- use open-source/gitlab-ci-templates in cube skeleton
- drop mention of MySQL and SQLServer support
- update cube installation procedure documentation
Laurent Peuch's avatar
Laurent Peuch committed
68
- remove :file:`*.spec` from skeleton