diff options
author | zangrc <zangrc.fnst@fujitsu.com> | 2021-09-25 04:25:11 +0800 |
---|---|---|
committer | Khem Raj <raj.khem@gmail.com> | 2021-09-27 11:34:15 -0700 |
commit | 8906fbe1719b18adbba7f445e5c24d5eb30d11a0 (patch) | |
tree | 4a4dcfa7f8ffc151fca98ab17d95005be382770b /meta-python/recipes-devtools/python/python-flask-script.inc | |
parent | e177fb82216aebbbab56ed4e5608223139e915d4 (diff) | |
download | meta-openembedded-8906fbe1719b18adbba7f445e5c24d5eb30d11a0.tar.gz |
python3-sqlparse: upgrade 0.4.1 -> 0.4.2
Release 0.4.2 (Sep 10, 2021)
----------------------------
Notable Changes
* IMPORTANT: This release fixes a security vulnerability in the
strip comments filter. In this filter a regular expression that was
vulnerable to ReDOS (Regular Expression Denial of Service) was
used. See the security advisory for details: https://github.com/andialbrecht/sqlparse/security/advisories/GHSA-p5w8-wqhj-9hhf
The vulnerability was discovered by @erik-krogh and @yoff from
GitHub Security Lab (GHSL). Thanks for reporting!
Enhancements
* Add ELSIF as keyword (issue584).
* Add CONFLICT and ON_ERROR_STOP keywords (pr595, by j-martin).
Bug Fixes
* Fix parsing of backticks (issue588).
* Fix parsing of scientific number (issue399).
Signed-off-by: Zang Ruochen <zangrc.fnst@fujitsu.com>
Signed-off-by: Khem Raj <raj.khem@gmail.com>
Signed-off-by: Trevor Gamblin <trevor.gamblin@windriver.com>
Diffstat (limited to 'meta-python/recipes-devtools/python/python-flask-script.inc')
0 files changed, 0 insertions, 0 deletions