Sourced from flask-cors's releases.
5.0.0
What's Changed
- Breaking: Change default to disable private network access by
@corydolphin
in corydolphin/flask-cors#368 This effectively resolves https://github.com/advisories/GHSA-hxwh-jpp2-84pm https://osv.dev/vulnerability/PYSEC-2024-71Full Changelog: https://github.com/corydolphin/flask-cors/compare/4.0.2...5.0.0
4.0.2
What's Changed
- Bump requests from 2.31.0 to 2.32.0 in /docs by
@dependabot
in corydolphin/flask-cors#358- Backwards Compatible Fix for CVE-2024-6221 by
@adrianosela
in corydolphin/flask-cors#363- Add unit tests for Private-Network by
@corydolphin
in corydolphin/flask-cors#367New Contributors
@dependabot
made their first contribution in corydolphin/flask-cors#358@adrianosela
made their first contribution in corydolphin/flask-cors#363Full Changelog: https://github.com/corydolphin/flask-cors/compare/4.0.1...4.0.2
4.0.1
What's Changed
- Fix Read the Docs builds by
@kurtmckee
in corydolphin/flask-cors#345- Update extension.py to clean request.path before logging it by
@aneshujevic
in corydolphin/flask-cors#351- Update CI to include Python 3.12 and flask 3.0.3 by
@corydolphin
in corydolphin/flask-cors#354- Release 4.0.1 by
@corydolphin
in corydolphin/flask-cors#353New Contributors
@kurtmckee
made their first contribution in corydolphin/flask-cors#345@aneshujevic
made their first contribution in corydolphin/flask-cors#351Full Changelog: https://github.com/corydolphin/flask-cors/compare/4.0.0...4.0.1
Release 4.0.0
What's Changed
- Remove support for Python versions older than 3.8 by
@WAKayser
in corydolphin/flask-cors#330- Add GHA tooling by
@corydolphin
in corydolphin/flask-cors#331New Contributors
@WAKayser
made their first contribution in corydolphin/flask-cors#330Full Changelog: https://github.com/corydolphin/flask-cors/compare/3.1.01...v4.0.0
3.1.01
What's Changed
- Include examples to specify that schema and port must be included in … by
@YPCrumble
in corydolphin/flask-cors#294- two small changes to the documentation, based on issue #290 by
@bbbart
in corydolphin/flask-cors#291- Fix typo by
@sunarch
in corydolphin/flask-cors#304- FIX: typo in CSRF by
@sattamjh
in corydolphin/flask-cors#315- Test against recent Python versions by
@pylipp
in corydolphin/flask-cors#314
... (truncated)
Sourced from flask-cors's changelog.
Change Log
4.0.1
Security
- Address CVE-2024-1681 which is a log injection vulnerability when the log level is set to debug by
@aneshujevic
in corydolphin/flask-cors#3514.0.0
- Remove support for Python versions older than 3.8 by
@WAKayser
in corydolphin/flask-cors#330- Add GHA tooling by
@corydolphin
in corydolphin/flask-cors#3313.1.01
- Include examples to specify that schema and port must be included in … by
@YPCrumble
in corydolphin/flask-cors#294- two small changes to the documentation, based on issue #290 by
@bbbart
in corydolphin/flask-cors#291- Fix typo by
@sunarch
in corydolphin/flask-cors#304- FIX: typo in CSRF by
@sattamjh
in corydolphin/flask-cors#315- Test against recent Python versions by
@pylipp
in corydolphin/flask-cors#314- Correct spelling mistakes by
@EdwardBetts
in corydolphin/flask-cors#311- 'Access-Control-Allow-Private-Network = true' header for http response by
@chelo-kjml
in corydolphin/flask-cors#318- docs: Fix a few typos by
@timgates42
in corydolphin/flask-cors#323- [Docs] Fix typo in configuration documentation by
@sachit-shroff
in corydolphin/flask-cors#316
c851476
V5: Breaking: Change default to disable private network access (#368)561ed26
Add unit tests for Private-Network (#367)7ae310c
Backwards Compatible Fix for CVE-2024-6221 (#363)f25c6b2
--- (#358)1df178c
Release 0.4.1 (#353)5090b4a
Update CI to include Python 3.12 and flask 3.0.3 (#354)6172c20
Update extension.py to clean request.path before logging it (#351)cadade9
Fix Read the Docs builds (#345)40acc80
Update CHANGELOG to reflect 4.0.0 release (#335)dbabb27
Testing: Move from deprecated assertEquals to assertEqual (#332)