Commit e226b95
authored
fix(deps): Update module github.com/labstack/echo/v4 to v4.11.4 (#398)
This PR contains the following updates:
| Package | Type | Update | Change |
|---|---|---|---|
| [github.com/labstack/echo/v4](https://togithub.com/labstack/echo) | indirect | patch | `v4.11.1` -> `v4.11.4` |
---
### Release Notes
<details>
<summary>labstack/echo (github.com/labstack/echo/v4)</summary>
### [`v4.11.4`](https://togithub.com/labstack/echo/blob/HEAD/CHANGELOG.md#v4114---2023-12-20)
[Compare Source](https://togithub.com/labstack/echo/compare/v4.11.3...v4.11.4)
**Security**
- Upgrade golang.org/x/crypto to v0.17.0 to fix vulnerability [issue](https://pkg.go.dev/vuln/GO-2023-2402) [#​2562](https://togithub.com/labstack/echo/pull/2562)
**Enhancements**
- Update deps and mark Go version to 1.18 as this is what golang.org/x/\* use [#​2563](https://togithub.com/labstack/echo/pull/2563)
- Request logger: add example for Slog https://pkg.go.dev/log/slog [#​2543](https://togithub.com/labstack/echo/pull/2543)
### [`v4.11.3`](https://togithub.com/labstack/echo/blob/HEAD/CHANGELOG.md#v4113---2023-11-07)
[Compare Source](https://togithub.com/labstack/echo/compare/v4.11.2...v4.11.3)
**Security**
- 'c.Attachment' and 'c.Inline' should escape filename in 'Content-Disposition' header to avoid 'Reflect File Download' vulnerability. [#​2541](https://togithub.com/labstack/echo/pull/2541)
**Enhancements**
- Tests: refactor context tests to be separate functions [#​2540](https://togithub.com/labstack/echo/pull/2540)
- Proxy middleware: reuse echo request context [#​2537](https://togithub.com/labstack/echo/pull/2537)
- Mark unmarshallable yaml struct tags as ignored [#​2536](https://togithub.com/labstack/echo/pull/2536)
### [`v4.11.2`](https://togithub.com/labstack/echo/blob/HEAD/CHANGELOG.md#v4112---2023-10-11)
[Compare Source](https://togithub.com/labstack/echo/compare/v4.11.1...v4.11.2)
**Security**
- Bump golang.org/x/net to prevent CVE-2023-39325 / CVE-2023-44487 HTTP/2 Rapid Reset Attack [#​2527](https://togithub.com/labstack/echo/pull/2527)
- fix(sec): randomString bias introduced by [#​2490](https://togithub.com/labstack/echo/issues/2490) [#​2492](https://togithub.com/labstack/echo/pull/2492)
- CSRF/RequestID mw: switch math/random usage to crypto/random [#​2490](https://togithub.com/labstack/echo/pull/2490)
**Enhancements**
- Delete unused context in body_limit.go [#​2483](https://togithub.com/labstack/echo/pull/2483)
- Use Go 1.21 in CI [#​2505](https://togithub.com/labstack/echo/pull/2505)
- Fix some typos [#​2511](https://togithub.com/labstack/echo/pull/2511)
- Allow CORS middleware to send Access-Control-Max-Age: 0 [#​2518](https://togithub.com/labstack/echo/pull/2518)
- Bump dependancies [#​2522](https://togithub.com/labstack/echo/pull/2522)
</details>
---
### Configuration
📅 **Schedule**: Branch creation - "before 4am on the first day of the month" (UTC), Automerge - At any time (no schedule defined).
🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied.
♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 **Ignore**: Close this PR and you won't be reminded about this update again.
---
- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box
---
This PR has been generated by [Renovate Bot](https://togithub.com/renovatebot/renovate).
<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiIzNy4xMTUuMCIsInVwZGF0ZWRJblZlciI6IjM3LjExNS4wIiwidGFyZ2V0QnJhbmNoIjoibWFpbiJ9-->1 parent 3c5d0c0 commit e226b95
2 files changed
Lines changed: 9 additions & 16 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
58 | 58 | | |
59 | 59 | | |
60 | 60 | | |
61 | | - | |
62 | | - | |
| 61 | + | |
| 62 | + | |
63 | 63 | | |
64 | 64 | | |
65 | 65 | | |
| |||
97 | 97 | | |
98 | 98 | | |
99 | 99 | | |
100 | | - | |
| 100 | + | |
101 | 101 | | |
102 | 102 | | |
103 | 103 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
138 | 138 | | |
139 | 139 | | |
140 | 140 | | |
141 | | - | |
142 | | - | |
143 | | - | |
144 | | - | |
| 141 | + | |
| 142 | + | |
| 143 | + | |
| 144 | + | |
145 | 145 | | |
146 | 146 | | |
147 | 147 | | |
148 | 148 | | |
149 | 149 | | |
150 | 150 | | |
151 | | - | |
152 | 151 | | |
153 | 152 | | |
154 | | - | |
155 | 153 | | |
156 | 154 | | |
157 | 155 | | |
| |||
226 | 224 | | |
227 | 225 | | |
228 | 226 | | |
229 | | - | |
230 | 227 | | |
231 | 228 | | |
232 | 229 | | |
| |||
281 | 278 | | |
282 | 279 | | |
283 | 280 | | |
284 | | - | |
285 | | - | |
286 | 281 | | |
287 | | - | |
288 | 282 | | |
289 | 283 | | |
290 | 284 | | |
| |||
298 | 292 | | |
299 | 293 | | |
300 | 294 | | |
301 | | - | |
302 | | - | |
| 295 | + | |
| 296 | + | |
303 | 297 | | |
304 | 298 | | |
305 | 299 | | |
| |||
330 | 324 | | |
331 | 325 | | |
332 | 326 | | |
333 | | - | |
334 | 327 | | |
335 | 328 | | |
336 | 329 | | |
| |||
0 commit comments