Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump MessagePack from 2.0.323 to 2.1.80 in /src/StreamJsonRpc #405

Merged
merged 2 commits into from
Jan 31, 2020

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jan 31, 2020

Bumps MessagePack from 2.0.323 to 2.1.80.

Release notes

Sourced from MessagePack's releases.

v2.1.80

Changes:

🔒 Security fixes are included in this release. Read more in our security advisory.

Fixes:

  • #782: Strings with UTF8 multi-byte characters are corrupted in writing on mono
  • #774: Apply LZ4BlockArray to ConvertToJson
  • #651: Typeless decimal serialized as string
  • #425: TypelessContractlessStandardResolver should preserve various integer types

Enhancements:

  • #790: Add the leaveOpen flag to MessagePackStreamReader
  • #788: Respect EnumMemberAttribute when serializing enum values as strings
  • #253: Default resolver deserializes ICollection as T[]
  • #771: Add WriteBinHeader and WriteStringHeader methods to MessagePackWriter
See More
  • #767: Add MessagePackReader.TryRead*Header methods
  • #726: Add MessagePackStreamReader.ReadArrayAsync
  • #757: Wrap all exceptions thrown from ConvertToJson in MessagePackSerializationException
  • #735: Make MessagePackReader.ReadDateTime(ExtensionHeader) public

Others:

  • #795: avoid ReadUnaligned on long, ulong, double in Android device
  • #789: Respect EnumMemberAttribute when serializing enum values as strings
  • #787: Fix mpc formatter name for Queue
  • #786: Fix WriteString issue on mono
  • #784: improve BigInteger serialize in .NET Core
  • #781: Fix enum serialization in unity
  • #779: mpc, does not load does't exists metadata
  • #768: Bring back serialization of members with explicit attributes
  • #775: Fix leaked use fullnamespace in mpc
  • #777: Improve performance of standard decimal serialization by using Utf8Formatter
  • #778: Deserialize mutable collection interfaces with mutable concrete types
  • #769: Add analyzers to call out use of static options
  • #279: Add MessagePackBinary.WriteBinHeader
  • #763: mpc, replace MicroBatchFramework to ConsoleAppFramework
  • #770: Package and toolset updates
  • #766: Readonly attributes and getters with Key() annotation are ignored by SerializeObject()
  • #762: Update Generated.cs
  • #759: Document subtle changes in serialization from v1.x to v2.x
... (truncated)
Commits
  • 6b89b9a Merge branch 'v1.9'
  • a1026d8 Move all Unshipped APIs to Shipped
  • 56fa862 Merge security fixes in for v2.1
  • 7e5558f Build 2.1 as a stable package
  • 86837cf Build all v?.* branches in CI
  • ff8ae64 Merge pull request #795 from neuecc/android-armv7-32bit
  • a9b4127 fix typo and comment.
  • c37aa26 avoid ReadUnaligned on long, ulong, double in Android device
  • 49f4f13 Document security measures in README
  • c1e3f8b Document security measures in README
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.

Dependabot will merge this PR once CI passes on it, as requested by @AArnott.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
  • @dependabot use these labels will set the current labels as the default for future PRs for this repo and language
  • @dependabot use these reviewers will set the current reviewers as the default for future PRs for this repo and language
  • @dependabot use these assignees will set the current assignees as the default for future PRs for this repo and language
  • @dependabot use this milestone will set the current milestone as the default for future PRs for this repo and language

You can disable automated security fix PRs for this repo from the Security Alerts page.

@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Jan 31, 2020
@codecov-io
Copy link

codecov-io commented Jan 31, 2020

Codecov Report

Merging #405 into v2.3 will decrease coverage by 0.02%.
The diff coverage is 100%.

Impacted file tree graph

@@            Coverage Diff             @@
##             v2.3     #405      +/-   ##
==========================================
- Coverage   90.66%   90.63%   -0.03%     
==========================================
  Files          49       49              
  Lines        3705     3716      +11     
==========================================
+ Hits         3359     3368       +9     
- Misses        346      348       +2
Impacted Files Coverage Δ
src/StreamJsonRpc/MessagePackFormatter.cs 93.91% <100%> (+0.11%) ⬆️
...pc/Reflection/MessageFormatterDuplexPipeTracker.cs 94.11% <0%> (-1.18%) ⬇️
src/StreamJsonRpc/JsonRpc.cs 92.82% <0%> (-0.12%) ⬇️

Continue to review full report at Codecov.

Legend - Click here to learn more
Δ = absolute <relative> (impact), ø = not affected, ? = missing data
Powered by Codecov. Last update 370feb1...09caacc. Read the comment docs.

@AArnott AArnott changed the base branch from master to v2.3 January 31, 2020 18:31
@AArnott AArnott force-pushed the dependabot/nuget/src/StreamJsonRpc/MessagePack-2.1.80 branch from 5d1f046 to 09caacc Compare January 31, 2020 18:31
@AArnott AArnott added this to the v2.3 milestone Jan 31, 2020
@AArnott
Copy link
Member

AArnott commented Jan 31, 2020

@dependabot merge

@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Jan 31, 2020

Dependabot tried to merge this PR, but received the following error from GitHub:

At least 1 approving review is required by reviewers with write access.

@AArnott AArnott merged commit b3b56cc into v2.3 Jan 31, 2020
@AArnott AArnott deleted the dependabot/nuget/src/StreamJsonRpc/MessagePack-2.1.80 branch January 31, 2020 18:39
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants