From cfebf18c8af9962c6a87629f740fbde11c1119403ffd25daffb613befbf6abcc Mon Sep 17 00:00:00 2001 From: Dirk Mueller Date: Tue, 26 Mar 2024 15:10:26 +0000 Subject: [PATCH] - update to 2.11.1 (bsc#1220514, CVE-2024-1892, bsc#1221986): advisory`_ for more information. (bsc#1221986) OBS-URL: https://build.opensuse.org/package/show/devel:languages:python/python-Scrapy?expand=0&rev=38 --- python-Scrapy.changes | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/python-Scrapy.changes b/python-Scrapy.changes index 4332df8..41df8b1 100644 --- a/python-Scrapy.changes +++ b/python-Scrapy.changes @@ -1,7 +1,7 @@ ------------------------------------------------------------------- Mon Mar 25 14:12:20 UTC 2024 - Dirk Müller -- update to 2.11.1 (bsc#1220514, CVE-2024-1892): +- update to 2.11.1 (bsc#1220514, CVE-2024-1892, bsc#1221986): * Addressed `ReDoS vulnerabilities` (bsc#1220514, CVE-2024-1892) - ``scrapy.utils.iterators.xmliter`` is now deprecated in favor of :func:`~scrapy.utils.iterators.xmliter_lxml`, which @@ -18,7 +18,7 @@ Mon Mar 25 14:12:20 UTC 2024 - Dirk Müller * :setting:`DOWNLOAD_MAXSIZE` and :setting:`DOWNLOAD_WARNSIZE` now also apply to the decompressed response body. Please, see the `7j7m-v7m3-jqm7 security - advisory`_ for more information. + advisory`_ for more information. (bsc#1221986) .. _7j7m-v7m3-jqm7 security advisory: https://github.com/scrapy/scrapy/security/advisories/GHSA-7j7m-v7m3-jqm7