pkgsrc-Changes archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

CVS commit: pkgsrc/www/p5-Dancer2



Module Name:    pkgsrc
Committed By:   wiz
Date:           Tue Sep 22 09:07:22 UTC 2026

Modified Files:
        pkgsrc/www/p5-Dancer2: Makefile distinfo

Log Message:
p5-Dancer2: update to 2.2.1.

2.2.1     2026-09-18 21:12:29-04:00 America/New_York

    [ SECURITY ]
    * PR #1838: Serializer::YAML refuses blessed objects and code in
      request bodies; raise min YAML version to 1.30 (David Precious)
    * PR #1839: Serializer::YAML also zeroes $YAML::UseCode, which
      otherwise reopens the code eval (David Precious)

    [ BUG FIXES ]
    * GH #1840: Specify min version of CLI::Osprey needed (Jason A. Crome)

    [ ENHANCEMENTS ]
    * None

    [ DOCUMENTATION ]
    * None

    [ DEPRECATED ]
    * None

    [ MISC ]
    * None

2.2.0     2026-09-16 07:58:19-04:00 America/New_York

    [ SECURITY ]
    * PR #1836: Fix path traversal in Dancer2::Handler::File, which
      served files from outside public_dir; see GHSA-6xw8-v24c-m783
      (David Precious)
    * PR #1836: A halting on_hook_exception handler no longer lets the
      route the hook refused run anyway; see GHSA-v527-r4px-7vx7
      (David Precious)
    * GH #1822: Strip CR and LF from response header names, as was
      already done for header values (David Precious)
    * GH #1823: AutoPage no longer serves a layout as a page on
      case-insensitive filesystems (David Precious)

    [ BUG FIXES ]
    * GH #1781: Fix directory detection heuristic (Jason A. Crome)
    * GH #1784: Fix UTF-8 handling in Serializer::JSON for readonly
      values (Russell @veryrusty Jenkins)
    * GH #1790: Fix infinite recursion into blessed objects in JSON
      Serializer (Russell @veryrusty Jenkins)
    * PR #1791: Send correct error codes in send_file (Anton Lundin)
    * PR #1797: Fix path()/dirname() DSL keywords dropping their first
      argument (Mike Weisenborn)
    * PR #1801: Fix failing CI (Jason A. Crome)
    * PR #1804: Make session ID generation always use Crypt::URandom and
      harden validate_id against invalid session IDs (David Precious)
    * GH #1824: Encode each response content assignment on its own
      merits, not just the first (David Precious)
    * GH #1825: Serializer::Mutable now ignores content type parameters
      such as charset when choosing a format (David Precious)
    * GH #1826: uri_for_route accepts a route parameter of 0, and
      refuses an empty one with a clearer message (David Precious)
    * GH #1827: Hooks are compiled exactly once however many times
      to_app is called (David Precious)
    * GH #1828: A NUL byte in a static file request no longer warns once
      per request (David Precious)
    * GH #1829: dancer2 gen -g (and -r) no longer dies after writing the
      application (David Precious)
    * GH #1830: dancer2 gen names the application directory after the
      dashed distribution name (David Precious)
    * GH #1831: dancer2 gen appends a relative, matchable pattern to
      MANIFEST.SKIP (David Precious)

    [ ENHANCEMENTS ]
    * None

    [ DOCUMENTATION ]
    * GH #1832: Document Serializer::Mutable's actual header precedence
      in each direction (David Precious)
    * GH #1833: Remove %D from the documented log_format characters; it
      was never implemented (David Precious)

    [ DEPRECATED ]
    * PR #1821: Remove Data::Dumper serializer from Dancer2 core, along
      with from_dumper/to_dumper keywords, tests (David Precious)

    [ MISC ]
    * GH #1834: Rename share/.gitignore so git stops applying it to this
      distribution's own share/ tree (David Precious)
    * GH #1835: Add a characterization test suite under t/unit,
      t/integration and t/e2e (David Precious)
    * With thanks to Curtis "Ovid" Poe, whose generated test suite from
      PAAD for Dancer2 found the defects fixed above

2.1.0     2026-03-11 21:29:26-04:00 America/New_York

    [ BUG FIXES ]
    * GH #686: Fix: to_json is double encoding UTF8 (Sawyer X)
    * GH #863: Fix case insensitive system confusion (Sawyer X)
    * GH #1124: Fix: charset config option is mostly ignored (Sawyer X)
    * GH #1143: Fix utf8 in URL (Sawyer X, Sorin Pop)
    * GH #1449, 1630: Make plugin DSL keyword app-specific (Sawyer X)
    * GH #1772: t/dsl/send_file.t fails with content_type-related errors
      (Sawyer X)
    * GH #1773: t/dsl/send_as.t throws json-related warnings (Jason
      A. Crome)
    * GH #1774: t/hooks.t throws void warnings (Jason A. Crome)
    * GH #1777: Properly unlink file uploads on Windows (Sawyer X)

    [ ENHANCEMENTS ]
    * GH #763: Strict config mode; warn on unknown config keys with
      opt-out (Sawyer X)
    * GH #763: Default strict config to off, but scaffold new apps with
      stict config enabled (Jason A. Crome)
    * GH #1073: Get multiple session cookie values at once with clear
      method (Sawyer X)
    * GH #1264: Move to Path::Tiny (Sawyer X)
    * GH #1323: Allow fully qualified namespaces for all engines (Russell
      @veryrusty Jenkins)
    * GH #1594: Use Unicode::UTF8 if available (Sawyer X)
    * GH #1664: Stop sending double server headers (Sawyer X)
    * GH #1709: `send_as` should use the full serializer, including hooks
      (Sawyer X)
    * PR #1757: Remove api_version, improve dispatching loop (Sawyer X)
    * PR #1758: Move MIME ownership to app (Sawyer X)
    * PR #1767: Turn off strict_config for noisy tests (Jason A. Crome)
    * PR #1780: Add package name capability to logger output (Mikko
      Koivunalho)

    [ DOCUMENTATION ]
    * GH #1431: Better document behavior of views setting (Jason A. Crome)
    * PR #1749, #1750: Fix broken manual and tutorial links (Gil Magno,
      Jason A. Crome)
    * PR #1753: Fix structure of config docs (Mikko Koivunalho)
    * PR #1762: Remove keyword logger from DSL document (Mikko Koivunalho)

    [ DEPRECATED ]
    * None

    [ MISC ]
    * PR #1776: Remove "Powered by..." from the error page (Jason A. Crome)


To generate a diff of this commit:
cvs rdiff -u -r1.76 -r1.77 pkgsrc/www/p5-Dancer2/Makefile
cvs rdiff -u -r1.59 -r1.60 pkgsrc/www/p5-Dancer2/distinfo

Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.

Modified files:

Index: pkgsrc/www/p5-Dancer2/Makefile
diff -u pkgsrc/www/p5-Dancer2/Makefile:1.76 pkgsrc/www/p5-Dancer2/Makefile:1.77
--- pkgsrc/www/p5-Dancer2/Makefile:1.76 Thu Jul 16 19:05:54 2026
+++ pkgsrc/www/p5-Dancer2/Makefile      Tue Sep 22 09:07:22 2026
@@ -1,8 +1,7 @@
-# $NetBSD: Makefile,v 1.76 2026/07/16 19:05:54 wiz Exp $
+# $NetBSD: Makefile,v 1.77 2026/09/22 09:07:22 wiz Exp $
 
-DISTNAME=      Dancer2-2.0.1
+DISTNAME=      Dancer2-2.2.1
 PKGNAME=       p5-${DISTNAME}
-PKGREVISION=   1
 CATEGORIES=    www perl5
 MASTER_SITES=  ${MASTER_SITE_PERL_CPAN:=../../authors/id/C/CR/CROMEDOME/}
 
@@ -14,15 +13,7 @@ LICENSE=     ${PERL5_LICENSE}
 USE_LANGUAGES= # empty
 PERL5_PACKLIST=        auto/Dancer2/.packlist
 
-TOOL_DEPENDS+= p5-Exporter-Tiny>=0:../../devel/p5-Exporter-Tiny
-TOOL_DEPENDS+= p5-Test-Memory-Cycle>=0:../../devel/p5-Test-Memory-Cycle
-TOOL_DEPENDS+= p5-Test-MockTime>=0:../../time/p5-Test-MockTime
-TOOL_DEPENDS+= p5-Test-TCP>=0:../../net/p5-Test-TCP
-TOOL_DEPENDS+= p5-Test-Fatal>=0:../../devel/p5-Test-Fatal
-TOOL_DEPENDS+= p5-File-ShareDir-Install>=0.06:../../devel/p5-File-ShareDir-Install
-TOOL_DEPENDS+= p5-LWP-Protocol-PSGI>=0.06:../../www/p5-LWP-Protocol-PSGI
-
-DEPENDS+=      p5-CLI-Osprey>=0:../../devel/p5-CLI-Osprey
+DEPENDS+=      p5-CLI-Osprey>=0.09:../../devel/p5-CLI-Osprey
 DEPENDS+=      p5-Capture-Tiny>=0.12:../../devel/p5-Capture-Tiny
 DEPENDS+=      p5-Crypt-URandom>=0:../../security/p5-Crypt-URandom
 DEPENDS+=      p5-Config-Any>=0:../../devel/p5-Config-Any
@@ -54,8 +45,17 @@ DEPENDS+=    p5-URI>=0:../../www/p5-URI
 DEPENDS+=      p5-YAML>=0:../../textproc/p5-YAML
 DEPENDS+=      p5-YAML-LibYAML>=0:../../textproc/p5-YAML-LibYAML
 DEPENDS+=      p5-libwww>=0:../../www/p5-libwww
+TEST_DEPENDS+= p5-Exporter-Tiny>=0:../../devel/p5-Exporter-Tiny
+TEST_DEPENDS+= p5-Test-Exception>=0:../../devel/p5-Test-Exception
+TEST_DEPENDS+= p5-Test-EOL>=0:../../devel/p5-Test-EOL
+TEST_DEPENDS+= p5-Test-Fatal>=0:../../devel/p5-Test-Fatal
+TEST_DEPENDS+= p5-Test-Memory-Cycle>=0:../../devel/p5-Test-Memory-Cycle
+TEST_DEPENDS+= p5-Test-MockTime>=0:../../time/p5-Test-MockTime
+TEST_DEPENDS+= p5-Test-TCP>=0:../../net/p5-Test-TCP
+TEST_DEPENDS+= p5-Test-Fatal>=0:../../devel/p5-Test-Fatal
+TEST_DEPENDS+= p5-File-ShareDir-Install>=0.06:../../devel/p5-File-ShareDir-Install
+TEST_DEPENDS+= p5-LWP-Protocol-PSGI>=0.06:../../www/p5-LWP-Protocol-PSGI
 
-REPLACE_PERL+= share/skel/bin/+app.psgi
 REPLACE_PERL+= script/dancer2
 
 post-extract:

Index: pkgsrc/www/p5-Dancer2/distinfo
diff -u pkgsrc/www/p5-Dancer2/distinfo:1.59 pkgsrc/www/p5-Dancer2/distinfo:1.60
--- pkgsrc/www/p5-Dancer2/distinfo:1.59 Sat Nov 15 00:47:34 2025
+++ pkgsrc/www/p5-Dancer2/distinfo      Tue Sep 22 09:07:22 2026
@@ -1,5 +1,5 @@
-$NetBSD: distinfo,v 1.59 2025/11/15 00:47:34 wen Exp $
+$NetBSD: distinfo,v 1.60 2026/09/22 09:07:22 wiz Exp $
 
-BLAKE2s (Dancer2-2.0.1.tar.gz) = 195a2a277e2f01058106d8292982ba5aaa75760c45d81cd8471cb63b32ab8aca
-SHA512 (Dancer2-2.0.1.tar.gz) = bbb81ed97c9463eec7ec65992e6d18546d6230feb2a3b1393267db7d20a37f63b421beafcee459474f974e29744ff8197d1648f05ebc582cbdaed05862ef122e
-Size (Dancer2-2.0.1.tar.gz) = 389033 bytes
+BLAKE2s (Dancer2-2.2.1.tar.gz) = cb068fd5e9b88a13d5cb5861ae3fe789c50a5e81cabe00d7a2481cf9d08c23b8
+SHA512 (Dancer2-2.2.1.tar.gz) = 587c63a804d4813bdd8e4fccb1199c81fcccf63bc7fa81f33301638ea67ba3335662018ba9c119b45f3823e7494322bc2f34e5942c0b4bdfe0bd4b70f278ecdc
+Size (Dancer2-2.2.1.tar.gz) = 484798 bytes



Home | Main Index | Thread Index | Old Index