Script 'mail_helper' called by obssrc
Hello community,
here is the log from the commit of package python-mitmproxy for
openSUSE:Factory checked in at 2026-04-26 21:11:21
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Comparing /work/SRC/openSUSE:Factory/python-mitmproxy (Old)
and /work/SRC/openSUSE:Factory/.python-mitmproxy.new.11940 (New)
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "python-mitmproxy"
Sun Apr 26 21:11:21 2026 rev:14 rq:1349237 version:12.2.2
Changes:
--------
--- /work/SRC/openSUSE:Factory/python-mitmproxy/python-mitmproxy.changes
2026-02-03 21:34:52.829137868 +0100
+++
/work/SRC/openSUSE:Factory/.python-mitmproxy.new.11940/python-mitmproxy.changes
2026-04-26 21:13:55.535825212 +0200
@@ -1,0 +2,28 @@
+Fri Apr 24 11:51:38 UTC 2026 - Nico Krapp <[email protected]>
+
+- Update to 12.2.2 (fixes CVE-2026-40606, bsc#1262504)
+ * GHSA-527g-3w9m-29hv: Fix LDAP injection vulnerability reported by @yueyueL.
+ * Reduce CERT_EXPIRY to 199 days.
+ * Switch all content-encoding compression algorithms to use fastest settings
+ by default. This significantly improves addon runtime performance when
+ assigning to message.content.
+ * Fix addon options not being included in --options output.
+ * Fix view.settings.setval.toggle command to correctly use the provided key
+ parameter instead of hardcoded "key" string.
+ * Fix 400 Bad Request for HTTP requests with uppercase scheme (e.g. HTTP://).
+ * Fix console command panel losing focus due to incoming traffic
+ (e.g. websocket messages).
+ * mitmdump: Fix failed CONNECT requests not being displayed.
+ * mitmweb: Reduce FlowTable Redux subscriptions from O(rows) to O(1).
+ * mitmweb: Fix editors not allowing content to be cleared to an empty string
+ * Update optmanager value parsing exceptions to include the option name
+ * mitmweb: show intercept filter tag at the bottom for default options
+ * Fix a bug where mitmweb would show a blank page on Windows.
+ * mitmweb: Add number of selected flows in the footer
+ * Fix modify_body crash when replacement strings contain backslash sequences.
+ * Added support for adding and editing comments on individual flows in the
+ mitmproxy console.
+ * Allow hiding the Quick Help UI in the mitmproxy console with the 'H' key.
+ * Removed several dead functions using Skylos.
+
+-------------------------------------------------------------------
Old:
----
mitmproxy-12.2.1.tar.gz
New:
----
mitmproxy-12.2.2.tar.gz
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Other differences:
------------------
++++++ python-mitmproxy.spec ++++++
--- /var/tmp/diff_new_pack.AZmHQv/_old 2026-04-26 21:13:57.559907910 +0200
+++ /var/tmp/diff_new_pack.AZmHQv/_new 2026-04-26 21:13:57.583908891 +0200
@@ -26,7 +26,7 @@
# Upstream only supports Python 3.12+!
%define skip_python311 1
Name: python-mitmproxy
-Version: 12.2.1
+Version: 12.2.2
Release: 0
Summary: An interactive, SSL/TLS-capable intercepting proxy
License: MIT
++++++ fix-async-tests.patch ++++++
++++ 643 lines (skipped)
++++ between /work/SRC/openSUSE:Factory/python-mitmproxy/fix-async-tests.patch
++++ and
/work/SRC/openSUSE:Factory/.python-mitmproxy.new.11940/fix-async-tests.patch
++++++ mitmproxy-12.2.1.tar.gz -> mitmproxy-12.2.2.tar.gz ++++++
/work/SRC/openSUSE:Factory/python-mitmproxy/mitmproxy-12.2.1.tar.gz
/work/SRC/openSUSE:Factory/.python-mitmproxy.new.11940/mitmproxy-12.2.2.tar.gz
differ: char 13, line 1