Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package python-w3lib for openSUSE:Factory checked in at 2026-10-01 22:20:28 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/python-w3lib (Old) and /work/SRC/openSUSE:Factory/.python-w3lib.new.1253 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "python-w3lib" Thu Oct 1 22:20:28 2026 rev:14 rq:1381937 version:2.5.0 Changes: -------- --- /work/SRC/openSUSE:Factory/python-w3lib/python-w3lib.changes 2026-06-17 16:28:44.017166701 +0200 +++ /work/SRC/openSUSE:Factory/.python-w3lib.new.1253/python-w3lib.changes 2026-10-01 22:21:15.769993544 +0200 @@ -1,0 +2,24 @@ +Thu Oct 1 16:01:59 UTC 2026 - Martin Pluskal <[email protected]> + +- Update to 2.5.0: + * Fix excessive backtracking, a denial of service on malformed + input, in get_base_url, get_meta_refresh, replace_tags, + remove_tags, remove_tags_with_content and unquote_markup + * URL parsing now agrees with browsers, where it could report + a host or path the URL does not resolve to: a backslash acts + as a slash in the authority and path of special-scheme URLs, + a normalized backslash no longer passes into the host, and + userinfo is no longer IDNA-encoded together with the host + * resolve_encoding no longer resolves UTF-7, which let + ASCII-only bytes smuggle markup past filters + * Deprecate w3lib.util (DeprecationWarning on import) and drop + the undocumented w3lib_replace codec error handler + * canonicalize_url now resolves dot segments and normalizes + IPv6 hosts; safe_download_url resolves percent-encoded + dot segments + * Many more fixes and improvements; see upstream's release + notes for the full list +- Spec: require python-hypothesis >= 6.148.0, needed by the new + property-based tests + +------------------------------------------------------------------- Old: ---- w3lib-2.4.1.tar.gz New: ---- w3lib-2.5.0.tar.gz ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ python-w3lib.spec ++++++ --- /var/tmp/diff_new_pack.xwzUzc/_old 2026-10-01 22:21:16.406020137 +0200 +++ /var/tmp/diff_new_pack.xwzUzc/_new 2026-10-01 22:21:16.407020178 +0200 @@ -18,13 +18,14 @@ %{?sle15_python_module_pythons} Name: python-w3lib -Version: 2.4.1 +Version: 2.5.0 Release: 0 Summary: Library of Web-Related Functions License: BSD-3-Clause URL: https://github.com/scrapy/w3lib Source: https://files.pythonhosted.org/packages/source/w/w3lib/w3lib-%{version}.tar.gz BuildRequires: %{python_module hatchling >= 1.27.0} +BuildRequires: %{python_module hypothesis >= 6.148.0} BuildRequires: %{python_module pip} BuildRequires: %{python_module pytest} BuildRequires: %{python_module wheel} ++++++ w3lib-2.4.1.tar.gz -> w3lib-2.5.0.tar.gz ++++++ ++++ 7182 lines of diff (skipped)
