{"payload":{"feedbackUrl":"https://github.com/orgs/community/discussions/53140","repo":{"id":168060021,"defaultBranch":"master","name":"clusterfuzz","ownerLogin":"google","currentUserCanPush":false,"isFork":false,"isEmpty":false,"createdAt":"2019-01-29T00:19:40.000Z","ownerAvatar":"https://avatars.githubusercontent.com/u/1342004?v=4","public":true,"private":false,"isOrgOwned":true},"refInfo":{"name":"","listCacheKey":"v0:1716877381.0","currentOid":""},"activityList":{"items":[{"before":"e7e91a0ade3abc97bea0b266a17d099cbeded18e","after":"22e11083b540518248d512141c45c25c7f560f2e","ref":"refs/heads/master","pushedAt":"2024-05-28T07:18:35.000Z","pushType":"force_push","commitsCount":0,"pusher":{"login":"jonathanmetzman","name":null,"path":"/jonathanmetzman","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/31354670?s=80&v=4"},"commit":{"message":"Readd dropped commits","shortMessageHtmlLink":"Readd dropped commits"}},{"before":"96d0f120ba69ca9387e71f26eecc1d00aa6ab6a1","after":"e7e91a0ade3abc97bea0b266a17d099cbeded18e","ref":"refs/heads/master","pushedAt":"2024-05-28T07:17:14.000Z","pushType":"force_push","commitsCount":0,"pusher":{"login":"jonathanmetzman","name":null,"path":"/jonathanmetzman","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/31354670?s=80&v=4"},"commit":{"message":"Readd dropped commits","shortMessageHtmlLink":"Readd dropped commits"}},{"before":"bb28f7a3cc120376da783be2c158e5a3e1a655fc","after":null,"ref":"refs/heads/fuzztask-knobs","pushedAt":"2024-05-28T06:23:01.000Z","pushType":"branch_deletion","commitsCount":0,"pusher":{"login":"jonathanmetzman","name":null,"path":"/jonathanmetzman","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/31354670?s=80&v=4"}},{"before":"481347013b585d07033ea77b619b12a3d4c54883","after":"96d0f120ba69ca9387e71f26eecc1d00aa6ab6a1","ref":"refs/heads/master","pushedAt":"2024-05-28T06:23:00.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"jonathanmetzman","name":null,"path":"/jonathanmetzman","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/31354670?s=80&v=4"},"commit":{"message":"Create fuzz_task_knobs module (#3987)\n\nOne reason the fuzz_task module is hard to understand is because it is\r\ntoo long. This PR will be part of a process that makes it easier to\r\nunderstand by moving certain functionality to their own module.","shortMessageHtmlLink":"Create fuzz_task_knobs module (#3987)"}},{"before":null,"after":"bc76bb41f7b69892ce15aa586840c31471e6578b","ref":"refs/heads/dependabot/pip/pip-bcfb588279","pushedAt":"2024-05-28T06:15:35.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"dependabot[bot]","name":null,"path":"/apps/dependabot","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/29110?s=80&v=4"},"commit":{"message":"Bump the pip group with 5 updates\n\nBumps the pip group with 5 updates:\n\n| Package | From | To |\n| --- | --- | --- |\n| [cryptography](https://github.com/pyca/cryptography) | `3.4.8` | `42.0.4` |\n| [future](https://github.com/PythonCharmers/python-future) | `0.17.1` | `0.18.3` |\n| [gunicorn](https://github.com/benoitc/gunicorn) | `21.2.0` | `22.0.0` |\n| [idna](https://github.com/kjd/idna) | `3.6` | `3.7` |\n| [requests](https://github.com/psf/requests) | `2.31.0` | `2.32.2` |\n\n\nUpdates `cryptography` from 3.4.8 to 42.0.4\n- [Changelog](https://github.com/pyca/cryptography/blob/main/CHANGELOG.rst)\n- [Commits](https://github.com/pyca/cryptography/compare/3.4.8...42.0.4)\n\nUpdates `future` from 0.17.1 to 0.18.3\n- [Release notes](https://github.com/PythonCharmers/python-future/releases)\n- [Changelog](https://github.com/PythonCharmers/python-future/blob/master/docs/changelog.rst)\n- [Commits](https://github.com/PythonCharmers/python-future/compare/v0.17.1...v0.18.3)\n\nUpdates `gunicorn` from 21.2.0 to 22.0.0\n- [Release notes](https://github.com/benoitc/gunicorn/releases)\n- [Commits](https://github.com/benoitc/gunicorn/compare/21.2.0...22.0.0)\n\nUpdates `idna` from 3.6 to 3.7\n- [Release notes](https://github.com/kjd/idna/releases)\n- [Changelog](https://github.com/kjd/idna/blob/master/HISTORY.rst)\n- [Commits](https://github.com/kjd/idna/compare/v3.6...v3.7)\n\nUpdates `requests` from 2.31.0 to 2.32.2\n- [Release notes](https://github.com/psf/requests/releases)\n- [Changelog](https://github.com/psf/requests/blob/main/HISTORY.md)\n- [Commits](https://github.com/psf/requests/compare/v2.31.0...v2.32.2)\n\n---\nupdated-dependencies:\n- dependency-name: cryptography\n dependency-type: direct:production\n dependency-group: pip\n- dependency-name: future\n dependency-type: direct:production\n dependency-group: pip\n- dependency-name: gunicorn\n dependency-type: direct:development\n dependency-group: pip\n- dependency-name: idna\n dependency-type: indirect\n dependency-group: pip\n- dependency-name: requests\n dependency-type: indirect\n dependency-group: pip\n...\n\nSigned-off-by: dependabot[bot] ","shortMessageHtmlLink":"Bump the pip group with 5 updates"}},{"before":"2705cf24385e52cd66e222b8e52418e4ecd48c98","after":null,"ref":"refs/heads/mte","pushedAt":"2024-05-28T06:07:16.000Z","pushType":"branch_deletion","commitsCount":0,"pusher":{"login":"jonathanmetzman","name":null,"path":"/jonathanmetzman","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/31354670?s=80&v=4"}},{"before":"bedf2a394d841c0db81a24cecda2a7a882f2c338","after":"481347013b585d07033ea77b619b12a3d4c54883","ref":"refs/heads/master","pushedAt":"2024-05-28T06:07:16.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"jonathanmetzman","name":null,"path":"/jonathanmetzman","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/31354670?s=80&v=4"},"commit":{"message":"Ensure the fuzzer job entity is updated. (#4002)\n\nEnsure that the fuzzer job entity is updated when the job definition is\r\nupdated. Otherwise the fuzzerjob will never be updated.\r\ne.g. I have a job with platform linux, ClusterFuzz creates a fuzzerjob i\r\nchange the platform windows because I made a mistake. The FuzzerJob\r\nshould be updated so that my fuzzer has a chance to run on windows.\r\nThis PR tries to keep the FuzzerJob and Job consistent. But I think a\r\nbetter fix would be to not have two sources of truth about a job.","shortMessageHtmlLink":"Ensure the fuzzer job entity is updated. (#4002)"}},{"before":"9e88d6055ce41deb4edf64ea6c61ec28ba18c94b","after":"bedf2a394d841c0db81a24cecda2a7a882f2c338","ref":"refs/heads/master","pushedAt":"2024-05-28T06:06:51.000Z","pushType":"force_push","commitsCount":0,"pusher":{"login":"jonathanmetzman","name":null,"path":"/jonathanmetzman","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/31354670?s=80&v=4"},"commit":{"message":"Ensure proper counting of fuzz targets","shortMessageHtmlLink":"Ensure proper counting of fuzz targets"}},{"before":"11d827626a12584ad3099c6f8aca14ef1b1a6786","after":"bb28f7a3cc120376da783be2c158e5a3e1a655fc","ref":"refs/heads/fuzztask-knobs","pushedAt":"2024-05-28T06:06:21.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"jonathanmetzman","name":null,"path":"/jonathanmetzman","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/31354670?s=80&v=4"},"commit":{"message":"Fix","shortMessageHtmlLink":"Fix"}},{"before":"874a64a9b70702fa9ec33939f76d2762857173a0","after":"2705cf24385e52cd66e222b8e52418e4ecd48c98","ref":"refs/heads/mte","pushedAt":"2024-05-28T05:22:04.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"jonathanmetzman","name":null,"path":"/jonathanmetzman","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/31354670?s=80&v=4"},"commit":{"message":"fmt","shortMessageHtmlLink":"fmt"}},{"before":"ecda31f6eb1a68e9667581025543e9313dd0af08","after":null,"ref":"refs/heads/oliverchang-patch-2","pushedAt":"2024-05-28T03:43:16.000Z","pushType":"branch_deletion","commitsCount":0,"pusher":{"login":"jonathanmetzman","name":null,"path":"/jonathanmetzman","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/31354670?s=80&v=4"}},{"before":"64da04c32c98fe18b9b663a2cdbe2ae6ce4d98ad","after":"9e88d6055ce41deb4edf64ea6c61ec28ba18c94b","ref":"refs/heads/master","pushedAt":"2024-05-28T03:43:15.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"jonathanmetzman","name":null,"path":"/jonathanmetzman","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/31354670?s=80&v=4"},"commit":{"message":"Add one more bisection request call site. (#4007)\n\nMake sure we send a bisection request when we mark a Testcase as fixed.","shortMessageHtmlLink":"Add one more bisection request call site. (#4007)"}},{"before":null,"after":"ecda31f6eb1a68e9667581025543e9313dd0af08","ref":"refs/heads/oliverchang-patch-2","pushedAt":"2024-05-27T13:53:47.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"oliverchang","name":"Oliver Chang","path":"/oliverchang","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/759062?s=80&v=4"},"commit":{"message":"Add one more bisection request call site.\n\nMake sure we send a bisection request when we mark a Testcase as fixed.","shortMessageHtmlLink":"Add one more bisection request call site."}},{"before":"e6db84de5113c3d400fa671f50c37dbb989f7f34","after":"6a6ddb578ddac96423e728b44a50ab3daad63294","ref":"refs/heads/chore/bump-py37-deps","pushedAt":"2024-05-23T12:38:27.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"vitorguidi","name":"Vitor Guidi","path":"/vitorguidi","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/5733577?s=80&v=4"},"commit":{"message":"Changing unit test assertions to consider relative, and not absolute, path on http 302 redirections - https://datatracker.ietf.org/doc/html/rfc7231#section-7.1.2","shortMessageHtmlLink":"Changing unit test assertions to consider relative, and not absolute,…"}},{"before":"44a53fec87673abfde839185284da313c54ca751","after":"e6db84de5113c3d400fa671f50c37dbb989f7f34","ref":"refs/heads/chore/bump-py37-deps","pushedAt":"2024-05-22T21:19:30.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"vitorguidi","name":"Vitor Guidi","path":"/vitorguidi","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/5733577?s=80&v=4"},"commit":{"message":"Using markupsafe.escape instead of jinja2.escape since it got deprecated in jinja2","shortMessageHtmlLink":"Using markupsafe.escape instead of jinja2.escape since it got depreca…"}},{"before":"4b00d85c156dca0e7fc2f684d4546a6f7849eeb0","after":null,"ref":"refs/heads/dependabot/pip/pip-12d77511a3","pushedAt":"2024-05-22T19:45:15.000Z","pushType":"branch_deletion","commitsCount":0,"pusher":{"login":"dependabot[bot]","name":null,"path":"/apps/dependabot","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/29110?s=80&v=4"}},{"before":"0a4246b9b0212aed38e0b25fae7d484ec32e7ee1","after":"874a64a9b70702fa9ec33939f76d2762857173a0","ref":"refs/heads/mte","pushedAt":"2024-05-22T19:44:48.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"jonathanmetzman","name":null,"path":"/jonathanmetzman","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/31354670?s=80&v=4"},"commit":{"message":"Fix","shortMessageHtmlLink":"Fix"}},{"before":"3b0ee436b879b73dad618c33cad605321d5689d5","after":"0a4246b9b0212aed38e0b25fae7d484ec32e7ee1","ref":"refs/heads/mte","pushedAt":"2024-05-22T19:17:30.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"jonathanmetzman","name":null,"path":"/jonathanmetzman","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/31354670?s=80&v=4"},"commit":{"message":"Fix","shortMessageHtmlLink":"Fix"}},{"before":"f1e9feb18ec2c88de7a67d4140f0e29171a50b17","after":null,"ref":"refs/heads/wei","pushedAt":"2024-05-22T19:00:36.000Z","pushType":"branch_deletion","commitsCount":0,"pusher":{"login":"jonathanmetzman","name":null,"path":"/jonathanmetzman","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/31354670?s=80&v=4"}},{"before":"3dd569aa8b8a853721bf388f89e3c21b4fc98b0a","after":"64da04c32c98fe18b9b663a2cdbe2ae6ce4d98ad","ref":"refs/heads/master","pushedAt":"2024-05-22T19:00:35.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"jonathanmetzman","name":null,"path":"/jonathanmetzman","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/31354670?s=80&v=4"},"commit":{"message":"Downweight fuzztest. (#4006)\n\nIt's causing starvation problems in one of our deployments.","shortMessageHtmlLink":"Downweight fuzztest. (#4006)"}},{"before":null,"after":"f1e9feb18ec2c88de7a67d4140f0e29171a50b17","ref":"refs/heads/wei","pushedAt":"2024-05-22T19:00:16.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"jonathanmetzman","name":null,"path":"/jonathanmetzman","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/31354670?s=80&v=4"},"commit":{"message":"Downweight fuzztest.\n\nIt's causing starvation problems in one of our deployments.","shortMessageHtmlLink":"Downweight fuzztest."}},{"before":"fa95eb4d453de22af09b2acbc08298e482e4ac35","after":"3dd569aa8b8a853721bf388f89e3c21b4fc98b0a","ref":"refs/heads/master","pushedAt":"2024-05-22T18:59:42.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"jonathanmetzman","name":null,"path":"/jonathanmetzman","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/31354670?s=80&v=4"},"commit":{"message":"Log output in android.run_command to dump bad build logs (#4004)\n\nThis will help debug crbug.com/334940028.","shortMessageHtmlLink":"Log output in android.run_command to dump bad build logs (#4004)"}},{"before":"b4c241c33a77d71a817b1b14ef5b655e5d590be1","after":"44a53fec87673abfde839185284da313c54ca751","ref":"refs/heads/chore/bump-py37-deps","pushedAt":"2024-05-22T17:06:03.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"vitorguidi","name":"Vitor Guidi","path":"/vitorguidi","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/5733577?s=80&v=4"},"commit":{"message":"Bumping jinja, flask and workzeug so we can accomodate the markupsafe bump","shortMessageHtmlLink":"Bumping jinja, flask and workzeug so we can accomodate the markupsafe…"}},{"before":"fa95eb4d453de22af09b2acbc08298e482e4ac35","after":"b4c241c33a77d71a817b1b14ef5b655e5d590be1","ref":"refs/heads/chore/bump-py37-deps","pushedAt":"2024-05-22T16:07:44.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"vitorguidi","name":"Vitor Guidi","path":"/vitorguidi","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/5733577?s=80&v=4"},"commit":{"message":"Initial attempt to bump C deps within python3.7","shortMessageHtmlLink":"Initial attempt to bump C deps within python3.7"}},{"before":null,"after":"fa95eb4d453de22af09b2acbc08298e482e4ac35","ref":"refs/heads/chore/bump-py37-deps","pushedAt":"2024-05-22T13:10:30.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"vitorguidi","name":"Vitor Guidi","path":"/vitorguidi","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/5733577?s=80&v=4"},"commit":{"message":"Bump the bundler group across 1 directory with 3 updates (#3997)\n\nBumps the bundler group with 3 updates in the /docs directory:\r\n[commonmarker](https://github.com/gjtorikian/commonmarker),\r\n[nokogiri](https://github.com/sparklemotion/nokogiri) and\r\n[rexml](https://github.com/ruby/rexml).\r\n\r\nUpdates `commonmarker` from 0.23.9 to 0.23.10\r\n
\r\nRelease notes\r\n

Sourced from commonmarker's\r\nreleases.

\r\n
\r\n

v0.23.10

\r\n

What's Changed

\r\n
    \r\n
  • Update to 0.29.0.gfm.13 by @​anticomputer\r\nin gjtorikian/commonmarker#247
  • \r\n
\r\n

Full Changelog: https://github.com/gjtorikian/commonmarker/compare/v0.23.9...v0.23.10

\r\n
\r\n
\r\n
\r\nChangelog\r\n

Sourced from commonmarker's\r\nchangelog.

\r\n
\r\n

[v0.23.10] (2023-07-31)

\r\n
    \r\n
  • Update GFM release to 0.29.0.gfm.12\r\nand 0.29.0.gfm.13,\r\nthereby fixing\r\na polynomial time complexity security vulnerability.
  • \r\n
  • Of note to users of this library, GFM releases\r\n0.29.0.gfm.12 and 0.29.0.gfm.13 also:\r\n
      \r\n
    • Normalized marker row vs. delimiter row nomenclature (#273)
    • \r\n
    • Exposed CMARK_NODE_FOOTNOTE_DEFINITION literal value (#336)
    • \r\n
    \r\n
  • \r\n
\r\n

v0.23.4\r\n(2022-03-03)

\r\n

Full\r\nChangelog

\r\n

Fixed bugs:

\r\n
    \r\n
  • #render_html way slower than\r\n#render_doc.to_html #141
  • \r\n
\r\n

Closed issues:

\r\n
    \r\n
  • allow keeping text content of unknown tags #169
  • \r\n
  • STRIKETHROUGH_DOUBLE_TILDE not working #168
  • \r\n
  • Allow disabling 4-space code blocks #167
  • \r\n
  • tables with escaped pipes are not recognized #166
  • \r\n
\r\n

Merged pull requests:

\r\n
    \r\n
  • CI: Drop a duplicate 'bundle install' #173\r\n(olleolleolle)
  • \r\n
  • CI: Drop duplicate bundle install #172\r\n(olleolleolle)
  • \r\n
  • Fixup benchmark and speedup a little, fixes #141\r\n#171\r\n(ojab)
  • \r\n
\r\n

v0.23.2\r\n(2021-09-17)

\r\n

Full\r\nChangelog

\r\n

Merged pull requests:

\r\n
    \r\n
  • Update GFM release to 0.29.0.gfm.2 #148\r\n(phillmv)
  • \r\n
\r\n

v0.23.1\r\n(2021-09-03)

\r\n

Full\r\nChangelog

\r\n

Closed issues:

\r\n
    \r\n
  • Incorrect processing of list and next block of code #146
  • \r\n
\r\n

Merged pull requests:

\r\n
    \r\n
  • Normalize parse and render options #145\r\n(phillmv)
  • \r\n
\r\n

v0.23.0\r\n(2021-08-30)

\r\n\r\n
\r\n

... (truncated)

\r\n
\r\n
\r\nCommits\r\n\r\n
\r\n
\r\n\r\nUpdates `nokogiri` from 1.16.2 to 1.16.5\r\n
\r\nRelease notes\r\n

Sourced from nokogiri's\r\nreleases.

\r\n
\r\n

v1.16.5 / 2024-05-13

\r\n

Security

\r\n
    \r\n
  • [CRuby] Vendored libxml2 is updated to address CVE-2024-34459. See\r\nGHSA-r95h-9x8f-r3f7\r\nfor more information.
  • \r\n
\r\n

Dependencies

\r\n
    \r\n
  • [CRuby] Vendored libxml2 is updated to v2.12.7\r\nfrom v2.12.6. (@​flavorjones)
  • \r\n
\r\n
\r\n

sha256 checksums:

\r\n\r\n
af0f44fa3e664dfb2aa10de8b551447d720c1e8d1f0aa3f35783dcc43e40a874\r\nnokogiri-1.16.5-aarch64-linux.gem\r\n23dc2357b26409a5c33b7e32a82902f0e9995305420f16d1a03ab3ea1a482fec\r\nnokogiri-1.16.5-arm-linux.gem\r\n950d037530edb49f75ad35de0b8038b970a7dda57e2b6326895b0e49fadf6214\r\nnokogiri-1.16.5-arm64-darwin.gem\r\nb7aefc94370c62476b8528e8d8abb6160203abd84a1f4eceda8f1aa8974d9989\r\nnokogiri-1.16.5-java.gem\r\nec2167160df8fec3137bf95d574ed80ebc1d002bb3b281546b60b4aa9002466e\r\nnokogiri-1.16.5-x64-mingw-ucrt.gem\r\n6984200491fac69974005ecfa2de129d61843d345eafa5d6f58e8b908d1cf107\r\nnokogiri-1.16.5-x64-mingw32.gem\r\nabdc389ab1ec6604492da16bd9d06ad746fdb6bd6a1bd274c400d61ffcadb3c4\r\nnokogiri-1.16.5-x86-linux.gem\r\n63d24981345856f2baf7f4089870a62d3042fb8d3021b280fb04fc052532e3c4\r\nnokogiri-1.16.5-x86-mingw32.gem\r\n71b5f54e378c433d13df67c3b71acc4716129da62402d8181f310c4216a63279\r\nnokogiri-1.16.5-x86_64-darwin.gem\r\n0ca238da870066bed2f7837af6f35791bb9b76c4c5638999c46aac44818a6a97\r\nnokogiri-1.16.5-x86_64-linux.gem\r\nec36162c68984fa0a90a5c4ae7ab7759460639e716cc1ce75f34c3cb54158ad2\r\nnokogiri-1.16.5.gem\r\n
\r\n

v1.16.4 / 2024-04-10

\r\n

Dependencies

\r\n
    \r\n
  • [CRuby] Vendored zlib in the precompiled native gems is updated to\r\nv1.3.1 from v1.3. Nokogiri\r\nis not affected by the minizip CVE patched in this version, but this\r\nupdate may satisfy some security scanners. Related, see this\r\ndiscussion about removing the compression libraries altogether in a\r\nfuture version of Nokogiri.
  • \r\n
\r\n
\r\n

sha256 checksums:

\r\n\r\n
bdb1dc4378ebcf3ade8f440c7df68f6d76946a1a96c4823a2b4c53c01a320cd5\r\nnokogiri-1.16.4-aarch64-linux.gem\r\n0c994b9996d5576eddcc3201a94ef2bff6fc3627c4ae4d2708b0ec9b9743ec6a\r\nnokogiri-1.16.4-arm-linux.gem\r\n8e86abb64c93c06d3c588042a0e757279e8f1dc88b5210a00be892a9a7a27196\r\nnokogiri-1.16.4-arm64-darwin.gem\r\nbf84fa28be4943692bd64772186e0832fb1061f80714ccb93e111e9d72b1cadc\r\nnokogiri-1.16.4-java.gem\r\na46808467c1f63a2031e1ca0715cd5336bb4ec759e9c0e2f4c951c1cc30994ae\r\nnokogiri-1.16.4-x64-mingw-ucrt.gem\r\n4cdf64bc5e9443ec3e0b595347ecc8affe21968d9ae934c0825d26630ef96468\r\nnokogiri-1.16.4-x64-mingw32.gem\r\nd86d21bae47dd9f6f5223055e45d33fae08b0b89aad94cbc0ece4f4274fa7af5\r\nnokogiri-1.16.4-x86-linux.gem\r\nd488b872884844686780fda7cf5da44ee884d32faa713a55aeb4736d76718168\r\nnokogiri-1.16.4-x86-mingw32.gem\r\na896e52a56951ffb0e6a9279afbf485d683e357a053d27f4cfcb2a73b0824628\r\nnokogiri-1.16.4-x86_64-darwin.gem\r\n92ff4f09910255fec84b3bc4c4b182e94cada3ed12b9f7a6ea058e0af186fb31\r\nnokogiri-1.16.4-x86_64-linux.gem\r\n</tr></table> \r\n
\r\n
\r\n

... (truncated)

\r\n
\r\n
\r\nChangelog\r\n

Sourced from nokogiri's\r\nchangelog.

\r\n
\r\n

v1.16.5

\r\n

Security

\r\n
    \r\n
  • [CRuby] Vendored libxml2 is updated to address CVE-2024-34459. See\r\nGHSA-r95h-9x8f-r3f7\r\nfor more information.
  • \r\n
\r\n

Dependencies

\r\n
    \r\n
  • [CRuby] Vendored libxml2 is updated to v2.12.7\r\nfrom v2.12.6. (@​flavorjones)
  • \r\n
\r\n

v1.16.4 / 2024-04-10

\r\n

Dependencies

\r\n
    \r\n
  • [CRuby] Vendored zlib in the precompiled native gems is updated to\r\nv1.3.1 from v1.3. Nokogiri\r\nis not affected by the minizip CVE patched in this version, but this\r\nupdate may satisfy some security scanners. Related, see this\r\ndiscussion about removing the compression libraries altogether in a\r\nfuture version of Nokogiri.
  • \r\n
\r\n

v1.16.3 / 2024-03-15

\r\n

Dependencies

\r\n
    \r\n
  • [CRuby] Vendored libxml2 is updated to v2.12.6\r\nfrom v2.12.5. (@​flavorjones)
  • \r\n
\r\n

Changed

\r\n
    \r\n
  • [CRuby] XML::Reader sets the @encoding\r\ninstance variable during reading if it is not passed into the\r\ninitializer. Previously, it would remain nil. The behavior\r\nof Reader#encoding has not changed. This works around\r\nchanges to how libxml2 reports the encoding used in v2.12.6.
  • \r\n
\r\n
\r\n
\r\n
\r\nCommits\r\n\r\n
\r\n
\r\n\r\nUpdates `rexml` from 3.2.5 to 3.2.8\r\n
\r\nRelease notes\r\n

Sourced from rexml's\r\nreleases.

\r\n
\r\n

REXML 3.2.8 - 2024-05-16

\r\n

Fixes

\r\n
    \r\n
  • Suppressed a warning
  • \r\n
\r\n

REXML 3.2.7 - 2024-05-16

\r\n

Improvements

\r\n
    \r\n
  • \r\n

    Improve parse performance by using StringScanner.

    \r\n
      \r\n
    • \r\n

      GH-106

      \r\n
    • \r\n
    • \r\n

      GH-107

      \r\n
    • \r\n
    • \r\n

      GH-108

      \r\n
    • \r\n
    • \r\n

      GH-109

      \r\n
    • \r\n
    • \r\n

      GH-112

      \r\n
    • \r\n
    • \r\n

      GH-113

      \r\n
    • \r\n
    • \r\n

      GH-114

      \r\n
    • \r\n
    • \r\n

      GH-115

      \r\n
    • \r\n
    • \r\n

      GH-116

      \r\n
    • \r\n
    • \r\n

      GH-117

      \r\n
    • \r\n
    • \r\n

      GH-118

      \r\n
    • \r\n
    • \r\n

      GH-119

      \r\n
    • \r\n
    • \r\n

      GH-121

      \r\n
    • \r\n
    • \r\n

      Patch by NAITOH Jun.

      \r\n
    • \r\n
    \r\n
  • \r\n
  • \r\n

    Improved parse performance when an attribute has many\r\n<s.

    \r\n
      \r\n
    • GH-124
    • \r\n
    \r\n
  • \r\n
\r\n

Fixes

\r\n
    \r\n
  • \r\n

    XPath: Fixed a bug of normalize_space(array).

    \r\n
      \r\n
    • \r\n

      GH-110

      \r\n
    • \r\n
    • \r\n

      GH-111

      \r\n
    • \r\n
    • \r\n

      Patch by flatisland.

      \r\n
    • \r\n
    \r\n
  • \r\n
  • \r\n

    XPath: Fixed a bug that wrong position is used with nested path.

    \r\n
      \r\n
    • \r\n

      GH-110

      \r\n
    • \r\n
    • \r\n

      GH-122

      \r\n
    • \r\n
    • \r\n

      Reported by jcavalieri.

      \r\n
    • \r\n
    • \r\n

      Patch by NAITOH Jun.

      \r\n
    • \r\n
    \r\n
  • \r\n
  • \r\n

    Fixed a bug that an exception message can't be generated for\r\ninvalid encoding XML.

    \r\n
  • \r\n
\r\n\r\n
\r\n

... (truncated)

\r\n
\r\n
\r\nChangelog\r\n

Sourced from rexml's\r\nchangelog.

\r\n
\r\n

3.2.8 - 2024-05-16 {#version-3-2-8}

\r\n

Fixes

\r\n
    \r\n
  • Suppressed a warning
  • \r\n
\r\n

3.2.7 - 2024-05-16 {#version-3-2-7}

\r\n

Improvements

\r\n
    \r\n
  • \r\n

    Improve parse performance by using StringScanner.

    \r\n
      \r\n
    • \r\n

      GH-106

      \r\n
    • \r\n
    • \r\n

      GH-107

      \r\n
    • \r\n
    • \r\n

      GH-108

      \r\n
    • \r\n
    • \r\n

      GH-109

      \r\n
    • \r\n
    • \r\n

      GH-112

      \r\n
    • \r\n
    • \r\n

      GH-113

      \r\n
    • \r\n
    • \r\n

      GH-114

      \r\n
    • \r\n
    • \r\n

      GH-115

      \r\n
    • \r\n
    • \r\n

      GH-116

      \r\n
    • \r\n
    • \r\n

      GH-117

      \r\n
    • \r\n
    • \r\n

      GH-118

      \r\n
    • \r\n
    • \r\n

      GH-119

      \r\n
    • \r\n
    • \r\n

      GH-121

      \r\n
    • \r\n
    • \r\n

      Patch by NAITOH Jun.

      \r\n
    • \r\n
    \r\n
  • \r\n
  • \r\n

    Improved parse performance when an attribute has many\r\n<s.

    \r\n
      \r\n
    • GH-124
    • \r\n
    \r\n
  • \r\n
\r\n

Fixes

\r\n
    \r\n
  • \r\n

    XPath: Fixed a bug of normalize_space(array).

    \r\n
      \r\n
    • \r\n

      GH-110

      \r\n
    • \r\n
    • \r\n

      GH-111

      \r\n
    • \r\n
    • \r\n

      Patch by flatisland.

      \r\n
    • \r\n
    \r\n
  • \r\n
  • \r\n

    XPath: Fixed a bug that wrong position is used with nested path.

    \r\n
      \r\n
    • \r\n

      GH-110

      \r\n
    • \r\n
    • \r\n

      GH-122

      \r\n
    • \r\n
    • \r\n

      Reported by jcavalieri.

      \r\n
    • \r\n
    • \r\n

      Patch by NAITOH Jun.

      \r\n
    • \r\n
    \r\n
  • \r\n
  • \r\n

    Fixed a bug that an exception message can't be generated for

    \r\n
  • \r\n
\r\n\r\n
\r\n

... (truncated)

\r\n
\r\n
\r\nCommits\r\n\r\n
\r\n
\r\n\r\n\r\nDependabot will resolve any conflicts with this PR as long as you don't\r\nalter it yourself. You can also trigger a rebase manually by commenting\r\n`@dependabot rebase`.\r\n\r\n[//]: # (dependabot-automerge-start)\r\n[//]: # (dependabot-automerge-end)\r\n\r\n---\r\n\r\n
\r\nDependabot commands and options\r\n
\r\n\r\nYou can trigger Dependabot actions by commenting on this PR:\r\n- `@dependabot rebase` will rebase this PR\r\n- `@dependabot recreate` will recreate this PR, overwriting any edits\r\nthat have been made to it\r\n- `@dependabot merge` will merge this PR after your CI passes on it\r\n- `@dependabot squash and merge` will squash and merge this PR after\r\nyour CI passes on it\r\n- `@dependabot cancel merge` will cancel a previously requested merge\r\nand block automerging\r\n- `@dependabot reopen` will reopen this PR if it is closed\r\n- `@dependabot close` will close this PR and stop Dependabot recreating\r\nit. You can achieve the same result by closing it manually\r\n- `@dependabot show ignore conditions` will show all\r\nof the ignore conditions of the specified dependency\r\n- `@dependabot ignore major version` will close this\r\ngroup update PR and stop Dependabot creating any more for the specific\r\ndependency's major version (unless you unignore this specific\r\ndependency's major version or upgrade to it yourself)\r\n- `@dependabot ignore minor version` will close this\r\ngroup update PR and stop Dependabot creating any more for the specific\r\ndependency's minor version (unless you unignore this specific\r\ndependency's minor version or upgrade to it yourself)\r\n- `@dependabot ignore ` will close this group update PR\r\nand stop Dependabot creating any more for the specific dependency\r\n(unless you unignore this specific dependency or upgrade to it yourself)\r\n- `@dependabot unignore ` will remove all of the ignore\r\nconditions of the specified dependency\r\n- `@dependabot unignore ` will\r\nremove the ignore condition of the specified dependency and ignore\r\nconditions\r\nYou can disable automated security fix PRs for this repo from the\r\n[Security Alerts\r\npage](https://github.com/google/clusterfuzz/network/alerts).\r\n\r\n
\r\n\r\nSigned-off-by: dependabot[bot] \r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>","shortMessageHtmlLink":"Bump the bundler group across 1 directory with 3 updates (#3997)"}},{"before":null,"after":"3b0ee436b879b73dad618c33cad605321d5689d5","ref":"refs/heads/mte","pushedAt":"2024-05-21T19:12:51.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"jonathanmetzman","name":null,"path":"/jonathanmetzman","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/31354670?s=80&v=4"},"commit":{"message":"Ensure the fuzzer job entity is updated.","shortMessageHtmlLink":"Ensure the fuzzer job entity is updated."}},{"before":"d3f9c804254116768b3903eb1aafbe8c026b4a88","after":"785ab772cb246c9d62f28d75cf1110d74dc3d0df","ref":"refs/heads/fuzz-task-crashes2","pushedAt":"2024-05-21T19:12:14.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"jonathanmetzman","name":null,"path":"/jonathanmetzman","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/31354670?s=80&v=4"},"commit":{"message":"Ensure that FuzzerJob entities are updated.","shortMessageHtmlLink":"Ensure that FuzzerJob entities are updated."}},{"before":"4777f408cc3427339e9cf6c8738e712c98fcc30f","after":"2c7ba03ae8d61a0ea7dba459a7cdf040637f8560","ref":"refs/heads/feature/ga-python-builds","pushedAt":"2024-05-21T18:12:26.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"vitorguidi","name":"Vitor Guidi","path":"/vitorguidi","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/5733577?s=80&v=4"},"commit":{"message":"Building gap deps only for python3.11","shortMessageHtmlLink":"Building gap deps only for python3.11"}},{"before":"ed51539f35f9575912f28d618305a62d686dcc1b","after":"4777f408cc3427339e9cf6c8738e712c98fcc30f","ref":"refs/heads/feature/ga-python-builds","pushedAt":"2024-05-21T18:00:28.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"vitorguidi","name":"Vitor Guidi","path":"/vitorguidi","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/5733577?s=80&v=4"},"commit":{"message":"Attempting to build deps with gaps","shortMessageHtmlLink":"Attempting to build deps with gaps"}},{"before":null,"after":"4b00d85c156dca0e7fc2f684d4546a6f7849eeb0","ref":"refs/heads/dependabot/pip/pip-12d77511a3","pushedAt":"2024-05-21T05:53:24.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"dependabot[bot]","name":null,"path":"/apps/dependabot","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/29110?s=80&v=4"},"commit":{"message":"---\nupdated-dependencies:\n- dependency-name: cryptography\n dependency-type: direct:production\n dependency-group: pip\n- dependency-name: future\n dependency-type: direct:production\n dependency-group: pip\n- dependency-name: gunicorn\n dependency-type: direct:development\n dependency-group: pip\n- dependency-name: idna\n dependency-type: indirect\n dependency-group: pip\n- dependency-name: requests\n dependency-type: indirect\n dependency-group: pip\n...\n\nSigned-off-by: dependabot[bot] ","shortMessageHtmlLink":"---"}}],"hasNextPage":true,"hasPreviousPage":false,"activityType":"all","actor":null,"timePeriod":"all","sort":"DESC","perPage":30,"cursor":"djE6ks8AAAAEVYjYsAA","startCursor":null,"endCursor":null}},"title":"Activity · google/clusterfuzz"}