Repository navigation
Bump dbup-sqlserver and 5 others - #3
Open
dependabot[bot] wants to merge 1 commit into
Open
dependabot[bot] wants to merge 1 commit into
dependabot[bot] wants to merge 1 commit into
Conversation
Owner
|
@dependabot rebase |
dependabot
Bot
force-pushed
the
dependabot/nuget/EOS.API/nuget-api-f6bf5b2536
branch
from
October 6, 2026 17:06
7b992e4 to
a7cf932
Compare
Owner
|
@dependabot rebase |
Bumps dbup-sqlserver from 5.0.40 to 7.2.0 Bumps Microsoft.AspNetCore.OpenApi from 10.0.10 to 10.0.12 Bumps Microsoft.Data.SqlClient from 7.0.2 to 7.1.1 Bumps Microsoft.OpenApi to 2.12.0, 3.10.2 Bumps QuestPDF from 2026.7.3 to 2026.9.1 Bumps System.Drawing.Common from 10.0.11 to 10.0.12 --- updated-dependencies: - dependency-name: dbup-sqlserver dependency-version: 7.2.0 dependency-type: direct:production update-type: version-update:semver-major dependency-group: nuget-api - dependency-name: Microsoft.AspNetCore.OpenApi dependency-version: 10.0.12 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: nuget-api - dependency-name: Microsoft.Data.SqlClient dependency-version: 7.1.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: nuget-api - dependency-name: Microsoft.OpenApi dependency-version: 2.12.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: nuget-api - dependency-name: Microsoft.OpenApi dependency-version: 3.10.2 dependency-type: direct:production update-type: version-update:semver-major dependency-group: nuget-api - dependency-name: QuestPDF dependency-version: 2026.9.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: nuget-api - dependency-name: System.Drawing.Common dependency-version: 10.0.12 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: nuget-api ... Signed-off-by: dependabot[bot] <support@github.com>
dependabot
Bot
force-pushed
the
dependabot/nuget/EOS.API/nuget-api-f6bf5b2536
branch
from
October 6, 2026 17:12
a7cf932 to
dd2ddde
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Updated dbup-sqlserver from 5.0.40 to 7.2.0.
Release notes
Sourced from dbup-sqlserver's releases.
7.2.0
What's Changed
Full Changelog: DbUp/dbup-sqlserver@7.1.0...7.2.0
7.1.0
What's Changed
Full Changelog: DbUp/dbup-sqlserver@6.0.16...7.1.0
6.0.16
What's Changed
New Contributors
dbup-core changes: https://github.com/DbUp/DbUp/releases/tag/6.0.15
Full Changelog: DbUp/dbup-sqlserver@6.0.0...6.0.16
6.0.0
Breaking Changes
MultipleUpgradeLoghas been replaced withAggregateLogIUpgradeLoggerstill exists but method names have changed fromWrite*toLog*to match Microsoft'sILoggerinterfaceScriptType.RunAlwayswill no longer be journalednetstandard2.0compatible frameworks are supportedWhat's Else Has Changed
New Contributors
Full Changelog: DbUp/dbup-sqlserver@5.0.41...6.0.0
6.0.0-beta.21
Full Changelog: DbUp/dbup-sqlserver@6.0.0-beta.9...6.0.0-beta.21
6.0.0-beta.9
What's Changed
Full Changelog: https://github.com/DbUp/dbup-sqlserver/commits/6.0.0-beta.9
Commits viewable in compare view.
Updated Microsoft.AspNetCore.OpenApi from 10.0.10 to 10.0.12.
Release notes
Sourced from Microsoft.AspNetCore.OpenApi's releases.
No release notes found for this version range.
Commits viewable in compare view.
Updated Microsoft.Data.SqlClient from 7.0.2 to 7.1.1.
Release notes
Sourced from Microsoft.Data.SqlClient's releases.
7.1.1
This servicing release fixes decimal parameter validation, token expiry handling in connection pool V2, and connection opens that are in progress when a pool is cleared.
Companion package release notes
Changes Since 7.1.0
Fixed
Fixed an
ArgumentExceptionwhen sending zero-valueddecimalorSqlDecimalparameters whose precision equals their scale. Nonzero precision validation and support for large decimal values are unchanged. (#4715, #4721, #4732)Fixed connection pool V2 handing out pooled connections with expired or nearly expired access tokens. The pool now checks token expiry before reuse, matching the default pool's behavior while preserving transaction-affine reuse. This affects only applications that opt in to connection pool V2. (#4734, #4739)
Fixed connection opens failing when
ClearPoolorClearAllPoolsraces with an in-flight open. Requests already admitted to the cleared pool can finish, and connections returned to the retired pool are discarded rather than reused. (#4714, #4718, #4740)Target Platform Support
Dependencies
.NET 9.0
... (truncated)
7.1.0
This is the general availability release of Microsoft.Data.SqlClient 7.1. It closes out the
7.1preview cycle with application identity reporting for telemetry, the deprecation ofTransparentNetworkIPResolution, and a set of connection, transaction, and Named Pipes fixes.Companion package release notes
Changes Since 7.1.0-preview3
Added
Application Identity in the USERAGENT Payload
What Changed:
RegisteredApplicationenum and a matchingSqlConnection.RegisteredApplicationproperty that let a library or tool identify itself to SQL Server through version 2 of the TDS USERAGENT feature extension. The payload also carries a new driver-owned 64-bit Driver Properties flag field; bit 0 reports whether connection pool V2 is enabled for the process. Both fields are emitted as unpadded uppercase hexadecimal. (#3201, #4632)Who Benefits:
Impact:
RegisteredApplicationis unset reportsUnknown(0). On the wire the field itself is new — USERAGENT payload v1 carried no application identifier, while v2 always emits one.OpenorOpenAsync. Assigning it while the connection is connecting or open throwsInvalidOperationException.ushort-backed and marked[CLSCompliant(false)]. Values are partitioned by range:0x0001–0x7FFFfor Microsoft-defined large-scale applications,0x8000–0xBFFFfor small-scale use, and0xC000–0xFFFFfor public/developer use. Applications that are not yet registered can cast an unassigned value from the appropriate range.... (truncated)
7.1.0-preview3
This update brings the following changes since the 7.1.0-preview2 release.
Packages in this release
Microsoft.Data.SqlClient7.1.0-preview3Added
virtualmethods onSqlColumnEncryptionKeyStoreProviderwithCancellationTokensupport. Purely additive; defaults delegate to the synchronous methods, so existing providers are unaffected (#3672, #3673)Switch.Microsoft.Data.SqlClient.UseConnectionPoolV2):Min Pool Sizeand automatic replenishment (#4452)Connection Idle Timeout(#4463)ConcurrencyLimiterrate limiting for new physical connections (#4395, #4396)number-of-reclaimed-connectionscounter (#4529)Changed
PacketDatanode reuse —ExecuteReaderAsyncgoes from +120.9% to +0.1% against 6.1.6 (#4536)SqlBulkCopyskips graph alias mapping when no graph pseudo-columns are present, recovering a regression from #3677 (#4535)SqlClientEventSourcetracing is disabled, recovering a memory regression against 6.1.6. Trace output unchanged (#4528)net9.0dependencies moved to9.0.18;System.Threading.RateLimitingadded to packaged metadata. Other targets keep their8.0.xpins (#4507)Microsoft.Data.SqlClient.SNIand.SNI.runtimeupdated to7.1.0-preview3.26226.3(#4564)Fixed
SHA-256comparison againstEnclaveData(#4532)SqlConnectionFactoryno longer wakes the process every 30 seconds when no pools exist — including withPooling=Falseand afterClearAllPools()(#1881, #4479)active-soft-connectsandnumber-of-active-connectionscould go negative after a failed activation, and several gauges drifted upward permanently after a broken connection was replaced (#4504)OverflowExceptionwhen sending largedecimalvalues with explicitPrecisionandScale, which primarily affected Always Encrypted (#1655, #4443)DateOnlyvalue withSqlDbType.Variant(net8.0/net9.0) (#3953, #4294)DateOnlyin table-valued parametersql_variantcolumns sent asdatetimeinstead ofdate, which overflowed for values valid asdate(net8.0/net9.0) (#3934, #4439)ServerCertificatekeyword ignored when the platform reported no TLS policy errors. It is now always compared, and an unloadable certificate fails closed withSSLCertificateAuthenticationExceptioninstead of silently falling back to host-name validation (#4445)SqlConnection.AccessTokenCallbacknot disabling TNIR by default, plus pool-key construction andSspiContextProviderexclusivity with token auth (net462 for the TNIR behavior) (#4520)OutOfMemoryExceptioncaptured into faultedTasks across severalSqlBulkCopy,SqlDataReader, andSqlCommandasync entry points (#4437)Microsoft.Data.SqlClient.Extensions.Azure(#4496, #4521)Full details: release-notes/7.1/7.1.0-preview3.md
Microsoft.Data.SqlClient.AlwaysEncrypted.AzureKeyVaultProvider7.1.0-preview3Added
SqlColumnEncryptionAzureKeyVaultProvideroverrides the four asynchronous key store provider methods introduced in #3673, calling the Azure SDK's own async APIs and flowing the suppliedCancellationToken(#4540)... (truncated)
7.1.0-preview2
This update brings the following changes since the 7.1.0-preview1 release.
Packages in this release
Microsoft.Data.SqlClient7.1.0-preview2Added
SqlConnection.GetSchemaAsyncoverloads withCancellationTokensupport (#3005)$node_id,$edge_id,$from_id,$to_id) accepted inSqlBulkCopymappings (#3677)SqlBatchCommand.CommandBehaviorandSqlBatch.ExecuteReader(CommandBehavior)are now honored (#4125)Connection Idle Timeout/SqlConnectionStringBuilder.IdleTimeout(opt-in viaSwitch.Microsoft.Data.SqlClient.UseLegacyIdleTimeoutBehavior=false) (#4295)Changed
Connect Timeoutnow propagates through the pool whenSwitch.Microsoft.Data.SqlClient.UseOverallConnectTimeoutForPoolWait=trueis set (default off; introduces aMicrosoft.Bcl.TimeProviderdependency) (#4270)jsontype added to theDataTypescollection returned bySqlConnection.GetSchema(#3858)Interlocked.CompareExchangeguards (#4267)SqlErrorCollectionand null-return paths (#4157, #4099, #4102)EnclaveDiffieHellmanInfo.Sizeaccuracy (#4346)SqlVector<float>serialization is now explicitly little-endian for cross-architecture consistency (#3861)10.0.300(#4287)Fixed
NullReferenceExceptioninSqlCommand.Cancel()when the connection has already been torn down (#4372)SqlBulkCopyfailing in least-privilege environments (#4306)CekMdVersion/EkValueCountreads aligned with the TDS specification (#4240)LoginWithFailoverparser-state validation (#4140)Protocol=None/Protocol=Admin(#4180)SqlConnection.TryOpenInnerthat could surface asInvalidCastExceptionnow returns a deterministicInvalidOperationException(#4179)CancellationTokenSourceleaks inSqlDataReader,SqlConnection,SqlCommandreconnect paths, and sequential-stream helpers (#4009)Removed (breaking)
Type System Version=SQL Server 2000now throwsArgumentExceptionat open. Applications should switch toLatest(or another supported value). No change to server-version support — 7.0 / 2000 were already rejected during login version negotiation. (#4015)Full details: release-notes/7.1/7.1.0-preview2.md
Microsoft.Data.SqlClient.Extensions.Azure7.1.0-preview2Added — WAM (Windows Account Manager) broker support for Entra ID authentication (Windows only) (#4288, #4388)
ActiveDirectoryIntegrated,ActiveDirectoryInteractive,ActiveDirectoryDeviceCodeFlow, and the deprecatedActiveDirectoryPasswordmodes.... (truncated)
7.1.0-preview1
This update brings the following changes since the 7.0.0 release:
Added
SqlBatchSupport on .NET FrameworkWhat Changed:
SqlBatchand related batch-command support for the .NET Framework target so the batching API is now available across the full supported platform matrix, includingnet462. (#3926)Who Benefits:
Impact:
SqlBatch,SqlBatchCommand, and the related execution methods are now usable on .NET Framework builds in addition to .NET.Cross-Driver Connection-String Synonym Alignment
What Changed:
ColumnEncryption,ConnectTimeout,FailoverPartner,PacketSize, andWorkstationId. (#4192)Who Benefits:
Impact:
Changed
Type Forwards for Authentication Abstractions
What Changed:
Microsoft.Data.SqlClientassembly to public authentication-related types that were moved intoMicrosoft.Data.SqlClient.Extensions.Abstractions, includingSqlAuthenticationMethod,SqlAuthenticationParameters,SqlAuthenticationProvider,SqlAuthenticationProviderException, andSqlAuthenticationToken. (#4067, #4117)Who Benefits:
Impact:
User Agent Feature Extension Enabled by Default
... (truncated)
7.0.3
This update brings the following changes since the 7.0.2 release:
The core driver and its companion packages ship together as version
7.0.3. Update the companion packages you use alongside the driver to7.0.3. Assembly versions remain7.0.0.0, unchanged from7.0.2.Companion package release notes
Changed
Microsoft.Data.SqlClient.SNIandMicrosoft.Data.SqlClient.SNI.runtimedependencies to 6.0.3 (was 6.0.2).(#4599)
Fixed
Fixed a
SqlBulkCopyregression in environments where the application login cannot readsys.all_columns. Bulk copy now falls back to the earlier column-discovery behavior when that permission is unavailable. Support for hidden columns and SQL Graph column aliases still requires access to the metadata view.(#4370, #4306, #4402)
Fixed a memory-allocation regression in connection and command operations caused by formatting diagnostic strings even when tracing was disabled. Also corrected trace messages that reported an incorrect object ID or could throw
FormatExceptionwhen traced values contained braces.(#4528, #4533)
Fixed
ServerCertificatevalidation on the managed SNI path so the configured certificate is compared against the server certificate even when the server certificate passes chain and host-name validation. When certificate validation is enabled, a missing, unreadable, or invalid certificate file, a certificate mismatch, or a missing server certificate now causes the TLS handshake to fail instead of bypassing the configured certificate check. (net8.0/net9.0 only)(#4445, #4583)
Fixed Always Encrypted VSM/HGS enclave attestation to verify that the enclave public key used to establish a session matches the key committed to by the signed attestation report. Missing, malformed, or mismatched key-binding data now causes attestation to fail before the session secret is derived.
(#4532, #4553)
Fixed
SqlConnection.AccessTokenCallbacknot disabling Transparent Network IP Resolution by default, making it consistent withSqlConnection.AccessToken. An explicitly configuredTransparentNetworkIPResolutionconnection-string value still takes precedence. (net462 only)(#4520, #4561)
Fixed authentication state handling so clearing
SqlConnection.AccessToken,AccessTokenCallback, orSspiContextProviderpreserves the other authentication values in the connection pool key. Cloning a connection or updating its credential also preserves itsSspiContextProvider. Combining a non-nullSspiContextProviderwithAccessTokenorAccessTokenCallbacknow throwsInvalidOperationExceptioninstead of silently discarding authentication state; applications must use one authentication mechanism at a time.(#4520, #4561, #4644)
Fixed configurable retry logic installing a permanent, process-wide assembly-resolution handler that could interfere with unrelated assembly loading. The handler is now active only while an explicitly configured custom retry provider is resolved and constructed, and probes
AppContext.BaseDirectoryinstead of the current working directory. Place custom retry assemblies in the application base directory; dependencies loaded after provider construction must be resolvable through normal application dependency resolution or an application-provided handler. (net8.0/net9.0 only)(#2214, #4547, #4663)
Contributors
We thank the following public contributors. Their efforts toward this project are very much appreciated.
Target Platform Support
... (truncated)
Commits viewable in compare view.
Updated Microsoft.OpenApi from 2.11.0 to 2.12.0.
Release notes
Sourced from Microsoft.OpenApi's releases.
2.12.0
2.12.0 (2026-08-12)
Features
Bug Fixes
Commits viewable in compare view.
Updated Microsoft.OpenApi from 2.11.0 to 3.10.2.
Release notes
Sourced from Microsoft.OpenApi's releases.
3.10.2
3.10.2 (2026-08-20)
Bug Fixes
3.10.1
3.10.1 (2026-08-19)
Bug Fixes
3.10.0
3.10.0 (2026-08-11)
Features
Bug Fixes
3.9.0
3.9.0 (2026-07-15)
Features
Bug Fixes
3.8.0
3.8.0 (2026-07-03)
Features
Bug Fixes
3.7.0
3.7.0 (2026-06-10)
Features
Bug Fixes
3.6.0
3.6.0 (2026-06-01)
Features
3.5.5
3.5.5 (2026-05-28)
Bug Fixes
3.5.4
3.5.4 (2026-05-26)
Bug Fixes
3.5.3
3.5.3 (2026-04-27)
Bug Fixes
Performance Improvements
3.5.2
3.5.2 (2026-04-14)
Bug Fixes
3.5.1
3.5.1 (2026-03-31)
Bug Fixes
3.5.0
3.5.0 (2026-03-20)
Features
Bug Fixes
3.4.0
3.4.0 (2026-03-04)
Features
Bug Fixes
3.3.1
3.3.1 (2026-01-22)
Features
Bug Fixes
3.3.0
3.3.0 (2026-01-21)
Features
3.2.0
3.2.0 (2026-01-19)
Features
Bug Fixes
3.1.3
3.1.3 (2026-01-16)
Bug Fixes
3.1.2
3.1.2 (2026-01-06)
Bug Fixes
3.1.1
3.1.1 (2025-12-18)
Bug Fixes
additionalProperties: false(6651c36)additionalProperties: false(e36fc95)3.1.0
3.1.0 (2025-12-17)
Features
type: "null"downcasting when in oneOf and anyOf for OpenAPI v3 (782cf8d)3.0.3
3.0.3 (2025-12-16)
Bug Fixes
3.0.2
3.0.2 (2025-12-08)
Bug Fixes
3.0.1
3.0.1 (2025-11-17)
Bug Fixes
3.0.0
3.0.0 (2025-11-11)
⚠ BREAKING CHANGES
Features
Special thanks
2.12.2
2.12.2 (2026-08-20)
Bug Fixes
2.12.1
2.12.1 (2026-08-19)
Bug Fixes
2.12.0
2.12.0 (2026-08-12)
Features
Bug Fixes
Commits viewable in compare view.
Updated QuestPDF from 2026.7.3 to 2026.9.1.
Release notes
Sourced from QuestPDF's releases.
2026.9.1
DocumentOperationAPI whereDocumentAttachmentRelationship.Supplementwas incorrectly mapped to/Alternative.Settings.ThrowOnMissingFontFamilies,Settings.ThrowOnMissingTextGlyphs, andSettings.UseSystemFonts.2026.9.0
This release is dedicated to text handling improvements
QuestPDF 2026.9.0 improves font management to make document rendering more predictable across development machines, CI, containers, and cloud environments.
Fonts installed on the operating system vary between machines. A document that looks correct during development may use different fallback fonts, display placeholder glyphs, or lose text after deployment. To help catch these problems before a PDF reaches its recipient, QuestPDF now excludes system fonts by default and validates font availability and glyph coverage during document generation.
Upgrading to 2026.9.0
Deploy the required font files with your application and reference them by the family names stored in those files. Fonts in the application directory are registered automatically; you can also register them explicitly through
FontManager. UseFontManager.GetRegisteredFonts()to inspect the available family names.Please compare previous settings with the new defaults:
Also review the deployment and API changes below. Renamed APIs remain available under their previous names, marked as obsolete with compiler warnings.
Covering additional languages
QuestPDF includes the bundled Lato font, which covers Latin, Greek, and Cyrillic scripts. For other scripts, such as Chinese, Japanese, Korean, Arabic, Hebrew, Thai, or emoji, we recommend additionally deploying the free, open-source Google Noto font family, registering it with
FontManager, and configuring it as a font fallback in the default text style of the document.... (truncated)
2026.8.0
🚀 This release is dedicated to performance, parallelism, and use of available resources. 🚀
Documents render faster, allocate a fraction of the memory they used to, and scale across all available CPU cores. No code changes are required — existing documents benefit simply by upgrading the package.
The numbers below were measured on a MacBook Pro M5 (18-core CPU), using the invoice document from the Getting Started tutorial, across various levels of parallelism, over a sample of 5,000 documents.
✨ Other improvements:
XPS generation has been removed. The format was supported only on Windows, had several rendering issues that could not be reliably resolved, and had negligible adoption. The GenerateXps and GenerateXpsAndShow methods are still present, but calling them now results in a compilation error, and code compiled against an earlier version throws an exception at runtime. Please use PDF generation instead.
Commits viewable in compare view.
Updated System.Drawing.Common from 10.0.11 to 10.0.12.
Release notesDescription has been truncated