Guillotina

Latest version: v7.0.5

Safety actively analyzes 724087 Python packages for vulnerabilities to keep your Python projects secure.

Scan your dependencies

Page 14 of 17

6.0.0b3

Not secure
--------------------

- Provide patch operations for json field
[vangheem]

- Optimize extend operation for bucket list field
[vangheem]

- `.` and `..` should be blocked as valid ids. The browser will auto translate them
to what current dir and parent dir respectively which gives unexpected results.
[vangheem]

- Change in ISecurityPolicy that might improve performance during traversal for views
with permission guillotina.Public
[masipcat]

- Fix Response object responding with 'default_content' when 'content' evaluates to False
[masipcat]

- Change log level for conflict errors to warning and fix locating tid of conflict error
[vangheem]

- Fix security policy not taking into account IInheritPermissionMap for principals
[masipcat,bloodbare]


- Fix use of int32 sql interpolation when it should have been bigint for tid
[vangheem]

- Restore task vars after usage of Content API
- Zope.interface 5.0.1 upgrade
[bloodbare]

6.0.0b2

Not secure
--------------------

- Fix move(obj) fires IBeforeObjectMovedEvent after modifying the object
[masipcat]

- Error handling: ValueDeserializationError editing registry value
[vangheem]

- Handle db transaction closed while acquiring transaction lock
[vangheem]

- Handle db transaction closed while acquiring lock
[vangheem]

- Handle connection errors on file head requests
[vangheem]

- Update README
[psanlorenzo]

6.0.0b1

Not secure
--------------------

- Use orjson instead of json/ujson
[masipcat]

- AsgiStreamReader.read() can return bytes or bytearray
[masipcat]

6.0.0a16

Not secure
---------------------

- Changes in ICatalogUtility, DefaultSearchUtility and search endpoints
[masipcat]

- Update react-gmi v 0.4.0
[jordic]

- Fix more antipatterns [lferran]

- Fix integer query param validation [lferran]

6.0.0a15

Not secure
---------------------

- Handle http.disconnect (and other types of messages) while reading the request body
[masipcat]

- Be able to have async schema invariants
[vangheem]

- Provide better validation for json schema field
[vangheem]

6.0.0a14

Not secure
---------------------

- Change AttributeError to HTTPPreconditionFailed in FileManager
[masipcat]

- Reverted "Replaced Response.content_{type,length} with Response.set_content_{type,length}".
Using setter to avoid breaking `Response.content_{type,length} = ...`
[masipcat]

- Handle error when "None" value provided for behavior data
[vangheem]

- Handle connection reset errors on file download
[vangheem]

Page 14 of 17

© 2025 Safety CLI Cybersecurity Inc. All Rights Reserved.