Pypiserver

Latest version: v2.1.1

Safety actively analyzes 634645 Python packages for vulnerabilities to keep your Python projects secure.

Scan your dependencies

Page 5 of 8

1.1.8

Not secure
------------------
"Finikounda" release.

- Allow un-authenticated uploads (no htpasswd file) (55).
- Fixes on package-name handling (85 and 88, 89).
- Respect logging cmd-line options (81).
- Add TCs for standalone script and other build-issues (92)
- See milestone:M1.1.8 on github for all fixes included.

1.1.7

Not secure
-----------------
1st release under cooperative ownership:

- 65, 66: Improve Auth for private repos by supporting i
password protected package listings and downloads,
in addition to uploads (use the -a, --authenticate option
to specify which to protect).
- 67: Add cache-control http-header, reqed by pip.
- 56, 70: Ignore non-packages when serving.
- 58, 62: Log all http-requests.
- 61: Possible to change welcome-msg.
- 77, 78: Avoid XSS by generating web-content with SimpleTemplate
instead of python's string-substs.
- 38, 79: Instruct to use --extra-index-url for misspelled dependencies to work,
reorganize README instructions.

1.1.6

Not secure
------------------
- remove --index-url cli parameter introduced in 1.1.5

1.1.5

Not secure
------------------
- only list devpi-server and proxypypi as alternatives
- fix wheel file handling for certain wheels
- serve wheel files as application/octet-stream
- make pypiserver executable from wheel file
- build universal wheel
- remove scripts subdirectory
- add --index-url cli parameter

1.1.4

Not secure
------------------
- make pypiserver compatible with pip 1.5
(https://github.com/pypiserver/pypiserver/pull/42)

1.1.3

Not secure
------------------
- make guessing of package name and version more robust

Page 5 of 8

© 2024 Safety CLI Cybersecurity Inc. All Rights Reserved.