actix-http: v3.18.12
Flush compressed response bodies when the source is pending.
Flush compressed response bodies when the source is pending.
Reject requests with a missing or duplicate Host header in HTTP/1.1 requests.
Allow trailer fields after chunked bodies.
Reject empty chunked size lines.
No significant changes since 0.8.4.
Ensure "chunked" declaration is final part of Transfer-Encoding header.
Add camel-case header controls to WebsocketsRequest via camel_case_headers() and set_camel_case_headers(). Update hickory-resolver dependency to 0.26.
Fix Removed::len() panicking when inserting a new header or removing an absent header.
Remove unused direct actix-tls dependency. Minimum supported Rust version (MSRV) is now 1.88.
Update syn dependency to 3. Minimum supported Rust version (MSRV) is now 1.88.
No significant changes since 0.8.3.
Update syn dependency to 0.3. Update darling dependency to 0.24.
Field data that is similar to boundaries is now yielded in the Field stream before returning an incomplete error.
Fix multipart field parsing hanging at EOF with missing or incomplete boundaries by returning MultipartError::Incomplete.
Removes h2 from the TLS ALPN offer list when http2 crate feature is disabled.
Reject invalid WebSocket close-frame status codes, malformed payloads, and invalid UTF-8 close reasons. Deprecate the Parser::parse_close_payload() method in favor of Parser::try_parse_close_payload().
Reject WebSocket frames with reserved bits. Reject new WebSocket text or binary frames during a continuation.
Fix multipart field parsing when boundary delimiter is split across payload chunks. Improve detail in some error messages.
Add Error::add_response_mapper() to allow middleware to modify error-generated responses before they are sent. Remove the experimental experimental-io-uring crate feature.
Remove the experimental experimental-io-uring crate feature and its implementation, including the NamedFile::open_async() method. Add support for passing multiple root directories to Files::new. Add Files::try_compressed() to support serving pre-compressed static files. Fix handling of Range: bytes=0-. Fix panic in Files when use_hidden_files() is enabled and request paths contain . segments. Fix…
Close idle HTTP/1 keep-alive connections during graceful shutdown and let active connections finish only their current request before closing.
Close idle HTTP/1 keep-alive connections during graceful server shutdown and close active connections after their current request finishes.
Fix MessageBody implementation for ByteString to signal completion after yielding its contents. #4177
3.13.1 Fix HTTP/1 WebSocket upgrade responses being overwritten with Connection: close when the upgraded request payload remains open. #4115
4.14.0 Add HttpRequest::{cookies_raw,cookie_raw} and ServiceRequest::{cookies_raw,cookie_raw} for reading request cookies without percent-decoding names and values. #3542 Enable dual-stack IPv6 sockets on Windows when possible so that Actix-created listeners bound to [::] also accept IPv4 connections. Panic when calling Route::to() or Route::service() after Route::wrap() to prevent silently droppi…
3.13.0 When configured, gracefully close HTTP/1 connections after early responses to unread request bodies. #3967 Wake HTTP/1 payload receivers with an incomplete-payload error when the sender is dropped before EOF. #3100 Update foldhash dependency to 0.2.
0.8.0 Add multi-field multipart payload builders to actix_multipart::test. #3575 Add MultipartForm support for Option<Vec<T>> fields. #3577 Bound internal multipart parser buffering to prevent unbounded memory growth on malformed bodies. behavior change notice: There's now a cap for buffering (64KB). It can be changed with MultipartConfig::buffer_limit. Fix user-triggerable panic when parsing mult…
0.8.0 Minimum supported Rust version (MSRV) is now 1.88. Update darling dependency to 0.23.
Notice: This release contains a security fix. Users are encouraged to update to this version ASAP. SECURITY: Reject HTTP/1 requests with ambiguous request framing from Content-Length and Transfer-Encoding headers to prevent request smuggling. Encode the HTTP/1 Connection: Upgrade header in Camel-Case when camel-case header formatting is enabled.#3953 Fix HeaderMap iterators' len() and size_hint()…
Minimum supported Rust version (MSRV) is now 1.88. Fix empty streaming request bodies being sent with chunked transfer encoding.