Skip to content

Bump axum from 0.7.9 to 0.8.9 - #6

Open
dependabot[bot] wants to merge 3 commits into
mainfrom
dependabot/cargo/axum-0.8.9
Open

Bump axum from 0.7.9 to 0.8.9#6
dependabot[bot] wants to merge 3 commits into
mainfrom
dependabot/cargo/axum-0.8.9

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jul 30, 2026

Copy link
Copy Markdown
Contributor

Bumps axum from 0.7.9 to 0.8.9.

Release notes

Sourced from axum's releases.

axum-v0.8.9

  • added: WebSocketUpgrade::{requested_protocols, set_selected_protocol} for more flexible subprotocol selection (#3597)
  • changed: Update minimum rust version to 1.80 (#3620)
  • fixed: Set connect endpoint on correct field in MethodRouter (#3656)
  • fixed: Return specific error message when multipart body limit is exceeded (#3611)

#3597: tokio-rs/axum#3597 #3620: tokio-rs/axum#3620 #3656: tokio-rs/axum#3656 #3611: tokio-rs/axum#3611

axum v0.8.8

  • Clarify documentation for Router::route_layer (#3567)

#3567: tokio-rs/axum#3567

axum v0.8.7

  • Relax implicit Send / Sync bounds on RouterAsService, RouterIntoService (#3555)
  • Make it easier to visually scan for default features (#3550)
  • Fix some documentation typos

#3550: tokio-rs/axum#3550 #3555: tokio-rs/axum#3555

axum v0.8.5

  • fixed: Reject JSON request bodies with trailing characters after the JSON document (#3453)
  • added: Implement OptionalFromRequest for Multipart (#3220)
  • added: Getter methods Location::{status_code, location}
  • added: Support for writing arbitrary binary data into server-sent events (#3425)]
  • added: middleware::ResponseAxumBodyLayer for mapping response body to axum::body::Body (#3469)
  • added: impl FusedStream for WebSocket (#3443)
  • changed: The sse module and Sse type no longer depend on the tokio feature (#3154)
  • changed: If the location given to one of Redirects constructors is not a valid header value, instead of panicking on construction, the IntoResponse impl now returns an HTTP 500, just like Json does when serialization fails (#3377)
  • changed: Update minimum rust version to 1.78 (#3412)

#3154: tokio-rs/axum#3154 #3220: tokio-rs/axum#3220 #3377: tokio-rs/axum#3377 #3412: tokio-rs/axum#3412 #3425: tokio-rs/axum#3425 #3443: tokio-rs/axum#3443 #3453: tokio-rs/axum#3453 #3469: tokio-rs/axum#3469

axum v0.8.4

  • added: Router::reset_fallback (#3320)
  • added: WebSocketUpgrade::selected_protocol (#3248)
  • fixed: Panic location for overlapping method routes (#3319)
  • fixed: Don't leak a tokio task when using serve without graceful shutdown (#3129)

... (truncated)

Commits

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file rust Pull requests that update rust code labels Jul 30, 2026
@cloudflare-workers-and-pages

cloudflare-workers-and-pages Bot commented Jul 30, 2026

Copy link
Copy Markdown

Deploying with  Cloudflare Workers  Cloudflare Workers

The latest updates on your project. Learn more about integrating Git with Workers.

Status Name Latest Commit Updated (UTC)
✅ Deployment successful!
View logs
flock 7a7f5af Aug 02 2026, 06:35 PM

@dependabot
dependabot Bot force-pushed the dependabot/cargo/axum-0.8.9 branch from 8676994 to 1ffa786 Compare August 2, 2026 18:03
Bumps [axum](https://github.com/tokio-rs/axum) from 0.7.9 to 0.8.9.
- [Release notes](https://github.com/tokio-rs/axum/releases)
- [Changelog](https://github.com/tokio-rs/axum/blob/main/CHANGELOG.md)
- [Commits](tokio-rs/axum@axum-v0.7.9...axum-v0.8.9)

---
updated-dependencies:
- dependency-name: axum
  dependency-version: 0.8.9
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/cargo/axum-0.8.9 branch from 1ffa786 to 05c3529 Compare August 2, 2026 18:20
stoatworks-labs and others added 2 commits August 2, 2026 19:29
axum 0.8 retyped `Message::Text` from `String` to `Utf8Bytes` (and
`Message::Binary` to `Bytes`) so a send no longer has to copy the payload.
`Utf8Bytes: From<String>` covers the one call site here, and the snapshot
was already being cloned for `last_sent`, so nothing extra is allocated.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
The axum 0.8 bump only failed to compile on `Message::Text` (fixed in the
previous commit), but it carried a second breaking change that compiles
perfectly and panics at runtime: path captures moved from `:id` to `{id}`,
and `Router::route` rejects the old form when it builds the router.

All eight of flock's captures used it, including two — /api/devices/{id}
and /api/groups/{tag}/{tab} — on wrapped `.route(` calls that a
single-line grep misses. Nothing in the existing 23 tests constructs the
router, so CI would have gone green on a binary that panicked on startup.

Hence the smoke test: it builds the real router via `app()`, which is the
only thing that exercises route registration. Verified it earns its place
by reverting one capture and watching it fail with the axum panic.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file rust Pull requests that update rust code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant