fix: User-provided Jinja template parameters causing SQL parsing errors - #34802
Conversation
There was a problem hiding this comment.
Review by Korbit AI
Korbit automatically attempts to detect when you fix issues in new commits.
| Category | Issue | Status |
|---|---|---|
| Wrong Optional Import Source ▹ view | ✅ Fix detected |
Files scanned
| File Path | Reviewed |
|---|---|
| superset/sqllab/validators.py | ✅ |
| superset/commands/sql_lab/execute.py | ✅ |
| superset/db_engine_specs/postgres.py | ✅ |
| superset/models/sql_lab.py | ✅ |
| superset/sql/parse.py | ✅ |
| superset/models/core.py | ✅ |
| superset/db_engine_specs/base.py | ✅ |
| superset/security/manager.py | ✅ |
Explore our documentation to understand the languages and file types we support and the files we ignore.
Check out our docs on how you can make Korbit work best for you and your team.
Codecov Report✅ All modified and coverable lines are covered by tests. Additional details and impacted files@@ Coverage Diff @@
## master #34802 +/- ##
===========================================
+ Coverage 0 72.94% +72.94%
===========================================
Files 0 574 +574
Lines 0 42014 +42014
Branches 0 4427 +4427
===========================================
+ Hits 0 30646 +30646
- Misses 0 10188 +10188
- Partials 0 1180 +1180
Flags with carried forward coverage won't be shown. Click here to find out more. ☔ View full report in Codecov by Sentry. 🚀 New features to boost your workflow:
|
| ) | ||
|
|
||
| return super().get_default_schema_for_query(database, query) | ||
| return super().get_default_schema_for_query(database, query, template_params) |
There was a problem hiding this comment.
Why do we need to propagate template_params if we already do the jinja processing here? Is it for the table extraction method?
There was a problem hiding this comment.
The super API defines a parameter for template_params which is not used currently in the base implementation but could be used in the future.
| try: | ||
| return list( | ||
| extract_tables_from_jinja_sql( | ||
| process_jinja_sql( |
There was a problem hiding this comment.
<3 this approach. Process the Jinja then extract tables. Doesn't this also need the template params though?
There was a problem hiding this comment.
It would but this function looks to be only invoked from dead code that should be removed.
* fix: default value in run-server.sh (apache#34719) (cherry picked from commit 179a6f2) * fix: Check migration status before initializing database-dependent features (apache#34679) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit c568d46) * fix(dashboard): enable undo/redo buttons for layout changes (apache#34777) (cherry picked from commit ff1f7b6) * fix: Misaligned global controls in Table chart (apache#34799) (cherry picked from commit 6908a73) * fix: Remove border around textarea in dashboard edit mode (apache#34814) (cherry picked from commit da8c0f9) * fix: Low contrast in viz creator selected tag in dark mode (apache#34811) (cherry picked from commit 3895b8b) * fix(native-filters): Low contrast of empty state in dark mode (apache#34812) (cherry picked from commit 59c01e0) * fix(DetailsPanel): Applied filters colors (apache#34790) (cherry picked from commit 2b2cc96) * fix: customize column description limit size in db_engine_spec (apache#34808) (cherry picked from commit 75af53d) * fix: User-provided Jinja template parameters causing SQL parsing errors (apache#34802) (cherry picked from commit e1234b2) * fix(Icons): Add missing data-test and aria-label attributes to custom icons (apache#34809) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit 5c3c259) * fix(echarts): Series labels hard to read in dark mode (apache#34815) (cherry picked from commit 547f297) * fix: Unexpected overflow ellipsis dots after status icon in Dashboard list (apache#34798) (cherry picked from commit b225432) * chore: Add instruction for LLMs to use antd theme tokens (apache#34800) (cherry picked from commit c777957) * fix: make `get_image()` always return `BytesIO` (apache#34801) (cherry picked from commit 1204507) * fix(theming): explore chart type style fixes, nav right menu spacing fixed (apache#34795) (cherry picked from commit b381992) * fix: Add dataset ID to file name on exports (apache#34782) (cherry picked from commit 471d9fe) * fix: Avoid dataset drill request if no perm (apache#34665) (cherry picked from commit 9c9588c) * fix(sqllab): Missing executed sql value in the result table (apache#34846) (cherry picked from commit b89b0bd) * fix(dashboard): Anchor link positions (apache#34843) (cherry picked from commit 97b35a4) * fix: DB icon sizes in database add modal (apache#34854) (cherry picked from commit ab58b0a) * fix: Remove the underline from the right section of main menu (apache#34855) (cherry picked from commit b74a244) * fix(tests): Mock MessageChannel to prevent Jest hanging from rc-overflow (apache#34871) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit 836540e) * fix: Undefined error when viewing query in Explore + visual fixes (apache#34869) (cherry picked from commit 5566eb8) * fix: SelectControl default sort numeric choices by value (apache#34858) (cherry picked from commit 665a11f) * fix(tests): Improve MessageChannel mocking to prevent worker force exits (apache#34878) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit 7946ec0) * fix(ConfirmStatusChange): remove deprecated event.persist() to fix headless browser crashes (apache#34864) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit ebfb14c) * fix: Filter bar orientation submenu should not be highlighted (apache#34900) (cherry picked from commit e463743) * fix(drilling): drill by pagination works with MSSQL data source, cont. (apache#34724) (cherry picked from commit c5a84c0) * fix: Improve table layout and column sizing (apache#34887) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit 1758351) * fix: complete theme management system import/export (apache#34850) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit 4695be5) * fix(theming): fix TimeTable chart issues (apache#34868) (cherry picked from commit d183969) * fix: revert mistake setting TALISMAN_ENABLED=False (apache#34909) (cherry picked from commit bc9ec6a) * fix: Athena quoting (apache#34895) (cherry picked from commit fad3cb3) * fix(dashboard): table charts render correctly after tab switch and refresh (apache#34975) (cherry picked from commit 6a4b1df) * fix(TimeTable): use type-only export for TableChartProps to resolve webpack warnings (apache#34989) (cherry picked from commit 744fa1f) * fix: playwright feature flag evaluation (apache#34978) (cherry picked from commit b2f8803) * chore: bump FAB to 4.8.1 (apache#34838) (cherry picked from commit 54af1cb) * fix(ChartCreation): Translate chart description (apache#34918) (cherry picked from commit 5dba59b) * fix(echarts): Display NULL values in categorical x-axis for bar charts (apache#34761) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit 682cdcc) * fix(charts): Handle virtual dataset names without schema prefix correctly (apache#34760) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit b5ae402) * fix(databricks): string escaper v2 (apache#34991) (cherry picked from commit 0de5b28) * fix(error-handling): jinja2 error handling improvements (apache#34803) * fix(sqllab): autocomplete and delete tabs (apache#34781) (cherry picked from commit cefd046) * fix(ui-core): Invalid postTransform process (apache#34874) (cherry picked from commit 448a285) * fix(tests): resolve AlertReportModal checkmark test failures (apache#34995) * fix(deps): expand pyarrow version range to <19 (apache#34870) (cherry picked from commit 8406a82) * fix: doris genericDataType modify (apache#35011) (cherry picked from commit 2e51d02) * fix(RoleListEditModal): display user's other properties in table (apache#35017) (cherry picked from commit 59df0d6) * fix(theming): more visual bugs (apache#34987) (cherry picked from commit 569a7b3) * fix(sql): Add Impala dialect support to sqlglot parser (apache#34662) Co-authored-by: Claude <noreply@anthropic.com> Co-authored-by: Joe Li <joe@preset.io> (cherry picked from commit 7fb7ac8) * fix: display legend mixed timeseries chart (apache#35005) (cherry picked from commit 031fb4b) * fix(echarts): rename time series shifted for isTimeComparisonValue (apache#35022) (cherry picked from commit bc54b79) * fix(chart): change "No query." to "Query cannot be loaded" in Multi Layer Deck.gl Chart (apache#34973) (cherry picked from commit c65cb28) * fix: mixed timeseries chart add legend margin (apache#35036) (cherry picked from commit 5a3182c) * fix(theming): Icons in ExecutionLogList and Country map chart tooltip theme consistency (apache#34828) (cherry picked from commit bef1f4d) * fix(dashboard): normalize spacings and background colors (apache#35001) (cherry picked from commit 0fce5ec) * fix: Upload CSV as Dataset (apache#34763) (cherry picked from commit 1c2b9db) * fix(tests): one of integration test in TestSqlaTableModel does not support MySQL "concat" (apache#35007) Co-authored-by: Mehmet Salih Yavuz <salih.yavuz@proton.me> (cherry picked from commit 9efb80d) * fix(table): table search input placeholder (apache#35064) (cherry picked from commit c5f220a) * fix(Table Chart): render null dates properly (apache#34558) (cherry picked from commit 65376c7) * fix(timeshifts): Add missing feature flag to enum (apache#35072) (cherry picked from commit 912ed2b) * fix(drill-to-detail): ensure axis label filters map to original column names (apache#34694) Co-authored-by: bito-code-review[bot] <188872107+bito-code-review[bot]@users.noreply.github.com> (cherry picked from commit a7d349a) * fix(settingsMenu): Version (apache#35096) (cherry picked from commit 5a2411f) * fix(templates): Restores templates files accidentally removed (apache#35094) (cherry picked from commit 529adeb) * fix(theming): replace error color with bolt icon for local themes (apache#35090) (cherry picked from commit 7bf16d8) * fix(pie): fixes pie chart other click error (apache#35086) (cherry picked from commit b42060c) * fix: page size options 'all' correct in table and remove PAGE_SIZE_OPTIONS in handlebars (apache#35095) (cherry picked from commit 06261f2) * fix: SQL Lab tab events (apache#35105) (cherry picked from commit e729b2d) * fix: Bump FAB to 5.X (apache#33055) Co-authored-by: Joe Li <joe@preset.io> (cherry picked from commit a9fb853) * fix(theming): Lighter text colors on dark mode (apache#35114) (cherry picked from commit 95333e3) * fix(ListView): implement AntD pagination for ListView component (apache#35057) (cherry picked from commit 36daa2d) * fix: Remove emotion-rgba from dependencies and codebase (apache#35124) (cherry picked from commit 19ddcb7) * fix(deck.gl): restore legend display for Polygon charts with linear palette and fixed color schemes (apache#35142) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit fb840b8) * fix: import bug template params (apache#35144) (cherry picked from commit c193d6d) * fix(viz): resolve dark mode compatibility issues in BigNumber and Heatmap (apache#35151) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit 05c6a1b) * fix(embedded): resolve theme context error in Loading component (apache#35168) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit 1f530d4) * fix(CrudThemeProvider): Optimized theme loading logic (apache#35155) (cherry picked from commit 1bf112a) * fix(gantt-chart): fix Y-axis label visibility in dark theme (apache#35189) (cherry picked from commit 4130b92) * fix(Funnel): onInit overridden row_limit to default value on save chart (apache#35076) (cherry picked from commit 23bb4f8) * fix: Bump pandas to 2.1.4 for python 3.12 (apache#34999) (cherry picked from commit db178cf) * fix: bug in tooltip timeseries chart in calculated total with annotation layer (apache#35179) (cherry picked from commit 1e4bc6e) * fix(SQLPopover): Use correct component (apache#35212) (cherry picked from commit 076e477) * chore: bump sqlglot to 27.15.2 (apache#35176) (cherry picked from commit 5ec8f9d) * chore: Adds RC2 data to CHANGELOG.md * feat(bug): defensive code to avoid accesing attribute of a NoneType object (apache#35219) (cherry picked from commit 48e1b1f) * fix(table-chart): fix cell bar visibility in dark theme (apache#35211) (cherry picked from commit ce55cc7) * fix(ConditionalFormattingControl): icon color in dark mode (apache#35243) (cherry picked from commit c601341) * fix(dashboard): update header border to use colorBorder token (apache#35199) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit b6f6b75) * fix(Mixed Chart): Tooltip incorrectly displays numbers with optional Y-axis format and showQueryIdentifiers set to true (apache#35224) (cherry picked from commit ec322df) * fix(SQL Lab): syncTable on new tabs (apache#35216) (cherry picked from commit 94686dd) * fix(deck.gl): ensure min/max values are included in polygon map legend breakpoints (apache#35033) Co-authored-by: bito-code-review[bot] <188872107+bito-code-review[bot]@users.noreply.github.com> (cherry picked from commit 0de78d8) * fix(BuilderComponentPane): navigation tabs padding (apache#35213) (cherry picked from commit 7a9dbfe) * fix: Cosmetic issues (apache#35122) * fix(table): New ad-hoc columns retain the name of previous columns (apache#35274) (cherry picked from commit b652fab) * fix(DateFilterControl): remove modal overlay style to fix z-index issues (apache#35292) (cherry picked from commit 027b25e) * fix(sqllab): fix blank bottom section in SQL Lab left panel (apache#35309) (cherry picked from commit 784ff82) * fix(DatasourceModal): replace imperative modal updates with declarative state (apache#35256) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit 82e2bc6) * fix: AceEditor Autocomplete Highlight (apache#35316) (cherry picked from commit 90f281f) * fix(doris): Don't set supports_cross_catalog_queries to true (apache#35332) Co-authored-by: Beto Dealmeida <roberto@dealmeida.net> (cherry picked from commit ef78d2a) * feat: sqlglot dialect for Pinot (apache#35333) (cherry picked from commit 4e093a8) * fix: adhoc orderby in explore (apache#35342) (cherry picked from commit d51b35f) * fix(pinot): restrict types in dialect (apache#35337) (cherry picked from commit bf88d9b) * fix(SqlLab): Hit tableschemaview with a valid queryEditorId (apache#35341) (cherry picked from commit a66c230) * fix(explore): close unsaved changes modal when discarding changes (apache#35307) (cherry picked from commit d8688cf) * fix: table quoting in DBs with `supports_cross_catalog_queries=True` (apache#35350) (cherry picked from commit 13a164d) * fix(pinot): dialect date truncation (apache#35420) Co-authored-by: bito-code-review[bot] <188872107+bito-code-review[bot]@users.noreply.github.com> (cherry picked from commit aa97d2f) * fix(pinot): `DATE_ADD` function (apache#35424) (cherry picked from commit 5428376) * fix(slice): Fix using isdigit when id passed as int (apache#35452) (cherry picked from commit 449a89c) * fix(pinot): `DATE_SUB` function (apache#35426) (cherry picked from commit f334938) * fix(pinot): `SUBSTR` function (apache#35427) (cherry picked from commit 30021f8) * fix(dataset): sort by database in Dataset and Saved queries Issue (apache#35277) (cherry picked from commit fe8348c) * fix(dashboard): exit markdown edit mode when clicking outside of element (apache#35336) (cherry picked from commit 553204e) * fix(pinot): more functions (apache#35451) (cherry picked from commit 3202ff4) * fix(cache): ensure SQL is sanitized before cache key generation (apache#35419) (cherry picked from commit 62dc5c0) * fix(ag-grid-table): remove enterprise features to use community version (apache#35453) (cherry picked from commit 96170e4) * fix(theming): CRUD view padding (apache#35321) (cherry picked from commit 0e2fb1d) * fix(dashboard): Navigate to new dashboard when saved as a new one (apache#35339) (cherry picked from commit 891f826) * fix(sqlglot): adhoc expressions (apache#35482) (cherry picked from commit 139b5ae) * fix(security-manager): switch from deprecated get_session to session attribute (apache#35290) (cherry picked from commit 04b1a45) * fix(loading): improve loading screen theming for dark mode support (apache#35129) Co-authored-by: Claude <noreply@anthropic.com> * fix(Select): Prevent closing the select when clicking on a tag (apache#35487) (cherry picked from commit d39c55e) * fix(explore): correct search icon in dashboard submenu (apache#35489) (cherry picked from commit a7b158c) * fix: Support metric macro for embedded users (apache#35508) Co-authored-by: Beto Dealmeida <roberto@dealmeida.net> (cherry picked from commit 4545d55) * fix(webdriver): add missing options object to WebDriver initialization (apache#35504) (cherry picked from commit 77c3146) * fix: update chart with dashboards validation (apache#35523) (cherry picked from commit 9d50f1b) * fix(explore): Include chart canvases in the screenshot (apache#35491) (cherry picked from commit 89932fa) * fix(chart): Fixes BigNumber gradient appearing blackish in light mode (apache#35527) (cherry picked from commit f7b9d7a) * fix(charts): fix legend theming and hollow symbols in dark mode (apache#35123) (cherry picked from commit 7fd5a76) * fix: dataset update with invalid SQL query (apache#35543) (cherry picked from commit 50a5854) * fix(Alerts): Correct icon sizes (apache#35572) (cherry picked from commit 5a15c63) * fix(tables): Dark mode scrollbar styles for webkit (apache#35338) (cherry picked from commit 412587a) * fix(alerts): log execution_id instead of report schedule name in query timing (apache#35592) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit e437ae1) * fix(csv upload): Correctly casting to string numbers with floating points (e+) (apache#35586) (cherry picked from commit 17ebbdd) * fix(deckgl): scatterplot fix categorical color (apache#35537) * fix(d3-format): call setupFormatters synchronously to apply D3 format… (apache#35529) (cherry picked from commit c38ba1d) * fix: Log Celery task failures with a signal handler (apache#35595) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit ccc0e3d) * fix(theme): align "Clear local theme" option with other theme menu items (apache#35651) (cherry picked from commit 4b5629d) * fix(table-chart): fix page size label visibility and improve header control wrapping (apache#35648) (cherry picked from commit 58672df) * fix(theme-crud): enable overwrite confirmation UI for theme imports (apache#35558) (cherry picked from commit de1dd53) * fix(dataset): render default URL description properly in settings (apache#35669) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit f405174) * fix(auth): redirect anonymous attempts to view dashboard with next (apache#35345) * fix(charts): update axis title labels to sentence case (apache#35694) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit 9ab0a01) * fix(playwright): Download dashboard correctly (apache#35484) Co-authored-by: Erkka Tahvanainen <erkka.tahvanainen@confidently.fi> (cherry picked from commit d089a96) * fix(Actions): Improper spacing (apache#35724) (cherry picked from commit bad03b1) * fix(security): Add active property to guest user (apache#35454) (cherry picked from commit 98fba1e) * fix(ThemeController): replace fetch with SupersetClient for proper auth (apache#35794) (cherry picked from commit 7f0c0ae) * fix: edit dataset modal visual fixes (apache#35799) (cherry picked from commit 1234533) * fix(ag-grid): fix conditional formatting theme colors and module extensibility (apache#35605) (cherry picked from commit 5e4a80e) * docs(db_engine_specs): restructure feature table for GitHub rendering (apache#35809) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit 93cb60b) * fix(alerts): improve Slack API rate limiting for large workspaces (apache#35622) (cherry picked from commit c3b8c96) * fix(dashboard): handle invalid thumbnail BytesIO objects gracefully (apache#35808) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit 7c9720e) * fix: unpin holidays and prophet (apache#35771) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit 51aad52) * fix(database-modal): fix issue where commas could not be typed into DB configuration. (apache#35289) (cherry picked from commit 19473af) * fix(native-filters): prevent circular dependencies and improve dependency handling (apache#35317) (cherry picked from commit 0bf34d4) * fix(SqlLab): South pane visual changes (apache#35601) (cherry picked from commit 6e60a00) * fix(sqllab): Fix CSV export button href in SQL Lab when application root is defined (apache#35118) (cherry picked from commit 6704c0a) * fix(theme): add fontWeightStrong to allowedAntdTokens to fix bold markdown rendering (apache#35821) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit bf830b2) * fix: update Russian translations (apache#35750) (cherry picked from commit 61758c0) * fix(echarts): fix time shift color matching functionality (apache#35826) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit 5218b4e) * fix(reports): Add celery task execution ID to email notification logs (apache#35807) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit 61c68f7) * fix: add utc=True to pd.to_datetime for timezone-aware datetimes (apache#35587) (cherry picked from commit 5c57c9c) * fix: displaying cell bars in table (apache#35885) (cherry picked from commit dd857a2) * chore: bump shillelagh to 1.4.3 (apache#35895) (cherry picked from commit 5fc934d) * fix: set pandas 2.1 as requirement (apache#35912) (cherry picked from commit f6f15f5) * fix(db2): update time grain expressions for DAY to use DATE function (apache#35848) (cherry picked from commit 30d584a) * fix(explore): formatting the SQL in "View Query" pop-up doesn't format (apache#35898) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit be3690c) * fix(sqllab): align refresh buttons with select input fields (apache#35917) (cherry picked from commit 27011d0) * test(useThemeMenuItems): fix race conditions by awaiting all userEvent calls (apache#35918) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit 5224347) * fix(DatasourceEditor): preserve calculated column order when editing sql (apache#35790) (cherry picked from commit 7265567) * fix(dashboard): fix dataset search in filter config modal (apache#35488) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit 53687ae) * fix(TimeTable): Match calculations between filtered and non filtered states (apache#35619) (cherry picked from commit 04231c8) * fix(explore): Overwriting a chart updates the form_data_key (apache#35888) (cherry picked from commit 3f49938) * fix(DatabaseModal): prevent errors when pasting text into supported database select (apache#35916) (cherry picked from commit 1f960d5) * fix(chart list): Facepile shows correct users when saving chart properties (apache#33392) (cherry picked from commit 14f20e6) * fix(view-in-sqllab): unable to open virtual dataset after discarding chart edits (apache#35931) (cherry picked from commit 392b880) * fix(SelectFilterPlugin): clear all clears all filters including dependent ones (apache#35303) (cherry picked from commit af37e12) * fix(UI): spacings + UI fixes (apache#36010) (cherry picked from commit c11be72) * fix(Context-Menu): Fixing Context Menu for Table Chart with Html Content (apache#33791) (cherry picked from commit 0307c71) * fix: Ensure that Playwright tile height is always positive (apache#36027) (cherry picked from commit 728bc2c) * fix(echarts): Series style hidden for line charts (apache#33677) Co-authored-by: Vedant Prajapati <vedantprajapati@geotab.com> Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit 258512f) * fix(filters): preserve backend metric-based sorting (apache#35152) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit 909bd87) * fix(reports): improve error handling for report schedule execution (apache#35800) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit c42e3c6) * fix(date_parser): add check for time range timeshifts (apache#36039) (cherry picked from commit c9f65cf) * fix: Flakiness around scrolling during taking tiled screenshots with Playwright (apache#36051) (cherry picked from commit 63dfd95) * fix(explore): show validation errors in View Query modal (apache#35969) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit 21d585d) * fix(permalink): exclude edit mode from dashboard permalink (apache#35889) (cherry picked from commit e2e831e) * fix: saved query preview modal not highlighting active rows (apache#35866) (cherry picked from commit 4376476) * fix(sqllab): prevent unwanted tab switching when autocompleting table names on SQL Lab (apache#35992) (cherry picked from commit 9fbfcf0) * fix(dashboard): align filter bar elements vertically in horizontal mode (apache#36036) (cherry picked from commit d123249) * fix(dashboard): dashboard filter was incorrectly showing as out of scope (apache#35886) Co-authored-by: Mehmet Salih Yavuz <salih.yavuz@proton.me> (cherry picked from commit a45c052) * fix: fix tabs overflow in dashboards (apache#35984) (cherry picked from commit bb2e2a5) * fix(sql): quote column names with spaces to prevent SQLGlot parsing errors (apache#35553) (cherry picked from commit 306f4c1) * fix(navbar): Minor fixes in navbar spacings (apache#36091) (cherry picked from commit 4515d18) * fix: Use singlestoredb dialect for sqlglot (apache#36096) (cherry picked from commit 6701d0a) * fix(explore): re-apply filters when 'Group remaining as Others' is enabled (apache#35937) (cherry picked from commit 4a04d46) * fix(dashboard): refresh tabs as they load when dashboard is refreshed (apache#35265) (cherry picked from commit 74a590c) * fix(dashboard): prevent tab content cutoff and excessive whitespace in empty tabs (apache#35834) (cherry picked from commit 78f9deb) * fix(chart): align legend with chart grid in List mode for Top/Bottom orientations (apache#36077) (cherry picked from commit 37d58a4) * fix(ace-editor-popover): main AntD popover closes when clicking autocomplete suggestions in Ace Editor (apache#35986) (cherry picked from commit 9ef87e7) * fix: RLS in virtual datasets (apache#36061) (cherry picked from commit f3e620c) * fix(histogram): add NULL handling for histogram (apache#35693) Co-authored-by: Rachel Pan <r.pan@mail.utoronto.ca> Co-authored-by: Rachel Pan <panrrachel@gmail.com> Co-authored-by: Janani Gurram <68124448+JG-ctrl@users.noreply.github.com> Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com> (cherry picked from commit c955a5d) * fix: save button was enabled even no changes were made to the dashboard (apache#35817) * fix(table-chart): fix missing table header IDs (apache#35968) Co-authored-by: Claude <noreply@anthropic.com> * fix: opacity color formating (apache#36101) * fix: fix crossfilter persisting after removal (apache#35998) (cherry picked from commit 85413f2) * fix(dashboard): ensure world map chart uses correct country code format in crossfilter (apache#35919) (cherry picked from commit fb8eb2a) * fix(navbar): some styling + components inconsistencies (apache#36120) (cherry picked from commit 9bff648) * fix(datasets): prevent double time filter application in virtual datasets (apache#35890) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit 3b22603) * fix(tags): ensure tag creation is compatible with MySQL by avoiding Markup objects (apache#36075) Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com> (cherry picked from commit 28bdec2) * fix(translations): Fix Russian translations for EmptyState (apache#34055) Co-authored-by: Polina Fam <pfam@ptsecurity.com> (cherry picked from commit fb325a8) * fix: 'save and go to dashboard' option was disabled after changing the chart type (apache#36122) (cherry picked from commit a9fd600) * fix(cache): apply dashboard filters to non-legacy visualizations (apache#36109) (cherry picked from commit 8315804) * fix: role list edit modal height (apache#36123) (cherry picked from commit 43e9e1e) * fix(datasets): prevent viewport overflow in dataset creation page (apache#36166) (cherry picked from commit a268232) * fix(dashboard): ensure charts re-render when visibility state changes (apache#36011) (cherry picked from commit 4582f0e) * chore(docs): config Kapa to use logo from the repo (apache#36177) (cherry picked from commit cdbd5bf) * chore: bump duckdb et al. (apache#36171) (cherry picked from commit 5320730) * chore: update changelog for 6.0.0rc3 * fix(dashboard): adjust vertical spacing for numerical range filter to prevent overlaps (apache#36167) (cherry picked from commit 6d35916) * fix(sqllab): validate results backend writes and enhance 410 diagnostics (apache#36222) (cherry picked from commit 348b19c) * fix: adhoc column quoting (apache#36215) (cherry picked from commit e303537) * fix(screenshots): Only cache thumbnails when image generation succeeds (apache#36126) Co-authored-by: Claude <noreply@anthropic.com> (cherry picked from commit 08c1d03) * fix: Extra controls width for Area Chart on dashboards (apache#36133) Co-authored-by: Diego Pucci <diegopucci.me@gmail.com> (cherry picked from commit cac6ffc) * fix: Table chart types headers are offset from the columns in the table (apache#36190) Co-authored-by: Diego Pucci <diegopucci.me@gmail.com> (cherry picked from commit ab8352e) * fix: Columns bleeding into other cells (apache#36134) Co-authored-by: Diego Pucci <diegopucci.me@gmail.com> Co-authored-by: Geidō <60598000+geido@users.noreply.github.com> (cherry picked from commit 062e4a2) * fix: remove unwanted info from tags REST API (apache#36266) (cherry picked from commit cd36845) * fix(log): remove unwanted info from logs REST API (apache#36269) (cherry picked from commit bae716f) * feat(controlPanel): add integer validation for rows per page setting (apache#36289) (cherry picked from commit 01f0320) * fix: `is_column_reference` check (apache#36382) (cherry picked from commit d05ab91) * fix(SQLLab): most recent queries at the top in Query History without refreshing the page (apache#36359) (cherry picked from commit 62d86ab) * chore: update changelog for 6.0.0rc4 * SUP-141 - unit test fix * SUP-141 - feat - unit test fix * SUP-141 : feat - test cases update * SUP-141 : feat -precommit * SUP-141 : feat - build fix * SUP-141 - : feat - dockerfile update * SUP-141 : feat - build update * SUP-141 - Trigger build * SUP-141 - Trigger build * SUP-141: feat - localise disabled * SUP-141 : feat - disabled ForkTsCheckerWebpackPlugin * SUP-141 : feat - title translation fix * SUP-141 : v6 : granularity fix * SUP-141 : feat - titles * SUP-141 : chore - build trigger * SUP-141 : feat - workflow update * SUP-142 : v6 - translation changes (#118) * SUP-142 : feat - translation changes * SUP-142 : feat - translation fixes * SUP-142 : feat - test * SUP-142 : feat - label revert * SUP-142 : feat - translations * SUP-142 : feat - translation check * SUP-142 : feat - workflow fix * SUP-142 : feat - workflow fix * SUP-142 : feat - workflow update * SUP-142 : feat - pr comments * SUP-142 : feat - dependency workflow * UI-142 : feat - dependency review * SUP-142 : feat - cursor comment * SUP-142 : feat - pr comments * SUP-142 : feat - Hardcoded translation fix * SUP-142 : feat - translation fix --------- Co-authored-by: Tomáš Karela Procházka <tomas.prochazka5d@gmail.com> Co-authored-by: Maxime Beauchemin <maximebeauchemin@gmail.com> Co-authored-by: Claude <noreply@anthropic.com> Co-authored-by: Gabriel Torres Ruiz <gabo2595@gmail.com> Co-authored-by: Kamil Gabryjelski <kamil.gabryjelski@gmail.com> Co-authored-by: Mehmet Salih Yavuz <salih.yavuz@proton.me> Co-authored-by: JUST.in DO IT <justin.park@airbnb.com> Co-authored-by: Michael S. Molina <70410625+michael-s-molina@users.noreply.github.com> Co-authored-by: Joe Li <joe@preset.io> Co-authored-by: Beto Dealmeida <roberto@dealmeida.net> Co-authored-by: Rafael Benitez <rebenitez1802@gmail.com> Co-authored-by: Vitor Avila <96086495+Vitor-Avila@users.noreply.github.com> Co-authored-by: Sam Firke <sfirke@users.noreply.github.com> Co-authored-by: Daniel Vaz Gaspar <danielvazgaspar@gmail.com> Co-authored-by: Evan Rusackas <evan@preset.io> Co-authored-by: sha174n <105581038+sha174n@users.noreply.github.com> Co-authored-by: catpineapple <catpineapple1122@gmail.com> Co-authored-by: SBIN2010 <132096459+SBIN2010@users.noreply.github.com> Co-authored-by: Damian Pendrak <dpendrak@gmail.com> Co-authored-by: Luiz Otavio <45200344+luizotavio32@users.noreply.github.com> Co-authored-by: Nicolas <48596976+nicob3y@users.noreply.github.com> Co-authored-by: LisaHusband <100658244+LisaHusband@users.noreply.github.com> Co-authored-by: bito-code-review[bot] <188872107+bito-code-review[bot]@users.noreply.github.com> Co-authored-by: Priyanshu Kumar <110410015+cbum-dev@users.noreply.github.com> Co-authored-by: Elizabeth Thompson <eschutho@gmail.com> Co-authored-by: marun <marunrun@163.com> Co-authored-by: Levis Mbote <111055098+LevisNgigi@users.noreply.github.com> Co-authored-by: Pat Buxton <45275736+rad-pat@users.noreply.github.com> Co-authored-by: SBIN2010 <Sbin2010@mail.ru> Co-authored-by: Giulio Piccolo <gpiccolo@suitsupply.com> Co-authored-by: Geidō <60598000+geido@users.noreply.github.com> Co-authored-by: Antonio Rivero <38889534+Antonio-RiveroMartnez@users.noreply.github.com> Co-authored-by: amaannawab923 <amaannawab923@gmail.com> Co-authored-by: Tran Ngoc Tuan <94174684+tuantran0910@users.noreply.github.com> Co-authored-by: Amin Ghadersohi <amin.ghadersohi@gmail.com> Co-authored-by: innovark <eric.graham@mailfence.com> Co-authored-by: yousoph <sophieyou12@gmail.com> Co-authored-by: Erkka Tahvanainen <59445256+tahvane1@users.noreply.github.com> Co-authored-by: Erkka Tahvanainen <erkka.tahvanainen@confidently.fi> Co-authored-by: Richard Fogaca Nienkotter <63572350+richardfogaca@users.noreply.github.com> Co-authored-by: Marcos Amorim <marcosmamorim@gmail.com> Co-authored-by: ngokturkkarli <95430378+ngokturkkarli@users.noreply.github.com> Co-authored-by: Martyn Gigg <martyn.gigg@gmail.com> Co-authored-by: Ville Brofeldt <33317356+villebro@users.noreply.github.com> Co-authored-by: Yuvraj Singh Chauhan <133221941+ysinghc@users.noreply.github.com> Co-authored-by: Enzo Martellucci <52219496+EnxDev@users.noreply.github.com> Co-authored-by: ethan-l-geotab <165913720+ethan-l-geotab@users.noreply.github.com> Co-authored-by: Vedant Prajapati <40185967+vedantprajapati@users.noreply.github.com> Co-authored-by: Vedant Prajapati <vedantprajapati@geotab.com> Co-authored-by: Janani Gurram <68124448+janani-gurram@users.noreply.github.com> Co-authored-by: Rachel Pan <r.pan@mail.utoronto.ca> Co-authored-by: Rachel Pan <panrrachel@gmail.com> Co-authored-by: Janani Gurram <68124448+JG-ctrl@users.noreply.github.com> Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com> Co-authored-by: Yong Le He <76537485+yong1le@users.noreply.github.com> Co-authored-by: PolinaFam <45046398+PolinaFam@users.noreply.github.com> Co-authored-by: Polina Fam <pfam@ptsecurity.com> Co-authored-by: Diego Pucci <diegopucci.me@gmail.com> Co-authored-by: om pharate <72200400+ompharate@users.noreply.github.com> Co-authored-by: Felipe López <felipe.lopezf@ucu.edu.uy>
* fix(sqllab): Missing allowHTML props in ResultTableExtension (apache#31960) * chore: replace selenium user with fixed user (apache#31844) * chore: Empty state refactor (apache#31860) * chore: fix `tsc` errors (apache#31965) Signed-off-by: hainenber <dotronghai96@gmail.com> * fix: proper URL building (apache#31962) * chore(build): enforce eslint rule banning antd imports outside of core Superset components (apache#31963) Co-authored-by: Maxime Beauchemin <maximebeauchemin@gmail.com> * fix(verbose map): Correct raw metrics handling in verbose map (apache#29417) * chore(deps): bump react-transition-group and @types/react-transition-group in /superset-frontend (apache#31547) Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> * chore: refactor Alert-related components (apache#31858) * refactor: Removes the legacy dataset editor (apache#31976) * chore: Add FYND to INTHEWILD.md (apache#31980) * refactor(Shared_url_query): Fix shared query URL access for SQL Lab users. (apache#31421) * feat: run prettier before eslint in pre-commit hooks (apache#31984) * refactor: Remove CSV upload size limit and related validation (apache#32000) * chore(fe): correct typing for sheetsColumnNames (apache#32007) Signed-off-by: hainenber <dotronghai96@gmail.com> * refactor: upload data unification, less permissions and less endpoints (apache#31959) * fix(sqllab): tab layout truncated (apache#32005) * refactor: Upgrade to React 17 (apache#31961) * chore: add UPDATING note for CSV_UPLOAD_MAX_SIZE removal (apache#32013) * chore: Removing DASHBOARD_CROSS_FILTERS flag and all that comes with it. (apache#31794) Co-authored-by: Kamil Gabryjelski <kamil.gabryjelski@gmail.com> * feat: add date format to the email subject (apache#31413) Co-authored-by: Steven Liu <steven.l@covergenius.com> * chore(Network Errors): Update network errors on filter bars and charts (apache#31811) Co-authored-by: Geido <60598000+geido@users.noreply.github.com> * fix: Reordering echart props to fix confidence interval in Mixed Charts (apache#30716) Co-authored-by: Vedant Prajapati <40185967+vedantprajapati@users.noreply.github.com> * fix(issue apache#31927): TimeGrain.WEEK_STARTING_MONDAY (apache#32015) * feat(fe): upgrade `superset-frontend` to Typescript v5 (apache#31979) Signed-off-by: hainenber <dotronghai96@gmail.com> Co-authored-by: Michael S. Molina <70410625+michael-s-molina@users.noreply.github.com> * fix: Filters badge disappeared (apache#32025) * fix(ci): change ephemeral env to use github labels instead of comments (apache#31340) * fix: eph env + improve docker images to run in userspace (apache#32017) * fix: re-enable cypress checks (apache#32008) * fix: Revert "fix: re-enable cypress checks" (apache#32045) * fix(fe/explore): prevent runtime error when editing Dataset-origin Chart with empty title (apache#32031) Signed-off-by: hainenber <dotronghai96@gmail.com> * chore: Skip the creation of secondary perms during catalog migrations (apache#32043) * feat(sqllab): Replace FilterableTable by AgGrid Table (apache#29900) * chore: Add more database-related tests (follow up to apache#31948) (apache#32054) * fix(DatePicker): Increase z-index over Modal (apache#32061) * refactor(Radio): Upgrade Radio Component to Ant Design 5 (apache#32004) * chore: Re-enable asnyc event API tests (apache#32062) * feat(sqllab): improve table metadata UI (apache#32051) * fix(thumbnail cache): Enabling force parameter on screenshot/thumbnail cache (apache#31757) Co-authored-by: Kamil Gabryjelski <kamil.gabryjelski@gmail.com> * fix: enforce `ALERT_REPORTS_MAX_CUSTOM_SCREENSHOT_WIDTH` (apache#32053) * feat: add connector for Parseable (apache#32052) * fix: Histogram examples config (apache#32122) * fix(datepicker): Full width datepicker on filter value select (apache#32064) (cherry picked from commit cde2d49) * fix(ci): ephemeral env, handle different label, create comment (apache#32040) (cherry picked from commit 0cd0fcd) * fix: No virtual environment when running Docker translation compiler (apache#32133) (cherry picked from commit 53d944d) * chore: Adds RC1 data to CHANGELOG.md and UPDATING.md * chore(timeseries charts): adjust legend width by padding (apache#32030) (cherry picked from commit 8984f88) * fix: Local tarball Docker container is missing zstd dependency (apache#32135) (cherry picked from commit c64018d) * fix: move oauth2 capture to `get_sqla_engine` (apache#32137) (cherry picked from commit c7c3b1b) * fix(releasing): fix borked SVN-based image building process (apache#32151) Signed-off-by: hainenber <dotronghai96@gmail.com> (cherry picked from commit ea5879b) * fix(migrations): Handle no params in time comparison migration (apache#32155) (cherry picked from commit 6ed9dae) * fix: ScreenshotCachePayload serialization (apache#32156) (cherry picked from commit e8990f4) * fix(docker): Docker python-translation-build (apache#32163) (cherry picked from commit 5a8488a) * fix(virtual dataset sync): Sync virtual dataset columns when changing the SQL query (apache#30903) Co-authored-by: Kamil Gabryjelski <kamil.gabryjelski@gmail.com> (cherry picked from commit f3e7c64) * fix(sqllab): correct URL format for SQL Lab permalinks (apache#32154) (cherry picked from commit f9f8c5d) * fix: Adds an entry to UPDATING.md about DISABLE_LEGACY_DATASOURCE_EDITOR (apache#32185) * fix: TDengine move tdengine.png to databases/ subfolder (apache#32176) (cherry picked from commit 06f8f8e) * fix: handlebars html and css templates reset on dataset update (apache#32195) (cherry picked from commit 0f6bd5e) * fix: hidrate datasetsStatus (apache#32211) (cherry picked from commit eec54af) * fix(SaveDatasetModal): repairs field alignment in the SaveDatasetModal component (apache#32222) Co-authored-by: Geido <60598000+geido@users.noreply.github.com> (cherry picked from commit 650fa5c) * fix: set `Rich tooltip` -> 'Show percentage' to false by default (apache#32212) (cherry picked from commit d3b854a) * fix(sqllab): close the table tab (apache#32224) (cherry picked from commit 937d40c) * fix(Scope): Correct issue where filters appear out of scope when sort is unchecked. (apache#32115) (cherry picked from commit af3589f) * chore(ci): fix ephemeral env null issue number (apache#32220) (cherry picked from commit 60424c4) * chore(ci): fix ephemeral env null issue number (v2) (apache#32221) (cherry picked from commit 31d6f5a) * fix: Update 'Last modified' time when modifying RLS rules (apache#32227) Co-authored-by: Fardin Mustaque <fardinmustaque@Fardins-Mac-mini.local> (cherry picked from commit 52563d3) * docs: adding notes about using uv instead of raw pip (apache#32239) * fix: remove sort values on stacked totals (apache#31333) (cherry picked from commit 15fbb19) * fix: upgrade to 3.11.11-slim-bookworm to address critical vulnerabilities (apache#32240) (cherry picked from commit ad05732) * fix(Datasource): handle undefined datasource_type in fetchSyncedColumns (apache#32218) Co-authored-by: Erkka Tahvanainen <erkka.tahvanainen@confidently.fi> (cherry picked from commit 9da3095) * fix: Decimal values for Histogram bins (apache#32253) (cherry picked from commit ffe9244) * fix(viz/table): selected column not shown in Conditional Formatting popover (apache#32272) Signed-off-by: hainenber <dotronghai96@gmail.com> (cherry picked from commit dcc9628) * fix: keep the tab order (apache#30888) Co-authored-by: Steven Liu <steven.l@covergenius.com> (cherry picked from commit d5a5bd4) * fix: Download as PDF fails due to cache error (apache#32332) (cherry picked from commit 42a3c52) * fix: oauth2 trino (apache#31993) (cherry picked from commit 7ce1a34) * fix: revert "fix: remove sort values on stacked totals (apache#31333)" (apache#32337) (cherry picked from commit 422a07b) * fix(fe/dashboard-list): display modifier info for `Last modified` data (apache#32035) Signed-off-by: hainenber <dotronghai96@gmail.com> (cherry picked from commit 88cf2d5) * fix(roles): Add SqlLabPermalinkRestApi as default sqlab roles. (apache#32284) (cherry picked from commit 2c37ddb) * fix(SSHTunnelForm): make the password tooltip visible (apache#32356) (cherry picked from commit 4c4b5e8) * fix(firebolt): allow backslach escape for single quotes (apache#32350) (cherry picked from commit 22fe985) * fix(docker): Configure nginx for consistent port mapping and hot reloading (apache#32362) (cherry picked from commit 0f07d78) * fix: clickhouse-connect engine SSH parameter (apache#32348) (cherry picked from commit 8dcae81) * fix: ensure metric_macro expands templates (apache#32344) * fix: bump FAB to 4.5.4 (apache#32325) (cherry picked from commit c02a0a0) * fix(pinot): revert join and subquery flags (apache#32382) (cherry picked from commit 822d72c) * fix(viz): update nesting logic to handle multiple dimensions in PartitionViz (apache#32290) (cherry picked from commit 6317a91) * fix(clickhouse): get_parameters_from_uri failing when secure is true (apache#32423) (cherry picked from commit 84b52b2) * fix(com/grid-comp/markdown): pin `remark-gfm` to v3 to allow inline code block by backticks in Markdown (apache#32420) Signed-off-by: hainenber <dotronghai96@gmail.com> * fix(plugin-chart-echarts): remove erroneous upper bound value (apache#32473) (cherry picked from commit 5766c36) * fix(tooltip): displaying <a> tags correctly (apache#32488) (cherry picked from commit 6c3886a) * fix: skip DB filter when doing OAuth2 (apache#32486) (cherry picked from commit 813e79f) * fix: dashboard, chart and dataset import validation (apache#32500) (cherry picked from commit fc844d3) * fix(explore): Glitch in a tooltip with metric's name (apache#32499) (cherry picked from commit b3dfd49) * fix(beat): prune_query celery task args fix (apache#32511) (cherry picked from commit e98194c) * fix(Slack): Fix Slack recipients migration to V2 (apache#32336) (cherry picked from commit d2e0e2b) * fix: Show response message as default error (apache#32507) (cherry picked from commit c2de749) * fix: keep calculated columns when datasource is updated (apache#32523) (cherry picked from commit 99238dc) * fix(migrations): Handle comparator None in old time comparison migration (apache#32538) (cherry picked from commit 20e5df5) * fix(sqllab): Allow clear on schema and catalog (apache#32515) (cherry picked from commit 4c3aae7) * fix: add DateOffset to json serializer (apache#32532) * fix: Log table retention policy (apache#32572) (cherry picked from commit 89b6d7f) * fix(Slack V2): Specify the filename for the Slack upload method (apache#32599) (cherry picked from commit 8e021b0) * fix(dashboard): Support bigint value in native filters (apache#32549) (cherry picked from commit e7721a8) * fix(welcome): perf on distinct recent activities (apache#32608) (cherry picked from commit 832e028) * fix: Upgrade node base image to Debian 12 bookworm (apache#32652) (cherry picked from commit 2f6f5c6) * fix(dashboard): Ensure `dashboardId` is included in `form_data` for embedded mode (apache#32646) (cherry picked from commit 777760b) * fix(import): Import a DB connection with expanded rows enabled (apache#32657) (cherry picked from commit 0c6d868) * fix(gsheets): update params from encrypted extra (apache#32661) * fix: Update RELEASING/README.md (apache#32678) (cherry picked from commit b4dd64a) * fix(log): Update recent_activity by event name (apache#32681) (cherry picked from commit 449f51a) * fix: Signature of Celery pruner jobs (apache#32699) (cherry picked from commit df06bdf) * fix(cosmetics): allow toast message to be toggled off when modal is opened (apache#32691) Signed-off-by: hainenber <dotronghai96@gmail.com> (cherry picked from commit f1a222d) * fix(spreadsheet uploads): make file extension comparisons case-insensitive (apache#32696) (cherry picked from commit 6a13ab8) * fix: boolean filters in Explore (apache#32701) (cherry picked from commit 41bf215) * fix(logging): missing path in event data (apache#32708) (cherry picked from commit cd5a943) * fix: coerce datetime conversion errors (apache#32683) * fix(import): Ensure import exceptions are logged (apache#32410) (cherry picked from commit bc3e19d) * fix: ensure datasource permission in explore (apache#32679) (cherry picked from commit 9e30529) * fix(contextmenu): uncaught TypeError (apache#28203) (cherry picked from commit 29b62f7) * fix: Changing language doesn't affect echarts charts (apache#31751) Co-authored-by: Giampaolo Capelli <giampaolo.capelli@docaposte.fr> (cherry picked from commit 78efb62) * fix: do not add calculated columns when syncing (apache#32761) (cherry picked from commit 89ce7ba) * fix(chart control): Change default of "Y Axis Title Margin" (apache#32720) (cherry picked from commit d319543) * fix(sqllab): Pass query_id as kwarg so backoff can see it (apache#32774) (cherry picked from commit 01801e3) * fix(import): Missing catalog field in saved query schema (apache#32775) Co-authored-by: Vladislav Koren'kov <korenkov.vv@dns-shop.ru> (cherry picked from commit 5866f3e) * fix(css): typos in styles (apache#28350) (cherry picked from commit 5ec710e) * fix(config): correct slack image url in talisman (apache#32778) (cherry picked from commit 9bb3a57) * fix(excel export): big number truncation handling (apache#32739) (cherry picked from commit c0f83a7) * fix(model/helper): represent RLS filter clause in proper textual SQL string (apache#32406) Signed-off-by: hainenber <dotronghai96@gmail.com> (cherry picked from commit ff0529c) * fix(sec): resolve CVE-2025-29907 and CVE-2025-25977 by pinning `jspdf` to v3 (apache#32802) Signed-off-by: hainenber <dotronghai96@gmail.com> * fix: CSV/Excel upload form change column dates description (apache#32797) * fix: key error in frontend on disallowed GSheets (apache#32792) (cherry picked from commit 6f69c84) * fix: Time Comparison Feature Reverts Metric Labels to Metric Keys in Table Charts (apache#32665) Co-authored-by: Fardin Mustaque <fardinmustaque@Fardins-Mac-mini.local> (cherry picked from commit 7d77dc4) * fix(log): store navigation path to get correct logging path (apache#32795) (cherry picked from commit 4a70065) * fix(echarts): Sort series by name using naturalCompare (apache#32850) (cherry picked from commit 5222f94) * fix: update dataset/query catalog on DB changes (apache#32829) * fix(translation): Dutch translations for Current datetime filter (apache#31869) (cherry picked from commit 6c7f089) * fix(table-chart): Do not show comparison columns config if time_compare is set to [] (apache#32863) (cherry picked from commit f0dc1e7) * fix(ColorPickerControl): change color picker control width (apache#32851) (cherry picked from commit 37f626f) * fix: use role_model from security manager (apache#32873) (cherry picked from commit 103feda) * fix(backend/async_events): allow user to configure username for Redis authentication in GLOBAL_ASYNC_QUERIES_CACHE_BACKEND (apache#32372) Signed-off-by: hainenber <dotronghai96@gmail.com> Co-authored-by: Ville Brofeldt <33317356+villebro@users.noreply.github.com> (cherry picked from commit e0ed652) * fix(Jinja): Emit time grain to table charts even if they don't have a temporal column (apache#32871) (cherry picked from commit ab22bb1) * fix(sqllab): Invalid display of table column keys (apache#32763) (cherry picked from commit 56bf17f) * chore: Adds RC2 data to CHANGELOG.md * chore(🦾): bump python sqlglot 26.1.3 -> 26.11.1 (apache#32745) Co-authored-by: GitHub Action <action@github.com> (cherry picked from commit 66c1a6a) * fix: Clicking in the body of a Markdown component does not put it into edit mode (apache#32384) (cherry picked from commit 26743df) * fix(pivot-table): Revert "fix(Pivot Table): Fix column width to respect currency config (apache#31414)" (apache#32968) (cherry picked from commit a36e636) * fix: fixed Add Metrics to Tree Chart (apache#29158) (apache#30679) (cherry picked from commit f5d6417) * fix: Bar Chart (legacy) migration to keep labels layout (apache#32965) (cherry picked from commit 24b1666) * fix: `show_filters` URL parameter is not working (apache#29422) Co-authored-by: Evan Rusackas <evan@preset.io> Co-authored-by: Vitor Avila <vitor.avila@preset.io> (cherry picked from commit bcb4332) * fix(dashboard): chart fullscreen issue when filter pane is collapsed (apache#28428) (cherry picked from commit 629b137) * fix: fix bug where dashboard did not enter fullscreen mode. (apache#32839) * fix(log): Missing failed query log on async queries (apache#33024) (cherry picked from commit 9b15e04) * fix(export): charts csv export in dashboards (apache#31720) (cherry picked from commit 6b7394e) * fix: improve error type on parse error (apache#33048) (cherry picked from commit ed0cd5e) * fix: Adds missing __init__ file to commands/logs (apache#33059) (cherry picked from commit c1159c5) * fix(docker): fallback to pip if uv is not available (apache#33087) (cherry picked from commit 164a07e) * fix(dashboard): Generate screenshot via celery (apache#32193) Co-authored-by: Erkka Tahvanainen <erkka.tahvanainen@confidently.fi> (cherry picked from commit 5656d69) * fix(thumbnails): ensure consistent cache_key (apache#33109) (cherry picked from commit 347c174) * fix: Allows configuration of Selenium Webdriver binary (apache#33103) (cherry picked from commit e1f5c49) * fix: resolve recent merge collisio (apache#33110) * fix: Bump FAB to 4.5.5 * fix(playwright): allow screenshotting empty dashboards (apache#33107) (cherry picked from commit 2233c02) * fix: Viz migration error handling (apache#33037) (cherry picked from commit bc0ffe0) * fix(dashboard): invalid active tab state (apache#33106) (cherry picked from commit 342e6f3) * fix(lang): patch FAB's LocaleView to redirect to previous page (apache#31692) * fix(echart): Tooltip date format doesn't follow time grain (apache#33138) (cherry picked from commit 7333ffd) * fix(echart): Thrown errors shown after resized (apache#33143) (cherry picked from commit 172e5dd) * fix: os.makedirs race condition (apache#33161) (cherry picked from commit 00f1fdb) * fix(deckgl): Update Arc to properly adjust line width (apache#33154) (cherry picked from commit b589d44) * fix(sqllab): Invalid SQL Error breaks SQL Lab (apache#33164) * fix(export): Full CSV/Excel exports respecting SQL_MAX_ROW config (apache#33214) (cherry picked from commit f7b7aac) * fix(antd): Invalid dashed border in tertiary button (apache#33291) * fix(standalone): Ensure correct URL param value for standalone mode (apache#33234) * fix(sqllab permalink): Commit SQL Lab permalinks (apache#33237) (cherry picked from commit fbd8ae2) * fix(heatmap): correctly render int and boolean falsy values on axes (apache#33238) (cherry picked from commit ac636c7) * fix(DB update): Gracefully handle querry error during DB update (apache#33250) (cherry picked from commit de84a53) * fix(histogram): remove extra single quotes (apache#33248) (cherry picked from commit d2360b5) * fix: LocalProxy is not mapped warning (apache#33025) (cherry picked from commit c029b53) * fix: mask password on DB import (apache#33267) * fix(echarts): rename time series shifted colnames (apache#33269) (cherry picked from commit ef14b52) * fix: improve function detection (apache#33306) (cherry picked from commit 339ba96) * fix: Temporal filter conversion in viz migrations (apache#33224) (cherry picked from commit 6db3a4d) * fix: Edge case with metric not getting quoted in sort by when normalize_columns is enabled (apache#33337) (cherry picked from commit 9f0ae77) * chore(🦾): bump python h11 0.14.0 -> 0.16.0 (apache#33339) Co-authored-by: GitHub Action <action@github.com> (cherry picked from commit 8252686) * fix(i18n): zh_TW pybabel compile error: placeholders are incompatible (apache#33345) * fix(be/utils): sync cache timeout for memoized function (apache#31917) Signed-off-by: hainenber <dotronghai96@gmail.com> (cherry picked from commit 4ed05f4) * fix: loading examples from raw.githubusercontent.com fails with 429 errors (apache#33354) (cherry picked from commit f045a73) * fix(Row): don't unload charts while embedded to reduce rerenders (apache#33422) (cherry picked from commit 21ca26a) * fix(deckgl): fix deckgl multiple layers chart filter and viewport (apache#33364) (cherry picked from commit 29ac507) * fix(table-chart): time shift is not working (apache#33425) (cherry picked from commit dc44748) * fix: allow metadata to parse json (apache#33444) (cherry picked from commit b050897) * fix(Sqllab): Autocomplete got stuck in UI when open it too fast (apache#33522) (cherry picked from commit b4e2406) * fix(table): table sort by fix (apache#33540) Co-authored-by: Amaan Nawab <nelsondrew07@gmail.com> Co-authored-by: Geido <60598000+geido@users.noreply.github.com> * fix(user settings): Update forked cosmo theme to resolve down chevron in caret style (apache#30514) (apache#30577) Co-authored-by: garriscp <garriscp@gmail.com> (cherry picked from commit b7d3ff1) * fix(AllEntities): Display action buttons according to the user permissions (apache#33553) (cherry picked from commit 546945e) * fix(sankey): incorrect nodeValues (apache#33431) Co-authored-by: richardfn <richard.fogaca@appsilon.com> (cherry picked from commit 38868f9) * fix: Adjust viz migrations to also migrate the queries object (apache#33285) Co-authored-by: Michael S. Molina <michael.s.molina@gmail.com> Co-authored-by: Michael S. Molina <70410625+michael-s-molina@users.noreply.github.com> (cherry picked from commit 57183da) * fix: Missing processor context when rendering Jinja (apache#33596) (cherry picked from commit ce97597) * fix: Makes time compare migration more resilient (apache#33592) (cherry picked from commit b7ba500) * chore: Adds RC3 data to CHANGELOG.md * chore: update Dockerfile - Upgrade to 3.11.12 (apache#33612) (cherry picked from commit f0b6e87) * fix: Migrate charts with empty query_context (apache#33710) (cherry picked from commit 08655a7) * feat(api): Added uuid to list api calls (apache#32414) (cherry picked from commit 8decc9e) * fix(template_processing): get_filters now works for IS_NULL and IS_NOT_NULL operators (apache#33296) (cherry picked from commit cc34608) * fix(dashboard): show dashboard thumbnail images when retrieved (apache#33726) * fix(Alerts & reports): invalid "Last updated" time formatting (apache#33719) (cherry picked from commit 3ef92e5) * fix(explore): add gap to the "Cached" button (apache#33717) * fix(dataset): Fix plural toast messages (apache#33743) (cherry picked from commit a64b9ac) * fix: sync dot color between dashboard chart and edit chart (apache#33748) (cherry picked from commit 78ad6db) * fix(create chart page): add missing space between words (apache#33752) * fix: apply d3 format to BigNumber(s) (apache#33759) (cherry picked from commit d7d7b7c) * fix(tooltip): Sanitize tooltip html (apache#33765) (cherry picked from commit 8fd0fd6) * build: update Dockerfile to 3.11.13-slim-bookworm (apache#33745) (cherry picked from commit 7b6885a) * fix(Echarts): Echarts Legend Scroll fix (apache#33779) Co-authored-by: Amaan Nawab <nelsondrew07@gmail.com> * fix: SQL Lab warning message sizes (apache#33817) (cherry picked from commit 775a702) * chore: Adds RC4 data to CHANGELOG.md * chore: pin Marshmallow < 4 (apache#33978) * fix: Annotation layer errors (apache#34074) (cherry picked from commit d6ed819) * fix(explore): Display missing dataset for denied access (apache#34129) (cherry picked from commit 96cb603) * fix: Matching errorType on superset api error with SupersetError (apache#34261) (cherry picked from commit 229d925) * fix: Bulk select is not respecting the TAGGING_SYSTEM feature flag (apache#34282) (cherry picked from commit 1132460) * fix: Saved queries list break if one query can't be parsed (apache#34289) (cherry picked from commit 1e5a4e9) * fix: Update spacing on echart legends (apache#34018) (cherry picked from commit cb6342f) * fix: extract tables from jinja (apache#34307) * fix: Charts list is displaying empty dataset names when there's no schema (apache#34315) (cherry picked from commit 5f11f90) * fix(dataset): prevent metric duplication error when editing SQL and adding metric (apache#33523) Co-authored-by: QinQin <qinqin@geotab.com> (cherry picked from commit 2fba789) * fix(sqllab): access legacy kv record (apache#34411) (cherry picked from commit 762a11b) * fix: Users can't skip column sync when saving virtual datasets (apache#34509) * fix(echart): initial chart animation (apache#34516) (cherry picked from commit 1a7a381) * fix(native filters): throws an error when a chart containing a bigint value (apache#34539) (cherry picked from commit 2f8939d) * chore(explore): Add format sql and view in SQL Lab option in View Query (apache#33341) (cherry picked from commit 3a39840) * fix(table chart): render bigint value in a raw mode (apache#34556) (cherry picked from commit 8700a0b) * fix(echarts): rename time series shifted without dimensions (apache#34541) (cherry picked from commit 6f5d9c9) * fix: navigate to SQL Lab due to router api updates (apache#34569) (cherry picked from commit 53e9cf6) * fix(echart): broken aggregator due to bigint value (apache#34580) (cherry picked from commit 3e12d97) * chore(saved_query): Copy link to clipboard before redirect to edit (apache#34567) * fix: Timeseries annotation layers (apache#34709) (cherry picked from commit fc95c4f) * feat(file uploads): List only allowed schemas in the file uploads dialog (apache#32702) (cherry picked from commit e35145c) * fix: customize column description limit size in db_engine_spec (apache#34808) (cherry picked from commit 75af53d) * fix: User-provided Jinja template parameters causing SQL parsing errors (apache#34802) (cherry picked from commit e1234b2) * test * init - fix for exec-job 1 * create legacy security route * Fix runners errors found NGLS (#34) * Fix ruff erros * Fix ruff error * add mock to test_import_database_no_creds * Fix ruff error * Add favicon Atos * NGLS-4333: PDF for charts (#35) * Add pdf export functionality for charts * Add download charts from dashboards page * Improve export to charts and add unit tests * Update test * Fix build issue * Potential fix for pull request finding 'CodeQL / Incomplete multi-character sanitization' Co-authored-by: Copilot Autofix powered by AI <62310815+github-advanced-security[bot]@users.noreply.github.com> --------- Signed-off-by: hainenber <dotronghai96@gmail.com> Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: JUST.in DO IT <justin.park@airbnb.com> Co-authored-by: Ville Brofeldt <33317356+villebro@users.noreply.github.com> Co-authored-by: Maxime Beauchemin <maximebeauchemin@gmail.com> Co-authored-by: Đỗ Trọng Hải <41283691+hainenber@users.noreply.github.com> Co-authored-by: Beto Dealmeida <roberto@dealmeida.net> Co-authored-by: Evan Rusackas <evan@preset.io> Co-authored-by: mcdogg17 <63260972+mcdogg17@users.noreply.github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Michael S. Molina <70410625+michael-s-molina@users.noreply.github.com> Co-authored-by: Darpan Jain <86348673+darpanjain07@users.noreply.github.com> Co-authored-by: Levis Mbote <111055098+LevisNgigi@users.noreply.github.com> Co-authored-by: sha174n <105581038+sha174n@users.noreply.github.com> Co-authored-by: Daniel Vaz Gaspar <danielvazgaspar@gmail.com> Co-authored-by: Kamil Gabryjelski <kamil.gabryjelski@gmail.com> Co-authored-by: Steven Liu <wzus579@gmail.com> Co-authored-by: Steven Liu <steven.l@covergenius.com> Co-authored-by: Mehmet Salih Yavuz <salih.yavuz@proton.me> Co-authored-by: Geido <60598000+geido@users.noreply.github.com> Co-authored-by: geotab-data-platform <93609609+geotab-data-platform@users.noreply.github.com> Co-authored-by: Vedant Prajapati <40185967+vedantprajapati@users.noreply.github.com> Co-authored-by: Adrian Mastronardi <7809331+AdrianMastronardi@users.noreply.github.com> Co-authored-by: Vitor Avila <96086495+Vitor-Avila@users.noreply.github.com> Co-authored-by: Enzo Martellucci <52219496+EnxDev@users.noreply.github.com> Co-authored-by: Jack <41238731+fisjac@users.noreply.github.com> Co-authored-by: AdheipSingh <34169002+AdheipSingh@users.noreply.github.com> Co-authored-by: Michael S. Molina <michael.s.molina@gmail.com> Co-authored-by: Elizabeth Thompson <eschutho@gmail.com> Co-authored-by: Antonio Rivero <38889534+Antonio-RiveroMartnez@users.noreply.github.com> Co-authored-by: EmmanuelCbd <107679420+EmmanuelCbd@users.noreply.github.com> Co-authored-by: Alex Duan <51781608+DuanKuanJun@users.noreply.github.com> Co-authored-by: Damian Pendrak <dpendrak@gmail.com> Co-authored-by: Fardin Mustaque <105560328+fardin-developer@users.noreply.github.com> Co-authored-by: Fardin Mustaque <fardinmustaque@Fardins-Mac-mini.local> Co-authored-by: gpchandran <poorana@gmail.com> Co-authored-by: Erkka Tahvanainen <59445256+tahvane1@users.noreply.github.com> Co-authored-by: Erkka Tahvanainen <erkka.tahvanainen@confidently.fi> Co-authored-by: Dmitry Kochnev <aurokkez@gmail.com> Co-authored-by: Dino <108456389+maybedino@users.noreply.github.com> Co-authored-by: Yuri <yuri.bogomolov@robinhood.com> Co-authored-by: Le Xich Long <codenamelxl@users.noreply.github.com> Co-authored-by: Usiel Riedl <usiel.riedl@automattic.com> Co-authored-by: Dolph Mathews <dolph.mathews@gmail.com> Co-authored-by: Andrey Yakir <49098339+mostopalove@users.noreply.github.com> Co-authored-by: Sam Firke <sfirke@users.noreply.github.com> Co-authored-by: Paul Rhodes <withnale@users.noreply.github.com> Co-authored-by: Daniel Höxtermann <daniel@hxtm.dev> Co-authored-by: sowo <wolfgangsommerer@gmail.com> Co-authored-by: Giampaolo Capelli <giampaolo.capelli@gmail.com> Co-authored-by: Giampaolo Capelli <giampaolo.capelli@docaposte.fr> Co-authored-by: Vladislav Korenkov <73882772+Quatters@users.noreply.github.com> Co-authored-by: Vladislav Koren'kov <korenkov.vv@dns-shop.ru> Co-authored-by: Ruslan <108723249+Kukusik8@users.noreply.github.com> Co-authored-by: V9 Developer <99959044+v9dev@users.noreply.github.com> Co-authored-by: CharlesNkdl <100453363+CharlesNkdl@users.noreply.github.com> Co-authored-by: SBIN2010 <132096459+SBIN2010@users.noreply.github.com> Co-authored-by: Chris <144701341+chrisvnimbus@users.noreply.github.com> Co-authored-by: Christiaan Baartse <anotherhero@gmail.com> Co-authored-by: Luke Hart <50547373+lohart13@users.noreply.github.com> Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: GitHub Action <action@github.com> Co-authored-by: notHuman9504 <127070922+notHuman9504@users.noreply.github.com> Co-authored-by: Hex Café <157834442+hexcafe@users.noreply.github.com> Co-authored-by: Vitor Avila <vitor.avila@preset.io> Co-authored-by: Hugo Lavernhe <hugo.lavernhe@gmail.com> Co-authored-by: Hossein Khalilian <hse.khalilian08@gmail.com> Co-authored-by: Jillian <jill@opencraft.com> Co-authored-by: Jacob Amrany <jamra@users.noreply.github.com> Co-authored-by: Shao Yu-Lung (Allen) <bestlong168@gmail.com> Co-authored-by: Syed Bariman Jan <syedbarimanjan@gmail.com> Co-authored-by: Rafael Benitez <rebenitez1802@gmail.com> Co-authored-by: amaannawab923 <amaannawab923@gmail.com> Co-authored-by: Amaan Nawab <nelsondrew07@gmail.com> Co-authored-by: Mike Klumpenaar <mklumpen@gmail.com> Co-authored-by: garriscp <garriscp@gmail.com> Co-authored-by: Richard Fogaca Nienkotter <63572350+richardfogaca@users.noreply.github.com> Co-authored-by: richardfn <richard.fogaca@appsilon.com> Co-authored-by: Luiz Otavio <45200344+luizotavio32@users.noreply.github.com> Co-authored-by: Kasper Mol <awsumthx@gmail.com> Co-authored-by: Pat Buxton <45275736+rad-pat@users.noreply.github.com> Co-authored-by: Ananta Patil <77204384+anantaoutlook@users.noreply.github.com> Co-authored-by: Joe Li <joe@preset.io> Co-authored-by: jqqin <63757369+jqqin@users.noreply.github.com> Co-authored-by: QinQin <qinqin@geotab.com> Co-authored-by: Eduardo Sanday <eduardo.sanday.external@atos.net> Co-authored-by: Samuel Sales <samuel.sales@atos.net> Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: Copilot Autofix powered by AI <62310815+github-advanced-security[bot]@users.noreply.github.com>
SUMMARY
Fixes a bug where user-provided Jinja template parameters were not being properly threaded through the SQL processing pipeline, causing parsing errors and security validation failures.
🐛 Problem
When users provided custom Jinja template parameters (e.g., {"table_name": "my_table"}), these parameters were not being passed to the Jinja template processor during SQL parsing and security validation. This caused:
-Inconsistent behavior between SQL execution and validation phases
🔧 Solution
template_paramsparameter throughout the call stack from SQL execution to security validationextract_tables_from_jinja_sql→process_jinja_sqlwith structured return type for better maintainabilityTESTING INSTRUCTIONS
cc @jamra
ADDITIONAL INFORMATION