Bump the composer group across 1 directory with 7 updates #7
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the composer group with 5 updates in the / directory:
2.6.72.6.132.6.72.6.121.2.41.2.71.4.11.5.42.5.02.5.3Updates
symfony/securityfrom 2.6.7 to 2.6.13Commits
722b5b4removed obsolete tests, fixed composer.json6f2d035do not ship with a custom rng implementation6993b7emigrate session after remember me authentication8dc2616prevent timing attacks in digest auth listener6a45bf2fix potential timing attack issuecdad268Merge branch '2.3' into 2.679b1d65[Security/Http] Fix test relying on a private property39fae4d[Security] removed useless else condition in SwitchUserListener class.7ab68c8Merge branch '2.3' into 2.69aab396[Security] fix check for empty usernamesUpdates
symfony/formfrom 2.6.7 to 2.6.12Commits
23394a6prevent timing attacks in digest auth listenerae46979mitigate CSRF timing attack vulnerability9334d5bMerge branch '2.3' into 2.610d41a4[Form] updated exception message of ButtonBuilder::setRequestHandler()f4e4d50Merge branch '2.3' into 2.62820629Remove excess whitespace1e1e187Merge branch '2.3' into 2.6b0379d8fix CS31fe199Merge branch '2.3' into 2.6dfacc33Update DateTimeToArrayTransformer.phpUpdates
doctrine/annotationsfrom 1.2.4 to 1.2.7Release notes
Sourced from doctrine/annotations's releases.
Commits
f25c8aa[DCOM-293] Fix security misconfiguration vulnerability that can allow local a...f4a9170Revert "Fix broken merge on Zend Opcache check."6eeadf5Fix broken merge on Zend Opcache check.735b6c5Merge pull request #59 from mpalourdio/opcache.load_comments0a706d3Move classes with reserved keywords in a separate file and skip test for php 710a0a9dUse PHP_VERSION_ID, and not PHP_VERSION0ab9972Add PHP7 to the build matrix0eae200opcache.load_comments has been removed from PHP 7c8927adMerge pull request #57 from stof/patch-1ae5fbc0Switch to the docker-based infrastructure on TravisUpdates
doctrine/cachefrom 1.4.1 to 1.5.4Release notes
Sourced from doctrine/cache's releases.
... (truncated)
Commits
47cdc76Releasing 1.5.47a9326bMerge pull request #128 from doctrine/hotfix/Use Symfony Serializer rvanlaak/SettingsBundle#127-fix-windows-php-bug-path-le...f84dfe5Add rigorous functional test for windows path length limit handling4b82214Refactor path length & generation test in FileCacheTestbf4899cPath length of 259 is also not possible due to php bug32bf046Bumping to development release 1.5.4-DEV6ecaf07Releasing 1.5.3492479eMerge pull request #126 from doctrine/hotfix/Fix second param of "entity" driven get method rvanlaak/SettingsBundle#113-testing-windows-file-path-l...3197628Installation of APCu should happen manually, as 4.x should be used when deali...85667d3Fix use of [] array initializer in backported testUpdates
doctrine/commonfrom 2.5.0 to 2.5.3Release notes
Sourced from doctrine/common's releases.
Commits
10f1f192.5.3 releasee8768f6Merge branch 'hotfix/#367-correct-symfony-file-locator-namespace-matching-2.5...f70bfddAdd tests for Symfony file locator3e7dcebFix how namespace matching happens in SymfonyFileLocator11b994bBumping development version to 2.5.3-DEV311001fRelease 2.5.2cce91bcMerge tag 'v2.5.1' into 2.553b9649Merge branch 'hotfix/#384-correct-directory-to-namespace-conversion-in-file-l...486407c#384 - hardening comparisons to get rid of silly OS-specific sorting problems16d94cc#384 - hardening comparisons to get rid of silly OS-specific sorting problemsUpdates
symfony/http-foundationfrom 2.6.7 to 2.6.13Commits
e8fd1b7Merge branch '2.3' into 2.6fd2a759bug #15249 [HttpFoundation] [PSR-7] Allow to use resources as content body an...6eed3f5[HttpFoundation] [PSR-7] Allow to use resources as content body and to return...d5adda8[HttpFoundation] Fix Response::closeOutputBuffers() for HHVM 3.36f2de25[HttpFoundation] Behaviour change in PHP7 for substrb2a6fadMerge branch '2.3' into 2.6d9a9d95[HttpFoundation] Reload the session after regenerating its id1b15d69[HttpFoundation] Add a test case to confirm a bug in session migration023606d[2.6] Static Code Analysis for Components and Bundles40569a0minor #15204 CS fixes for 2.3 (keradus)Updates
symfony/http-kernelfrom 2.6.7 to 2.6.13Commits
cdd991dupdated VERSION for 2.6.13498866abumped Symfony version to 2.6.12a3f0ed7updated VERSION for 2.6.118a9c3d3minor #15317 [2.6] Static Code Analysis for Components (kalessil)5c23682[2.6] Static Code Analysis for Componentsba68a75[HttpKernel] Fix lowest dep2817487bumped Symfony version to 2.6.1152c99b6updated VERSION for 2.6.108078f58Merge branch '2.3' into 2.6b8f99b1fix CSDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditionsYou can disable automated security fix PRs for this repo from the Security Alerts page.