Skip to content
Snippets Groups Projects
Commit 6a023838 authored by catch's avatar catch
Browse files

Issue #3391991 by Spokje, longwave, greggles: Security update composer/composer (CVE-2023-43655)

parent 996fb537
No related branches found
No related tags found
40 merge requests!54479.5.x SF update,!5014Issue #3071143: Table Render Array Example Is Incorrect,!3878Removed unused condition head title for views,!38582585169-10.1.x,!3818Issue #2140179: $entity->original gets stale between updates,!3742Issue #3328429: Create item list field formatter for displaying ordered and unordered lists,!3731Claro: role=button on status report items,!3668Resolve #3347842 "Deprecate the trusted",!3651Issue #3347736: Create new SDC component for Olivero (header-search),!3546refactored dialog.pcss file,!3531Issue #3336994: StringFormatter always displays links to entity even if the user in context does not have access,!3502Issue #3335308: Confusing behavior with FormState::setFormState and FormState::setMethod,!3452Issue #3332701: Refactor Claro's tablesort-indicator stylesheet,!3451Issue #2410579: Allows setting the current language programmatically.,!3355Issue #3209129: Scrolling problems when adding a block via layout builder,!3226Issue #2987537: Custom menu link entity type should not declare "bundle" entity key,!3154Fixes #2987987 - CSRF token validation broken on routes with optional parameters.,!3147Issue #3328457: Replace most substr($a, $i) where $i is negative with str_ends_with(),!3146Issue #3328456: Replace substr($a, 0, $i) with str_starts_with(),!3133core/modules/system/css/components/hidden.module.css,!31312878513-10.1.x,!2964Issue #2865710 : Dependencies from only one instance of a widget are used in display modes,!2812Issue #3312049: [Followup] Fix Drupal.Commenting.FunctionComment.MissingReturnType returns for NULL,!2614Issue #2981326: Replace non-test usages of \Drupal::logger() with IoC injection,!2378Issue #2875033: Optimize joins and table selection in SQL entity query implementation,!2334Issue #3228209: Add hasRole() method to AccountInterface,!2062Issue #3246454: Add weekly granularity to views date sort,!1591Issue #3199697: Add JSON:API Translation experimental module,!1255Issue #3238922: Refactor (if feasible) uses of the jQuery serialize function to use vanillaJS,!1105Issue #3025039: New non translatable field on translatable content throws error,!1073issue #3191727: Focus states on mobile second level navigation items fixed,!10223132456: Fix issue where views instances are emptied before an ajax request is complete,!877Issue #2708101: Default value for link text is not saved,!844Resolve #3036010 "Updaters",!673Issue #3214208: FinishResponseSubscriber could create duplicate headers,!617Issue #3043725: Provide a Entity Handler for user cancelation,!579Issue #2230909: Simple decimals fail to pass validation,!560Move callback classRemove outside of the loop,!555Issue #3202493,!485Sets the autocomplete attribute for username/password input field on login form.
Pipeline #27384 passed
Pipeline: drupal

#27388

    Pipeline: drupal

    #27387

      Pipeline: drupal

      #27386

        +1
        ......@@ -4,7 +4,7 @@
        "Read more about it at https://getcomposer.org/doc/01-basic-usage.md#installing-dependencies",
        "This file is @generated automatically"
        ],
        "content-hash": "bfd416e5a3556fed83f84928cf81fa18",
        "content-hash": "a30c52b5963c822aaa101826b97c7bab",
        "packages": [
        {
        "name": "asm89/stack-cors",
        ......@@ -4641,16 +4641,16 @@
        },
        {
        "name": "composer/composer",
        "version": "2.5.7",
        "version": "2.6.4",
        "source": {
        "type": "git",
        "url": "https://github.com/composer/composer.git",
        "reference": "d477018d3f2ebd76dede3d3988a0b1a7add4d81e"
        "reference": "d75d17c16a863438027d1d96401cddcd6aa5bb60"
        },
        "dist": {
        "type": "zip",
        "url": "https://api.github.com/repos/composer/composer/zipball/d477018d3f2ebd76dede3d3988a0b1a7add4d81e",
        "reference": "d477018d3f2ebd76dede3d3988a0b1a7add4d81e",
        "url": "https://api.github.com/repos/composer/composer/zipball/d75d17c16a863438027d1d96401cddcd6aa5bb60",
        "reference": "d75d17c16a863438027d1d96401cddcd6aa5bb60",
        "shasum": ""
        },
        "require": {
        ......@@ -4658,23 +4658,23 @@
        "composer/class-map-generator": "^1.0",
        "composer/metadata-minifier": "^1.0",
        "composer/pcre": "^2.1 || ^3.1",
        "composer/semver": "^3.0",
        "composer/semver": "^3.2.5",
        "composer/spdx-licenses": "^1.5.7",
        "composer/xdebug-handler": "^2.0.2 || ^3.0.3",
        "justinrainbow/json-schema": "^5.2.11",
        "php": "^7.2.5 || ^8.0",
        "psr/log": "^1.0 || ^2.0 || ^3.0",
        "react/promise": "^2.8",
        "react/promise": "^2.8 || ^3",
        "seld/jsonlint": "^1.4",
        "seld/phar-utils": "^1.2",
        "seld/signal-handler": "^2.0",
        "symfony/console": "^5.4.11 || ^6.0.11",
        "symfony/filesystem": "^5.4 || ^6.0",
        "symfony/finder": "^5.4 || ^6.0",
        "symfony/console": "^5.4.11 || ^6.0.11 || ^7",
        "symfony/filesystem": "^5.4 || ^6.0 || ^7",
        "symfony/finder": "^5.4 || ^6.0 || ^7",
        "symfony/polyfill-php73": "^1.24",
        "symfony/polyfill-php80": "^1.24",
        "symfony/polyfill-php81": "^1.24",
        "symfony/process": "^5.4 || ^6.0"
        "symfony/process": "^5.4 || ^6.0 || ^7"
        },
        "require-dev": {
        "phpstan/phpstan": "^1.9.3",
        ......@@ -4682,7 +4682,7 @@
        "phpstan/phpstan-phpunit": "^1.0",
        "phpstan/phpstan-strict-rules": "^1",
        "phpstan/phpstan-symfony": "^1.2.10",
        "symfony/phpunit-bridge": "^6.0"
        "symfony/phpunit-bridge": "^6.0 || ^7"
        },
        "suggest": {
        "ext-openssl": "Enabling the openssl extension allows you to access https URLs for repositories and packages",
        ......@@ -4695,7 +4695,7 @@
        "type": "library",
        "extra": {
        "branch-alias": {
        "dev-main": "2.5-dev"
        "dev-main": "2.6-dev"
        },
        "phpstan": {
        "includes": [
        ......@@ -4705,7 +4705,7 @@
        },
        "autoload": {
        "psr-4": {
        "Composer\\": "src/Composer"
        "Composer\\": "src/Composer/"
        }
        },
        "notification-url": "https://packagist.org/downloads/",
        ......@@ -4734,7 +4734,8 @@
        "support": {
        "irc": "ircs://irc.libera.chat:6697/composer",
        "issues": "https://github.com/composer/composer/issues",
        "source": "https://github.com/composer/composer/tree/2.5.7"
        "security": "https://github.com/composer/composer/security/policy",
        "source": "https://github.com/composer/composer/tree/2.6.4"
        },
        "funding": [
        {
        ......@@ -4750,7 +4751,7 @@
        "type": "tidelift"
        }
        ],
        "time": "2023-05-24T13:00:40+00:00"
        "time": "2023-09-29T08:54:47+00:00"
        },
        {
        "name": "composer/metadata-minifier",
        ......
        ......@@ -11,7 +11,7 @@
        "behat/mink-browserkit-driver": "^2.1",
        "behat/mink-selenium2-driver": "^1.4",
        "colinodell/psr-testlogger": "^1.2",
        "composer/composer": "^2.4",
        "composer/composer": "^2.6.4",
        "drupal/coder": "^8.3.10",
        "instaclick/php-webdriver": "^1.4.1",
        "justinrainbow/json-schema": "^5.2",
        ......
        ......@@ -14,7 +14,7 @@
        "colinodell/psr-testlogger": "v1.2.0",
        "composer/ca-bundle": "1.3.6",
        "composer/class-map-generator": "1.0.0",
        "composer/composer": "2.5.7",
        "composer/composer": "2.6.4",
        "composer/metadata-minifier": "1.0.0",
        "composer/pcre": "3.1.0",
        "composer/spdx-licenses": "1.5.7",
        ......
        0% Loading or .
        You are about to add 0 people to the discussion. Proceed with caution.
        Finish editing this message first!
        Please register or to comment