ElevatoDigital / dewdrop

Dewdrop makes writing complex WordPress plugins simpler by providing a sensible project layout and developer tools.
Other
11 stars 3 forks source link

Bump symfony/security from 2.8.28 to 2.8.50 #109

Closed dependabot[bot] closed 4 years ago

dependabot[bot] commented 4 years ago

Bumps symfony/security from 2.8.28 to 2.8.50.

Commits - [`b9e9130`](https://github.com/symfony/security/commit/b9e9130cf348d4e85e37ba1d0d27263e33b97534) security #cve-2019-10911 [Security] Add a separator in the remember me cookie... - [`107bda1`](https://github.com/symfony/security/commit/107bda1aee01e4b3dc46452d18ae4049bd4fa3f6) Merge branch '2.7' into 2.8 - [`99e4776`](https://github.com/symfony/security/commit/99e4776f2dd71f32e44d3386967e4f14423d4e1b) [Security\Http] detect bad redirect targets using backslashes - [`7e518f3`](https://github.com/symfony/security/commit/7e518f3882f008e847221c4a91d7ac8ca79b7b56) Bump phpunit XSD version to 5.2 - [`b91f5bc`](https://github.com/symfony/security/commit/b91f5bc16bb07d06163c36019721d57a1af868dc) remove unneeded tearDown method - [`e43aa53`](https://github.com/symfony/security/commit/e43aa53f2a66823b98180c6ca451c63bbc3b434c) [Security] Fix "exclude-from-classmap" - [`ce45c3a`](https://github.com/symfony/security/commit/ce45c3a7642da85f44fd8cca8b9e14eb01353ded) Convert InsufficientAuthenticationException to HttpException - [`762808a`](https://github.com/symfony/security/commit/762808ad9c280817769603f60bf7ab172723f346) [CS] Enforces null type hint on last position in phpDocs - [`7a868ac`](https://github.com/symfony/security/commit/7a868ac6f1abff384c65d8cb64ee49896566329a) Fix a typo in error messages - [`d2d55b8`](https://github.com/symfony/security/commit/d2d55b8e26c8cdf3172d702996733eb3c83f621c) [HttpFoundation][Security] forward locale and format to subrequests - Additional commits viewable in [compare view](https://github.com/symfony/security/compare/v2.8.28...v2.8.50)


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language - `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language - `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language - `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/DeltaSystems/dewdrop/network/alerts).
dependabot[bot] commented 4 years ago

Looks like symfony/security is up-to-date now, so this is no longer needed.