ministryofjustice / justice-gov-uk

Justice UK website
https://www.justice.gov.uk/
MIT License
2 stars 0 forks source link

security: composer update #205

Closed EarthlingDavey closed 3 months ago

EarthlingDavey commented 3 months ago

For this PR, composer update was run. It updated the lock file and addresses:

Update log:

  - Upgrading codeception/module-db (3.1.3 => 3.1.4)
  - Upgrading composer/class-map-generator (1.1.1 => 1.3.4)
  - Upgrading composer/composer (2.7.6 => 2.7.7)
  - Upgrading composer/pcre (3.1.3 => 3.1.4)
  - Upgrading firebase/php-jwt (v6.10.0 => v6.10.1)
  - Upgrading gettext/gettext (v4.8.11 => v4.8.12)
  - Upgrading koodimonni-language/core-en_gb (6.5.3 => 6.5.4)
  - Upgrading lucatume/wp-browser (4.1.7 => 4.2.4)
  - Upgrading mockery/mockery (1.6.11 => 1.6.12)
  - Upgrading myclabs/deep-copy (1.11.1 => 1.12.0)
  - Upgrading psr/http-factory (1.0.2 => 1.1.0)
  - Upgrading psy/psysh (v0.12.3 => v0.12.4)
  - Upgrading react/promise (v3.1.0 => v3.2.0)
  - Upgrading roave/security-advisories (dev-latest 7e41e89 => dev-latest a36c08c)
  - Upgrading roots/wordpress (6.5.3 => 6.5.4)
  - Upgrading roots/wordpress-no-content (6.5.3 => 6.5.4)
  - Upgrading sentry/sentry (4.7.0 => 4.8.0)
  - Upgrading squizlabs/php_codesniffer (3.9.2 => 3.10.1)
  - Upgrading stayallive/wp-sentry (v7.13.0 => v7.16.0)
  - Upgrading symfony/browser-kit (v6.4.7 => v6.4.8)
  - Upgrading symfony/console (v7.0.7 => v7.1.1)
  - Upgrading symfony/css-selector (v7.0.7 => v7.1.1)
  - Upgrading symfony/dom-crawler (v6.4.7 => v6.4.8)
  - Upgrading symfony/event-dispatcher (v7.0.7 => v7.1.1)
  - Upgrading symfony/filesystem (v6.4.7 => v6.4.8)
  - Upgrading symfony/finder (v7.0.7 => v7.1.1)
  - Upgrading symfony/options-resolver (v7.0.7 => v7.1.1)
  - Upgrading symfony/process (v6.4.7 => v6.4.8)
  - Upgrading symfony/string (v7.0.7 => v7.1.1)
  - Upgrading symfony/var-dumper (v7.0.7 => v7.1.1)
  - Upgrading symfony/yaml (v7.0.7 => v7.1.1)
  - Upgrading wp-cli/entity-command (v2.7.0 => v2.8.0)
  - Upgrading wp-cli/wp-cli (v2.10.0 => dev-main 0ca6d92)
  - Upgrading wpackagist-plugin/query-monitor (3.16.2 => 3.16.3)
wilson1000 commented 3 months ago

Hi @EarthlingDavey - thanks for the great work here. Can we please push the update of WordPress through with this too? It seems fitting.

Historically, WordPress updates have never caused a problem on our sites and have always added value, fixed bugs, vulnerabilities, etc.

I'll test the thoroughly once on dev, although I'm confident we can update without issue 😄

EarthlingDavey commented 3 months ago

Hey @wilson1000 , thanks.

I was thinking the same... wp is sailing through with this:

  - Upgrading roots/wordpress (6.5.3 => 6.5.4)

Fingers crossed for no issues. I'll also do a thorough check on dev :)

wilson1000 commented 3 months ago

I was thinking the same... wp is sailing through with this:

  - Upgrading roots/wordpress (6.5.3 => 6.5.4)

Ah :) I missed that! great work