If you have a high test coverage index, and your tests for this pull request are passing, it should be both safe and recommended to merge this update.
Updated packages
Some times an update also needs new or updated dependencies to be installed. Even if this branch is for updating one dependency, it might contain other installs or updates. All of the updates in this branch can be found here.
List of updated packages
- composer/semver: 3.3.2 (updated from 3.2.6)
- doctrine/annotations: 1.13.3 (updated from 1.13.2)
- doctrine/collections: 1.8.0 (updated from 1.6.8)
- doctrine/deprecations: v1.0.0 (new package, previously not installed)
- doctrine/event-manager: 1.2.0 (updated from 1.1.1)
- doctrine/lexer: 1.2.3 (updated from 1.2.1)
- doctrine/reflection: 1.2.3 (updated from 1.2.2)
- drupal/core: 9.4.8 (updated from 9.3.16)
- drupal/core-recommended: 9.4.8 (updated from 9.3.16)
- egulias/email-validator: 3.2.1 (updated from 3.1.2)
- guzzlehttp/guzzle: 6.5.8 (updated from 6.5.7)
- guzzlehttp/promises: 1.5.2 (updated from 1.5.1)
- guzzlehttp/psr7: 1.9.0 (updated from 1.8.5)
- laminas/laminas-diactoros: 2.11.3 (updated from 2.8.0)
- laminas/laminas-feed: 2.17.0 (updated from 2.15.0)
- laminas/laminas-stdlib: 3.7.1 (updated from 3.6.1)
- masterminds/html5: 2.7.6 (updated from 2.7.5)
- symfony/console: v4.4.47 (updated from v4.4.34)
- symfony/debug: v4.4.44 (updated from v4.4.31)
- symfony/dependency-injection: v4.4.44 (updated from v4.4.34)
- symfony/deprecation-contracts: v2.5.2 (updated from v2.5.0)
- symfony/error-handler: v4.4.44 (updated from v4.4.34)
- symfony/event-dispatcher: v4.4.44 (updated from v4.4.34)
- symfony/event-dispatcher-contracts: v1.1.13 (updated from v1.1.11)
- symfony/finder: v5.4.11 (updated from v5.4.8)
- symfony/http-client-contracts: v2.5.2 (updated from v2.5.0)
- symfony/http-foundation: v4.4.47 (updated from v4.4.34)
- symfony/http-kernel: v4.4.47 (updated from v4.4.35)
- symfony/mime: v5.4.13 (updated from v5.4.0)
- symfony/polyfill-ctype: v1.25.0 (updated from v1.23.0)
- symfony/polyfill-iconv: v1.25.0 (updated from v1.23.0)
- symfony/polyfill-intl-idn: v1.25.0 (updated from v1.23.0)
- symfony/polyfill-intl-normalizer: v1.25.0 (updated from v1.23.0)
- symfony/polyfill-mbstring: v1.25.0 (updated from v1.23.1)
- symfony/polyfill-php80: v1.25.0 (updated from v1.23.1)
- symfony/process: v4.4.44 (updated from v4.4.35)
- symfony/psr-http-message-bridge: v2.1.3 (updated from v2.1.2)
- symfony/routing: v4.4.44 (updated from v4.4.34)
- symfony/serializer: v4.4.47 (updated from v4.4.35)
- symfony/service-contracts: v2.5.2 (updated from v2.5.0)
- symfony/translation: v4.4.47 (updated from v4.4.34)
- symfony/translation-contracts: v2.5.2 (updated from v2.5.0)
- symfony/validator: v4.4.47 (updated from v4.4.35)
- symfony/var-dumper: v5.4.14 (updated from v5.4.0)
- symfony/yaml: v4.4.45 (updated from v4.4.34)
- twig/twig: v2.15.3 (updated from v2.14.11)
- symfony/browser-kit: v4.4.44 (updated from v4.4.37)
- symfony/dom-crawler: v4.4.45 (updated from v4.4.42)
Changed files
Here is a list of changed files between the version you use, and the version this pull request updates to:
List of changed files
composer.json
Changelog
Here is a list of changes between the version you use, and the version this pull request updates to:
8cedecaIssue #3285696 by sardara, alexpott, longwave: Legacy random session ID generation is incompatible with symfony/http-foundation v4.4.42
3edf9c8Issue #3198340 by alexpott, xjm, cilefen, Mile23, mmjvb, catch, longwave, mfb, Mixologic, effulgentsia, larowlan, Warped, quietone, greg.1.anderson: Strict constraints in drupal/core-recommended make it harder for Composer-managed sites to apply their own security updates when a core update is not available
a980acfIssue #3285572 by alexpott, longwave: Update dependencies to latest patch releases for 9.4.x / 9.5.x
This is an automated pull request from Violinist: Continuously and automatically monitor and update your composer dependencies. Have ideas on how to improve this message? All violinist messages are open-source, and can be improved here.
If you have a high test coverage index, and your tests for this pull request are passing, it should be both safe and recommended to merge this update.
Updated packages
Some times an update also needs new or updated dependencies to be installed. Even if this branch is for updating one dependency, it might contain other installs or updates. All of the updates in this branch can be found here.
List of updated packages
- composer/semver: 3.3.2 (updated from 3.2.6) - doctrine/annotations: 1.13.3 (updated from 1.13.2) - doctrine/collections: 1.8.0 (updated from 1.6.8) - doctrine/deprecations: v1.0.0 (new package, previously not installed) - doctrine/event-manager: 1.2.0 (updated from 1.1.1) - doctrine/lexer: 1.2.3 (updated from 1.2.1) - doctrine/reflection: 1.2.3 (updated from 1.2.2) - drupal/core: 9.4.8 (updated from 9.3.16) - drupal/core-recommended: 9.4.8 (updated from 9.3.16) - egulias/email-validator: 3.2.1 (updated from 3.1.2) - guzzlehttp/guzzle: 6.5.8 (updated from 6.5.7) - guzzlehttp/promises: 1.5.2 (updated from 1.5.1) - guzzlehttp/psr7: 1.9.0 (updated from 1.8.5) - laminas/laminas-diactoros: 2.11.3 (updated from 2.8.0) - laminas/laminas-feed: 2.17.0 (updated from 2.15.0) - laminas/laminas-stdlib: 3.7.1 (updated from 3.6.1) - masterminds/html5: 2.7.6 (updated from 2.7.5) - symfony/console: v4.4.47 (updated from v4.4.34) - symfony/debug: v4.4.44 (updated from v4.4.31) - symfony/dependency-injection: v4.4.44 (updated from v4.4.34) - symfony/deprecation-contracts: v2.5.2 (updated from v2.5.0) - symfony/error-handler: v4.4.44 (updated from v4.4.34) - symfony/event-dispatcher: v4.4.44 (updated from v4.4.34) - symfony/event-dispatcher-contracts: v1.1.13 (updated from v1.1.11) - symfony/finder: v5.4.11 (updated from v5.4.8) - symfony/http-client-contracts: v2.5.2 (updated from v2.5.0) - symfony/http-foundation: v4.4.47 (updated from v4.4.34) - symfony/http-kernel: v4.4.47 (updated from v4.4.35) - symfony/mime: v5.4.13 (updated from v5.4.0) - symfony/polyfill-ctype: v1.25.0 (updated from v1.23.0) - symfony/polyfill-iconv: v1.25.0 (updated from v1.23.0) - symfony/polyfill-intl-idn: v1.25.0 (updated from v1.23.0) - symfony/polyfill-intl-normalizer: v1.25.0 (updated from v1.23.0) - symfony/polyfill-mbstring: v1.25.0 (updated from v1.23.1) - symfony/polyfill-php80: v1.25.0 (updated from v1.23.1) - symfony/process: v4.4.44 (updated from v4.4.35) - symfony/psr-http-message-bridge: v2.1.3 (updated from v2.1.2) - symfony/routing: v4.4.44 (updated from v4.4.34) - symfony/serializer: v4.4.47 (updated from v4.4.35) - symfony/service-contracts: v2.5.2 (updated from v2.5.0) - symfony/translation: v4.4.47 (updated from v4.4.34) - symfony/translation-contracts: v2.5.2 (updated from v2.5.0) - symfony/validator: v4.4.47 (updated from v4.4.35) - symfony/var-dumper: v5.4.14 (updated from v5.4.0) - symfony/yaml: v4.4.45 (updated from v4.4.34) - twig/twig: v2.15.3 (updated from v2.14.11) - symfony/browser-kit: v4.4.44 (updated from v4.4.37) - symfony/dom-crawler: v4.4.45 (updated from v4.4.42)Changed files
Here is a list of changed files between the version you use, and the version this pull request updates to:
List of changed files
composer.jsonChangelog
Here is a list of changes between the version you use, and the version this pull request updates to:
Drupal 9.4.8
Merge 9.4.7, resolve merge conflicts, and update lockfile and dev versions.
Drupal 9.4.7
SA-CORE-2022-016 by fabpot, nicolas.grekas, xjm, lauriii, alexpott, Berdir, larowlan, catch, longwave, cilefen, james.williams, benjifisher
Back to dev.
Drupal 9.4.6
Back to dev.
Drupal 9.4.5
Back to dev.
Drupal 9.4.4
Issue #3300518 by xjm, catch, neclimdul: Update Diactoros lock file version
Merged 9.4.3.
Drupal 9.4.3
Back to dev.
Drupal 9.4.2
Back to dev.
Drupal 9.4.1
Issue #3291780 by longwave, xjm: guzzlehttp/guzzle 6.5.8 requires guzzlehttp/psr7 ^1.9
Back to dev.
Drupal 9.4.0
Issue #3285696 by sardara, alexpott, longwave: Legacy random session ID generation is incompatible with symfony/http-foundation v4.4.42
Issue #3198340 by alexpott, xjm, cilefen, Mile23, mmjvb, catch, longwave, mfb, Mixologic, effulgentsia, larowlan, Warped, quietone, greg.1.anderson: Strict constraints in drupal/core-recommended make it harder for Composer-managed sites to apply their own security updates when a core update is not available
Issue #3285572 by alexpott, longwave: Update dependencies to latest patch releases for 9.4.x / 9.5.x
Back to dev.
Drupal 9.4.0-rc2
SA-CORE-2022-011 by GHaddon, JeroenT, yivanov, Heine, longwave, DamienMcKenna, mlhess, cilefen, xjm, benjifisher
Back to dev.
Drupal 9.4.0-rc1
Back to dev.
Drupal 9.4.0-beta1
Issue #3283093 by alexpott, daffie: Update PHP dependencies for minor and patch versions
Issue #3282342 by xjm: Forward-port Guzzle updates, because the private testrunner doesn't like me today
Back to dev.
Drupal 9.4.0-alpha1
Issue #3278162 by longwave, xjm, mallezie, Spokje: Update Composer dependencies to the latest minor and patch versions
SA-CORE-2022-006 by JeroenT, DamienMcKenna, xjm, pwolanin, alexpott, larowlan, greggles
Issue #3262583 by xjm, neclimdul, bnjmnm, catch: Update Twig to 2.14.11
Issue #3251768 by longwave: Update Symfony 5 dependencies to 5.4.0
Issue #3238763 by longwave, Spokje, Krzysztof Domański, tstoeckler, quietone: Upgrade egulias/email-validator to v3
Issue #3251000 by alexpott, andypost: Update dependencies for 9.1.x/9.2.x/9.3.x/9.4.x
Issue #3249233 by longwave: Update 9.3's Symfony 5 components to 5.4
Issue #3248600 by andypost, longwave: Update dependencies for 9.3.x
Issue #3248156 by alexpott, longwave: Update dependencies prior to 9.3.0 beta
Issue #3246595 by andypost: Update dependencies for 9.3.x
Drupal 9.4.x-dev
This is an automated pull request from Violinist: Continuously and automatically monitor and update your composer dependencies. Have ideas on how to improve this message? All violinist messages are open-source, and can be improved here.