yiisoft / yii

Yii PHP Framework 1.1.x
http://www.yiiframework.com
BSD 3-Clause "New" or "Revised" License
4.84k stars 2.28k forks source link

Build(deps-dev): update pear/archive_tar requirement from ~1.4.6 to ~1.5.0 #4551

Closed dependabot[bot] closed 8 months ago

dependabot[bot] commented 8 months ago

Updates the requirements on pear/archive_tar to permit the latest version.

Release notes

Sourced from pear/archive_tar's releases.

1.5.0

  • PR #42: fix @​return true... to @​return bool true... on some functions
  • PR #46: use 775 default for mkdirs, to avoid world-write
Commits
  • b439c85 prep for v1.5.0
  • f7b6549 Merge pull request #45 from ashnazg/tests-cleanup
  • 32ef9ea Merge pull request #46 from ashnazg/mkdir-perms
  • 30f5bf7 use 775 default for mkdirs, to avoid world-write
  • d663662 avoid BORKED CLEAN warnings since destructor normally removes the files
  • d3a1041 retire travis-ci usage
  • abc967f Merge pull request #44 from mcdruid/master
  • c95f4d8 Add SECURITY.md
  • 5817cd2 add mcdruid
  • 5ef0cef remove sponsor list
  • Additional commits viewable in compare view


Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
what-the-diff[bot] commented 8 months ago

PR Summary