Update composer/composer from 2.10.2 to 2.10.3 - #751
Merged
Conversation
------
violinist_metadata:
source: violinist
type: package
update_data:
package: composer/composer
from: 2.10.2
to: 2.10.3
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
If you have a high test coverage index, and your tests for this pull request are passing, it should be both safe and recommended to merge this update.
Updated packages
Some times an update also needs new or updated dependencies to be installed. Even if this branch is for updating one dependency, it might contain other installs or updates. All of the updates in this branch can be found here:
Release notes
Here are the release notes for all versions released between your current running version, and the version this PR updates the package to.
List of release notes
Changed files
Here is a list of changed files between the version you use, and the version this pull request updates to:
List of changed files
Changelog
Here is a list of changes between the version you use, and the version this pull request updates to:
Release 2.10.3Update changelogMerge commit from forkMerge commit from forkMake it possible to pass transport options to FilterListApiClient (#13040)Do not use a conflicted content-hash as the autoloader suffix (#13048)Mask URL credentials anywhere in a string, not just at its start (#13044)Prevent curl SSL version parsing across lines (#13046)FixUrl::getOriginprefix-matching a host againstgitlab-domains(#12988)Include the failed URL in max-file-size and content-length errors (#13041)Bump actions/attest from 4.2.1 to 4.2.2 (#13033)Bump zizmorcore/zizmor-action from 0.6.1 to 0.6.2 (#13032)Replace deprecated spl_object_hash with spl_object_id, fixes #13027 (#13028)Bump actions/attest from 4.2.0 to 4.2.1 (#13020)Bump actions/stale from 10.4.0 to 11.0.0 (#13019)Updatecomposer-plugin-apito 2.9.0 in documentation (#13016)Bump actions/checkout from 7.0.0 to 7.0.1 (#13008)Bump zizmorcore/zizmor-action from 0.6.0 to 0.6.1 (#13009)feat: #13002 Improve logging of failed download URLs by adding filename to message (#13006)Add sponsors section to README (#13004)Bump zizmorcore/zizmor-action from 0.5.7 to 0.6.0 (#12996)Bump actions/attest from 4.1.1 to 4.2.0 (#12995)Policies: show which source blocked a package version as part of the filter list pool filter (#12993)Bump actions/stale from 10.3.0 to 10.4.0 (#12985)Docs: add missing request/response example for custom policies (#12983)Avoid a race condition inensureDirectoryExists(#12977)Bump actions/attest from 4.1.0 to 4.1.1 (#12979)Clarify the limitations of pinning an explicit commit reference (#12965)Bump actions/cache from 5.0.5 to 6.1.0 (#12970)Bump zizmorcore/zizmor-action from 0.5.6 to 0.5.7 (#12969)Fix forgejo driver to handle empty repos better (#12968)Add missing exts to the requirementsFix/ignore MB_ONIGURUMA_VERSION deprecation, fixes #12967Reverting release version changesWorking with this branch
If you find you need to update the codebase to be able to merge this branch (for example update some tests or rebuild some assets), please note that violinist will force push to this branch to keep it up to date. This means you should not work on this branch directly, since you might lose your work. Read more about branches created by violinist.io here.
This is an automated pull request from Violinist: Continuously and automatically monitor and update your composer dependencies. Have ideas on how to improve this message? All violinist messages are open-source, and can be improved here.