Skip to content

[6.1] Update composer dependencies#46565

Merged
tecpromotion merged 1 commit intojoomla:6.1-devfrom
HLeithner:6.1/composer-update-251212
Dec 12, 2025
Merged

[6.1] Update composer dependencies#46565
tecpromotion merged 1 commit intojoomla:6.1-devfrom
HLeithner:6.1/composer-update-251212

Conversation

@HLeithner
Copy link
Copy Markdown
Member

This PR updates composer dependencies within minor versions.

I did a code review for suspicious code on the following 3rd party extensions

  • altcha-org/altcha (v1.2.0 => v1.3.0)
  • dragonmantank/cron-expression (v3.4.0 => v3.6.0)
  • lcobucci/clock (3.3.1 => 3.5.0)
  • phpseclib/phpseclib (3.0.46 => 3.0.47)
  • spomky-labs/cbor-php (3.1.1 => 3.2.2)
  • spomky-labs/pki-framework (1.3.0 => 1.4.0)
  • theseer/tokenizer (1.2.3 => 1.3.1)
  • web-token/jwt-library (3.4.8 => 3.4.9)

Other dependencies like symfony has not been checked because I expect enough other people reviewing the code bases or are trustworthy for other reasons.

I also added the Webauthn library to the audit ignore list, we are well aware of this outdated version, but I our Webauthn plugin needs to be updated to use a newer version, which has not been done yet.

@brianteeman
Copy link
Copy Markdown
Contributor

Thanks

@brianteeman
Copy link
Copy Markdown
Contributor

I have tested this item ✅ successfully on ee28b4d


This comment was created with the J!Tracker Application at issues.joomla.org/tracker/joomla-cms/46565.

1 similar comment
@tecpromotion
Copy link
Copy Markdown
Contributor

I have tested this item ✅ successfully on ee28b4d


This comment was created with the J!Tracker Application at issues.joomla.org/tracker/joomla-cms/46565.

@tecpromotion
Copy link
Copy Markdown
Contributor

RTC


This comment was created with the J!Tracker Application at issues.joomla.org/tracker/joomla-cms/46565.

@joomla-cms-bot joomla-cms-bot added the RTC This Pull Request is Ready To Commit label Dec 12, 2025
@tecpromotion tecpromotion merged commit 703fe44 into joomla:6.1-dev Dec 12, 2025
43 checks passed
@joomla-cms-bot joomla-cms-bot removed the RTC This Pull Request is Ready To Commit label Dec 12, 2025
@tecpromotion
Copy link
Copy Markdown
Contributor

Thanks @brianteeman for testing

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants