Skip to content
This repository was archived by the owner on Mar 13, 2026. It is now read-only.

Commit 3b8d1ac

Browse files
committed
vendor update
1 parent 12599bc commit 3b8d1ac

File tree

3 files changed

+177
-149
lines changed

3 files changed

+177
-149
lines changed

CHANGELOG-2.0.md

Lines changed: 29 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -4,8 +4,35 @@ CHANGELOG - ZIKULA 2.0.x
44
2.0.13 (unreleased)
55
-------------------
66

7-
- Fixes:
8-
- ?
7+
- Security fixes from Symfony:
8+
- Check service IDs are valid (CVE-2019-10910).
9+
- Fix XSS issues in the form theme of the PHP templating engine (CVE-2019-10909).
10+
- Prevent destructors with side-effects from being unserialized (CVE-2019-10912).
11+
- Add a separator in the remember me cookie hash (CVE-2019-10911).
12+
- Reject invalid method override (CVE-2019-10913).
13+
14+
- Vendor updates:
15+
- components/bootstrap updated from 3.3.7 to 3.4.0
16+
- composer/ca-bundle updated from 1.1.3 to 1.1.4
17+
- composer/semver updated from 1.4.2 to 1.5.0
18+
- elao/web-profiler-extra-bundle updated from 2.3.5 to 2.3.6
19+
- gedmo/doctrine-extensions updated from 2.4.36 to 2.4.37
20+
- jquery.mmenu updated from 7.2.2 to 7.3.3
21+
- paragonie/random_compat updated from 2.0.17 to 2.0.18
22+
- sensio/distribution-bundle updated from 5.0.23 to 5.0.24
23+
- sensiolabs/security-checker updated from 5.0.1 to 5.0.3
24+
- symfony/polyfill-apcu updated from 1.10.0 to 1.11.0
25+
- symfony/polyfill-ctype updated from 1.10.0 to 1.11.0
26+
- symfony/polyfill-intl-icu updated from 1.10.0 to 1.11.0
27+
- symfony/polyfill-mbstring updated from 1.10.0 to 1.11.0
28+
- symfony/polyfill-php56 updated from 1.10.0 to 1.11.0
29+
- symfony/polyfill-php70 updated from 1.10.0 to 1.11.0
30+
- symfony/polyfill-util updated from 1.10.0 to 1.11.0
31+
- symfony/symfony updated from 3.4.20 to 3.4.26
32+
- twig/twig updated from 1.35.4 to 1.39.1
33+
- webmozart/assert updated from 1.3.0 to 1.4.0
34+
- zikula/profile-module updated from 3.0.5 to 3.0.6
35+
936

1037
2.0.12 (2018-12-06)
1138
-------------------

0 commit comments

Comments
 (0)