chore(deps): update all dependencies#449
Open
renovate[bot] wants to merge 1 commit into
Open
Conversation
Codecov Report✅ All modified and coverable lines are covered by tests. Additional details and impacted files@@ Coverage Diff @@
## v2.x #449 +/- ##
=========================================
Coverage 98.72% 98.72%
Complexity 783 783
=========================================
Files 29 29
Lines 2275 2275
=========================================
Hits 2246 2246
Misses 29 29 ☔ View full report in Codecov by Harness. 🚀 New features to boost your workflow:
|
renovate
Bot
force-pushed
the
renovate/all
branch
2 times, most recently
from
September 25, 2025 05:38
2c76345 to
7906791
Compare
renovate
Bot
force-pushed
the
renovate/all
branch
2 times, most recently
from
October 3, 2025 20:04
5c6f7ff to
3372222
Compare
renovate
Bot
force-pushed
the
renovate/all
branch
from
November 20, 2025 17:05
3372222 to
822dcc4
Compare
renovate
Bot
force-pushed
the
renovate/all
branch
2 times, most recently
from
January 7, 2026 02:07
55d66bf to
1dcb399
Compare
renovate
Bot
force-pushed
the
renovate/all
branch
2 times, most recently
from
February 10, 2026 15:03
498e280 to
677bf4d
Compare
renovate
Bot
force-pushed
the
renovate/all
branch
2 times, most recently
from
March 8, 2026 04:54
0b2ec5c to
6e77bc0
Compare
renovate
Bot
force-pushed
the
renovate/all
branch
2 times, most recently
from
March 17, 2026 21:31
ca992a0 to
c17ccc5
Compare
renovate
Bot
force-pushed
the
renovate/all
branch
from
March 26, 2026 14:36
c17ccc5 to
6fa51f0
Compare
renovate
Bot
force-pushed
the
renovate/all
branch
2 times, most recently
from
April 15, 2026 17:16
af3e98e to
573e0b1
Compare
renovate
Bot
force-pushed
the
renovate/all
branch
5 times, most recently
from
April 21, 2026 20:06
e385d1f to
440ef79
Compare
renovate
Bot
force-pushed
the
renovate/all
branch
from
June 7, 2026 05:08
440ef79 to
f03c2d2
Compare
renovate
Bot
force-pushed
the
renovate/all
branch
2 times, most recently
from
June 24, 2026 05:35
b1fe3fd to
01e21d8
Compare
renovate
Bot
force-pushed
the
renovate/all
branch
from
July 21, 2026 01:50
01e21d8 to
9bafc14
Compare
renovate
Bot
force-pushed
the
renovate/all
branch
from
July 22, 2026 22:40
9bafc14 to
b909968
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
v4→v7v5→v7^2.8→^3.0v2→4.0.05.1.11→7.0.06.0.8→7.0.06.1.1→7.0.0Release Notes
actions/checkout (actions/checkout)
v7.0.1Compare Source
v7.0.0Compare Source
v7Compare Source
v6.1.0Compare Source
v6.0.3Compare Source
v6.0.2Compare Source
v6.0.1Compare Source
v6.0.0Compare Source
v6Compare Source
v5.1.0Compare Source
v5.0.1Compare Source
v5.0.0Compare Source
v5Compare Source
codecov/codecov-action (codecov/codecov-action)
v7.0.0Compare Source
codecovsecurityaccount. We have deleted the account and are usingcodecovsecopswith the original gpg keyWhat's Changed
Full Changelog: codecov/codecov-action@v6.0.1...v7.0.0
v7Compare Source
v6.0.2Compare Source
This is a copy of the
v7.0.0release to make updates easierWhat's Changed
Full Changelog: codecov/codecov-action@v6.0.1...v6.0.2
v6.0.1Compare Source
What's Changed
Full Changelog: codecov/codecov-action@v6.0.0...v6.0.1
v6.0.0Compare Source
What's Changed
Full Changelog: codecov/codecov-action@v5.5.4...v6.0.0
v6Compare Source
guzzle/psr7 (guzzlehttp/psr7)
v3.0.0Compare Source
Added
DiagnosticValue::escape()to escape controls and malformed UTF-8 in diagnosticsGuzzleHttp\Psr7\Exception\TimeoutExceptionfor timed-out stream operationsGuzzleHttp\Psr7\Utils::redactUserInfoInString()to redact the userinfo of a raw URI string within textGuzzleHttp\Psr7\Rfc3986to public API withisValid*()predicates andcanonicalizeIpv6()GuzzleHttp\Psr7\UriNormalizer::CANONICALIZE_IPV6_HOSTtoPRESERVING_NORMALIZATIONSChanged
psr/http-message:^2.0and add native parameter and return typespsr/http-factory:^1.1ServerRequest::fromGlobals()still uppercasestmp_name,size, orerrorerrorvaluesUploadedFile::moveTo()read()lengths across all stream implementations+flag anywhere in a mode forStream::isReadable()/isWritable()PumpStreamsource callablesPumpStreamclose and detachMessage::bodySummary()nullfor theMessage::bodySummary()truncation length to use the defaultLimitStreamoffset/limit and track non-seekable offset by bytes skippedFnStreamclose and detach terminal, calling close callbacks at most onceFnStreamclose callbacks during destructor cleanupCachingStream::close()idempotent, preserving remote cleanup after detachCachingStreamcursor when aSEEK_ENDtarget on an unknown-size stream is rejectedUri::getPath()and origin-form request targetsfileURIs with rootless paths without the//separatorfileURIs with empty paths asfile:instead of the unparseablefile:////paths with/.UriResolver::relativize()when an empty-path target requires oneUriResolver::relativize()when it would inherit the base fragmentUriResolver::relativize()when an equal-path target's last path segment contains a colonUri::fromParts()ports instead of casting themwsandwssschemeswsandwssdefault ports inUriComparator::isCrossOrigin()port comparisonsUtils::redactUserInfo()$_SERVERbyREQUEST_METHOD, using target authority beforeSERVER_PORTREQUEST_URItargets inServerRequest::fromGlobals()HTTP_HOSTand malformedSERVER_PORTinServerRequest::getUriFromGlobals()REQUEST_METHODandSERVER_PROTOCOLserver values inServerRequest::fromGlobals()Hostand normalize leading-zero ports inMessage::parseRequest()Hostheaders and validate present values for all request-target formsMessage::parseRequest()Hostheader inRequest::withUri()when the URI changes or Host is emptyHostheaders synthesized byMessage::toString()Message::toString()from the request URIHostheaders set byUtils::modifyRequest()URI changesOPTIONS *andCONNECTauthority-form request targets inMessage::parseRequest()Request::withRequestTarget()Utils::streamFor()Query::build()Query::build()andMultipartStreamcontentsUtils::streamFor()Utils::streamFor()now rejects non-string scalar bodiesUri::withQueryValues()now rejects non-string valuesUtils::modifyRequest()change valuesUtils::copyToStream()to throw when destination streams cannot make progressTimeoutExceptionfromStreamread/write andUtilscopy/hash/readLine on stream timeoutsTimeoutExceptionfromAppendStream::read(),CachingStream::read(), andUtils::tryGetContents()on stream timeoutsTimeoutExceptionfromInflateStreamwhen the decoded source stream times outInflateStream::close()Utils::copyToStream()OverflowExceptionwhen stream byte counts or offsets exceedPHP_INT_MAXStreamWrapperruntime failures to PHP stream failure valuesContent-Lengthtomultipart/form-dataparts (RFC 7578 §4.8)Content-Dispositionparameters and reject unsafe boundaries and part headersMultipartStreampart header valuesMultipartStreamboundary'0'instead of replacing it with a generated boundarywithHost(), including userinfo formsUriconstruction,fromParts(), andwithHost()UriComparator::isCrossOrigin()CAPITALIZE_PERCENT_ENCODINGandDECODE_UNRESERVED_CHARACTERSto userinfo and hostHeader::splitList()Header::parse()Removed
ralouphie/getallheadersdependencyHeader::normalize()methodramsey/composer-install (ramsey/composer-install)
v4.0.0Compare Source
What's Changed
chore: Bump actions/cache from 4.2.4 to 5.0.3 by @dependabot[bot] in #278
This necessitates a new major version because actions/cache v5 runs on the Node.js 24 runtime and requires a minimum Actions Runner version of 2.327.1. This is a breaking change for anyone using self-hosted runners.
Full Changelog: ramsey/composer-install@3.2.1...4.0.0
v3.2.1Compare Source
What's Changed
composer.json(andcomposer.lock), as reported in #277.Full Changelog: ramsey/composer-install@3.2.0...3.2.1
v3.2.0Compare Source
What's Changed
New Contributors
Full Changelog: ramsey/composer-install@3.1.1...3.2.0
v3.1.1Compare Source
What's Changed
COMPOSERenvironment variable if it exists; fixes #264Full Changelog: ramsey/composer-install@3.1.0...3.1.1
v3.1.0Compare Source
What's Changed
New Contributors
Full Changelog: ramsey/composer-install@3.0.1...3.1.0
v3.0.1Compare Source
What's Changed
New Contributors
Full Changelog: ramsey/composer-install@3.0.0...3.0.1
v3.0.0Compare Source
Changed
Update actions/cache to v4 to avoid deprecation notices.
This requires a new major version because actions/cache requires Node.js 20, which could cause backwards-compatibility breaks for any projects that require earlier versions of Node.js.
For more details, see the discussion on #252.
Configuration
📅 Schedule: (UTC)
* 0-3 * * 1)🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR was generated by Mend Renovate. View the repository job log.