John Stevenson
0783b043d2
Fix Windows escaping in tests
3 years ago
John Stevenson
8f974fe741
Improve Windows escaping
3 years ago
Jordi Boggiano
ca5e2f8d50
Fix escaping issues on Windows which could lead to command injection, fixes GHSA-frqg-7g38-6gcf
3 years ago
Jordi Boggiano
1a994e41d4
Update deps
3 years ago
Jordi Boggiano
32eb3b459a
Update deps
3 years ago
Jordi Boggiano
a02802b109
Warn 1.x users when a package is not found that it may be due to our deprecation policy
3 years ago
Jordi Boggiano
cd682f90a6
Update xdebug-handler to latest
3 years ago
Jordi Boggiano
1cdbacbe07
Update changelog
3 years ago
Jordi Boggiano
083b73515d
Merge pull request from GHSA-h5h8-pc6h-jvvx
...
* Fix external process calls to avoid user input being able to pass extra parameters
* Tweak some fixes
3 years ago
Jordi Boggiano
4dc293b289
Update changelog
3 years ago
Jordi Boggiano
96acad1e45
Update github token pattern to match their latest updates
3 years ago
Jordi Boggiano
54889ca109
Document GH token usage and also make sure we redact them in Process debug output, refs #9757
3 years ago
Ayesh Karunaratne
dc83ba93f3
Update GitHub token pattern
...
GitHub is updating the format of auth tokens from `a-z0-9` to `A-Za-z0-9` ([notice](https://github.blog/changelog/2021-03-04-authentication-token-format-updates/ )).
I'm not sure why `.` is allowed, but I dare not to remove it. In this PR, the token validation regex is updated to allow `A-Za-z0-9` instead of the current all lower-case `a-z` and disallowed `_`.
3 years ago
Jordi Boggiano
06003f4da6
Update release step to use php8 as it produces slightly different output wrt white-space, fixes #9746
3 years ago
Jordi Boggiano
812207c823
Merge pull request #9695 from Seldaek/avoid-invalid-dir
...
Fix processes silently ignoring the CWD when it does not exist
3 years ago
Jordi Boggiano
abcf9e993b
Fix processes silently ignoring the CWD when it does not exist, refs #9694
3 years ago
Jordi Boggiano
4d2ae78703
Update changelog
3 years ago
Jordi Boggiano
37c5e9961c
Merge remote-tracking branch 'nicolas-grekas/path-version' into 1.10
3 years ago
Jordi Boggiano
92313447d6
Filter out exclude-from-classmap rules to avoid generating very long regexes, fixes #9487
3 years ago
Jordi Boggiano
bab210777e
Update deps
3 years ago
Nicolas Grekas
725b33ee5a
Handle "versions" option in PathRepository, remove support for "branch-version"
3 years ago
Nicolas Grekas
079e501ac8
Revert "Merge pull request #9273 from nicolas-grekas/dev-version"
...
This reverts commit d2d606ced2
, reversing
changes made to 4a8dbcd145
.
3 years ago
Jordi Boggiano
2cb9630320
Fix $_SERVER var not being updated when using putenv, refs b80038804f
and fixes #9372
3 years ago
Jordi Boggiano
3245a7cca2
Update changelog
4 years ago
Jordi Boggiano
f25271ee22
Add missing file to v1 phar
4 years ago
Jordi Boggiano
3287379483
Update changelog
4 years ago
Jordi Boggiano
8b71199443
Update deps
4 years ago
Jordi Boggiano
5a826ca14f
Merge pull request #9537 from villfa/fix/binaries
...
Fix error with bin config in PHP8
4 years ago
Fabien Villepinte
4e8ca92b6f
Fix error with binaries in PHP8
4 years ago
Jordi Boggiano
b21ee81c99
Update lock file
4 years ago
Jordi Boggiano
2754910dff
Allow php8 usage with Composer 1, fixes #9523
4 years ago
Jordi Boggiano
444b91a3ce
Add docs, refs #9422
4 years ago
Jordi Boggiano
f303419f35
Update changelog
4 years ago
Marco Sirabella
7f936d7dbc
Ignore failures on preg_match for user supplied regex
...
Fixes #7440
See: https://stackoverflow.com/a/12941133/6381767
4 years ago
Jordi Boggiano
78797df5f8
Fix bitbucket handling, fixes #9369
4 years ago
Jordi Boggiano
04e5d725f4
Add docs
4 years ago
Jordi Boggiano
8925b4f596
Attempt fixing handling of root aliases when composer 1 reads composer 2 lock files, fixes #9337
4 years ago
Jordi Boggiano
6f79163a2a
Update changelog
4 years ago
Jordi Boggiano
25496c199d
Update link to composer 2 release notes
4 years ago
Jordi Boggiano
28c7e38411
Merge remote-tracking branch 'stof/fix_why_not' into 1.10
4 years ago
Jordi Boggiano
11e652061e
Merge pull request #9327 from naderman/backport-validate-provide-replace-req
...
Validate: Warn about providing or replacing packages you require
4 years ago
Jordi Boggiano
8883c1eb15
Merge pull request #9326 from naderman/docs-remove-simple-easy
...
Docs: Remove unnecessary uses of simple/easy
4 years ago
Nils Adermann
e868996bdd
Validate: Warn about providing or replacing packages you require
4 years ago
Nils Adermann
b12b50c679
Docs: Remove unnecessary uses of simple/easy
...
They only serve to make anyone reading the docs who doesn't find
something as simple or easy as stated feel bad about themselves, they
don't add anything valuable to the docs in these cases.
4 years ago
Christophe Coevoet
3dd7e829b9
Fix support of provided packages in the why-not command
...
The version provided by such a rule is defined by the constraint of the
rule, not by the package version.
4 years ago
Nils Adermann
dacc21e54f
Merge pull request #9158 from infabo/patch-1
...
Fix symlink check
4 years ago
Jordi Boggiano
5f6c6216e0
Merge pull request #9321 from stof/patch-1
...
Enhance the doc about provide to reduce mistakes
4 years ago
Jordi Boggiano
94e7ed4f05
Merge pull request #9305 from TerryKern/patch-1
...
Improve readability of version info message
4 years ago
Christophe Coevoet
8e9262f129
Enhance the doc about provide to reduce mistakes
4 years ago
terry.kern
0466add822
Also use channel string for update message
...
https://github.com/composer/composer/pull/9305#issuecomment-714381153
4 years ago