Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Aug 30, 2021

Bumps openmage/magento-lts from 19.4.8 to 19.4.15.

Release notes

Sourced from openmage/magento-lts's releases.

v19.4.15 - 2021-08-26

2 security updates

CVE-2021-32758 - GHSA-26rr-v2j2-25fh - Layout XML Arbitrary Code Fix CVE-2021-32759 - GHSA-xm9f-vxmx-4m58 - Data Flow Sanitation Issue Fi

more updates:

#1478 make composer validation workflow use --strict #1687 Removed phpdoc to parent doc take effect Bump Version - align version with 20.0 branch #1698 Do not load product when it is already loaded #1715 Fix as attribute for cookie notice #1402 fix ArgumentCountError: array_merge_recursive() #1713 Fix retrun type of getColumn in Column_Renderer_Interface #1254 Fix undefined offset on redis session #1692 Add events list #1670 Updated new events in README.md. #1689 Fixed phpdoc of Mage_Core_Model_Resource_Db_Collection_Abstract::addExpressionFieldToSelect #1665 Removed deprecated flash js (AC_RunActiveContent.js) #1718 Handle empty Order increment prefix #1684 Enforce specific PNG compression level of 9 #1628 Do not load captcha.js when disabled #1637 Grid range filter - optimize SQL query when from === to #1720 rewrite isTableExists for performance reasons #1733 fixes regression introduced by PR 1720 #1746 Fixed phpdoc of Varien_Data_Collection_Db::getSelectSql #1711 Allow BASE_URL to be overridden by environment in install script. #1449 Add support for maintenance mode bypass via maintenance.ip file #1541 Move ahead commits from 1.9.3.x (#447) #1541 Move ahead commits from 1.9.3.x (#583) #1541 Move ahead commits from 1.9.3.x (#575) #1755 removed space after "To" in backend grids #1725 Log exception on api #1701 Code style (endif) #1594 Invalidate reset password token when user changes password. #1724 Add event sales_order_creditmemo_refund_before #1262 Add instruction to add him-/herself to contributors list. #1743 Fixed docblock in addStatusHistoryComment(). #574 Mark indexProcess as STATUS_REQUIRE_REINDEX; it is cleared after #1197 Add redis, and specify in more details + add php7.4 mention #1243 Added proof of stability stack #1627 Fix README.md contributors badge #1380 Add check to avoid js error #1676 Add OpenMage version to API 'magento.info'. #1760 Update contributors list #1770 Add int casting in getLogCleanTime #1797 Phpdoc of Mage_Core_Model_Session_Abstract_Varien

... (truncated)

Commits

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
  • @dependabot use these labels will set the current labels as the default for future PRs for this repo and language
  • @dependabot use these reviewers will set the current reviewers as the default for future PRs for this repo and language
  • @dependabot use these assignees will set the current assignees as the default for future PRs for this repo and language
  • @dependabot use this milestone will set the current milestone as the default for future PRs for this repo and language

You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps [openmage/magento-lts](https://github.com/OpenMage/magento-lts) from 19.4.8 to 19.4.15.
- [Release notes](https://github.com/OpenMage/magento-lts/releases)
- [Commits](OpenMage/magento-lts@v19.4.8...v19.4.15)

---
updated-dependencies:
- dependency-name: openmage/magento-lts
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Aug 30, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants