Symfony 7.2.0-RC1 released

Symfony 7.2.0-RC1 has just been released. Here is the list of the most important changes since 7.2.0-BETA2:

feature #58852 [TypeInfo] Remove @experimental tag (@mtarld)

feature #57630 [TypeInfo] Redesign Type methods and nullability (@mtarld) security… https://symfony.com/blog/symfony-7-2-0-rc1-released?utm_source=Symfony%20Blog%20Feed&utm_medium=feed

1mo | Symfony
Symfony 5.4.47 released

Symfony 5.4.47 has just been released. Here is the list of the most important changes since 5.4.46:

security #cve-2024-50342 [HttpClient] Resolve hostnames in NoPrivateNetworkHttpClient (@nicolas-grekas)

security #cve-2024-51996 [Security] Check owner… https://symfony.com/blog/symfony-5-4-47-released?utm_source=Symfony%20Blog%20Feed&utm_medium=feed

1mo | Symfony
Symfony 6.4.15 released

Symfony 6.4.15 has just been released. Here is the list of the most important changes since 6.4.14:

security #cve-2024-50342 [HttpClient] Resolve hostnames in NoPrivateNetworkHttpClient (@nicolas-grekas)

security #cve-2024-51996 [Security] Check owner… https://symfony.com/blog/symfony-6-4-15-released?utm_source=Symfony%20Blog%20Feed&utm_medium=feed

1mo | Symfony
A Week of Symfony #932 (4-10 November 2024)

This week, Symfony 5.4.46, 6.4.14, and 7.1.7, maintenance versions were released. In addition, we released the second beta version of Symfony 7.2 ahead of its final release at the end of November 2024. Lastly, we published eight security advisories to fix… https://symfony.com/blog/a-week-of-symfony-932-4-10-november-2024?utm_source=Symfony%20Blog%20Feed&utm_medium=feed

2mo | Symfony
New in Symfony 7.2: Constraint Improvements

In Symfony 7.2, besides introducing three new constraints and improving the Compound constraint, we've also improved other constraints.

Added a Validation Mode for BIC Constraint… https://symfony.com/blog/new-in-symfony-7-2-constraint-improvements?utm_source=Symfony%20Blog%20Feed&utm_medium=feed

2mo | Symfony
Less than a month to go: Get ready for SymfonyCon Vienna 2024!

<

SymfonyCon Vienna is only a month away! 🎉 The full schedule is now online, packed with everything you need to plan for this incredible event with the Symfony and PHP community.

Quick tip: personalize your SymfonyLive profile to let us know your… https://symfony.com/blog/less-than-a-month-to-go-get-ready-for-symfonycon-vienna-2024?utm_source=Symfony%20Blog%20Feed&utm_medium=feed

2mo | Symfony
Twig CVE-2024-51754: Unguarded calls to __toString() in a sandbox when an object is in an array or an argument list

Affected versions

Twig versions <3.11.2; >=3.12,<3.14.1 are affected by this security issue.

The issue has been fixed in Twig 3.11.2 and 3.14.1. Note that Twig versions 1 and 2 are not maintained anymore and are vulnerable.

Description

In a sandbox,… https://symfony.com/blog/cve-2024-51754-unguarded-calls-to-tostring-in-a-sandbox-when-an-object-is-in-an-array-or-an-argument-list?utm_source=Symfony%20Blog%20Feed&utm_medium=feed

2mo | Symfony

Membres



Chercher