Released: PHP_CodeSniffer 3.13.6
This is a security release fixing an OS command injection vulnerability.
Users are advised to upgrade as soon as possible.
Thanks go to Faze-up and @edorian@phpc.social for responsibly disclosing the vulnerability and to @edorian@phpc.social, @rodrigosprimo@mastodon.social, @fredden@mastodon.online and @jrf_nl@phpc.social for creating and testing the fix.
https://github.com/PHPCSStandards/PHP_CodeSniffer/releases/tag/3.13.6
Remote
Making it easy to make your code more maintainable.
340 Followers
6 Following
5 Posts
Joined November 07, 2023
Twitter:
Fund the project:
Open post
Released: PHPCSUtils 1.2.3
This is a security release fixing an arbitrary code execution vulnerability.
Users are advised to upgrade as soon as possible.
Thanks go to @rodrigosprimo@mastodon.social and @edorian@phpc.social for working with me on this.
https://github.com/PHPCSStandards/PHPCSUtils/releases/tag/1.2.3
1
0
2
0
Open post
Today marks the one year anniversary since I took on - and took over - as the maintainer of the PHP_CodeSniffer project.
To celebrate and reflect on this, I've published an overview of the year for the funders of the project.
Thank you all for your continued support!
And for those not (yet) funding the project, please consider following the good example set by our supporters!
https://opencollective.com/php_codesniffer/updates/php_codesniffer-one-year-in
18
0
15
0
Open post
Released: PHP_CodeSniffer 4.0.2/4.0.4
This is a security release fixing an OS command injection vulnerability, as well as containing a number of other improvements and bug fixes.
Users are advised to upgrade as soon as possible.
Note: the 4.0.4 release is essentially the same as the 4.0.2 release, with the only difference being the version number.
https://github.com/PHPCSStandards/PHP_CodeSniffer/releases/tag/4.0.2
https://github.com/PHPCSStandards/PHP_CodeSniffer/releases/tag/4.0.4
0
0
0
0
Open post
Replying to
@timwolla@phpc.social @heiglandreas@phpc.social @kleisli@mastodon.social @naderman@phpc.social @OndrejMirtes@phpc.social @markusstaab@phpc.social @toflar@phpc.social That was not by choice, but by necessity as the previous key had expired.
In other words: couldn't be helped🤷♀️
0
1
0
0