Page MenuHomePhabricator

Upgrade guzzlehttp/psr7
Closed, ResolvedPublic

Description

https://github.com/guzzle/psr7/security/advisories/GHSA-q7rv-6hp3-vh96

We should upgrade guzzlehttp/psr7 in 1.35, 1.36 and 1.37 to >= 1.8.3

An in 1.38 and master... > 2.1.0

Event Timeline

Change 772955 had a related patch set uploaded (by Reedy; author: Reedy):

[mediawiki/vendor@REL1_37] Upgrading guzzlehttp/psr7 (1.7.0 => 1.8.5)

https://gerrit.wikimedia.org/r/772955

Change 772956 had a related patch set uploaded (by Reedy; author: Reedy):

[mediawiki/vendor@REL1_36] Upgrading guzzlehttp/psr7 (1.7.0 => 1.8.5)

https://gerrit.wikimedia.org/r/772956

Change 772957 had a related patch set uploaded (by Reedy; author: Reedy):

[mediawiki/vendor@REL1_35] Upgrading guzzlehttp/psr7 (1.7.0 => 1.8.5)

https://gerrit.wikimedia.org/r/772957

Change 772958 had a related patch set uploaded (by Reedy; author: Reedy):

[mediawiki/vendor@master] Upgrading guzzlehttp/psr7 (2.1.0 => 2.1.2)

https://gerrit.wikimedia.org/r/772958

Change 772960 had a related patch set uploaded (by Reedy; author: Reedy):

[mediawiki/vendor@REL1_38] Upgrading guzzlehttp/psr7 (2.1.0 => 2.1.2)

https://gerrit.wikimedia.org/r/772960

Change 772961 had a related patch set uploaded (by Reedy; author: Reedy):

[mediawiki/vendor@REL1_38] Upgrading guzzlehttp/psr7 (2.1.0 => 2.1.2)

https://gerrit.wikimedia.org/r/772961

Change 772960 abandoned by Reedy:

[mediawiki/vendor@REL1_38] Upgrading guzzlehttp/psr7 (2.1.0 => 2.1.2)

Reason:

https://gerrit.wikimedia.org/r/772960

Change 772957 merged by Reedy:

[mediawiki/vendor@REL1_35] Upgrading guzzlehttp/psr7 (1.7.0 => 1.8.5)

https://gerrit.wikimedia.org/r/772957

Change 772956 merged by Reedy:

[mediawiki/vendor@REL1_36] Upgrading guzzlehttp/psr7 (1.7.0 => 1.8.5)

https://gerrit.wikimedia.org/r/772956

Change 772955 merged by Reedy:

[mediawiki/vendor@REL1_37] Upgrading guzzlehttp/psr7 (1.7.0 => 1.8.5)

https://gerrit.wikimedia.org/r/772955

Change 772961 merged by Reedy:

[mediawiki/vendor@REL1_38] Upgrading guzzlehttp/psr7 (2.1.0 => 2.1.2)

https://gerrit.wikimedia.org/r/772961

Change 772958 merged by jenkins-bot:

[mediawiki/vendor@master] Upgrading guzzlehttp/psr7 (2.1.0 => 2.1.2)

https://gerrit.wikimedia.org/r/772958

Reedy claimed this task.
Reedy triaged this task as Medium priority.