Skip to content

Update phpseclib to resolve Composer security advisories - #138

Closed
grmeyer-hw-dev wants to merge 6 commits into
masterfrom
bugfix/bump_phpseclib
Closed

grmeyer-hw-dev wants to merge 6 commits into
masterfrom
bugfix/bump_phpseclib

Conversation

@grmeyer-hw-dev

Copy link
Copy Markdown
Collaborator

Summary

Updates phpseclib/phpseclib from the vulnerable 2.x constraint to the secure 3.x release line.

Changes

  • Changed phpseclib/phpseclib from ^2.0.11 to ^3.0.
  • Allows Composer dependency installation to pass security advisory checks.
  • Maintains compatibility with gree/jose, which supports phpseclib >=2.0.0.

Validation

  • Regenerated composer.lock.
  • Ran composer install.
  • Ran the test suite successfully.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant