Mettre a jour les dependances PHP vulnerables signalees par composer audit #17
Labels
No labels
area: auth
area: deps
area: frontend
area: gameplay
area: import
area: infra
area: product
area: tests
priority: P0
priority: P1
priority: P2
priority: P3
type: bug
type: chore
type: feature
type: infrastructure
type: performance
type: security
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference: thibaud-lclr/ltbxd-actorle#17
Loading…
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
1. Le souci
composer auditremonte des advisories sur des dependances PHP, notammentphpunit/phpunitetsymfony/process.2. Proposition de solution
Mettre a jour les versions affectees, verifier les impacts de compatibilite et figer un niveau de securite propre en dev comme en runtime.
3. Proposition d'implementation
composer updatecible et les tests ;symfony/processest reellement utilise dans un contexte sensible ;composer audita la routine CI/verification.