Update league/oauth2-server for CVE-2023-3726 and lcobucci/clock to semver to allow dependencies to update

This commit is contained in:
Joël Pittet 2023-07-10 11:19:54 -07:00
parent 5a9c2925c3
commit a4a676ef0b
2 changed files with 175 additions and 75 deletions

View file

@ -50,7 +50,7 @@
"laravel/tinker": "^2.6", "laravel/tinker": "^2.6",
"laravel/ui": "^3.3", "laravel/ui": "^3.3",
"laravelcollective/html": "^6.2", "laravelcollective/html": "^6.2",
"lcobucci/clock": "1.2.0|2.0.0", "lcobucci/clock": "^1.2.0|^2.0.0",
"lcobucci/jwt": "^3.4.5|^4.0.4", "lcobucci/jwt": "^3.4.5|^4.0.4",
"league/csv": "^9.7", "league/csv": "^9.7",
"league/flysystem-aws-s3-v3": "^1.0", "league/flysystem-aws-s3-v3": "^1.0",

248
composer.lock generated
View file

@ -4,7 +4,7 @@
"Read more about it at https://getcomposer.org/doc/01-basic-usage.md#installing-dependencies", "Read more about it at https://getcomposer.org/doc/01-basic-usage.md#installing-dependencies",
"This file is @generated automatically" "This file is @generated automatically"
], ],
"content-hash": "217a3619f0f4eebdb280299efdd7297e", "content-hash": "0ea87c1711453bcc35abd866100c7668",
"packages": [ "packages": [
{ {
"name": "alek13/slack", "name": "alek13/slack",
@ -657,16 +657,16 @@
}, },
{ {
"name": "defuse/php-encryption", "name": "defuse/php-encryption",
"version": "v2.3.1", "version": "v2.4.0",
"source": { "source": {
"type": "git", "type": "git",
"url": "https://github.com/defuse/php-encryption.git", "url": "https://github.com/defuse/php-encryption.git",
"reference": "77880488b9954b7884c25555c2a0ea9e7053f9d2" "reference": "f53396c2d34225064647a05ca76c1da9d99e5828"
}, },
"dist": { "dist": {
"type": "zip", "type": "zip",
"url": "https://api.github.com/repos/defuse/php-encryption/zipball/77880488b9954b7884c25555c2a0ea9e7053f9d2", "url": "https://api.github.com/repos/defuse/php-encryption/zipball/f53396c2d34225064647a05ca76c1da9d99e5828",
"reference": "77880488b9954b7884c25555c2a0ea9e7053f9d2", "reference": "f53396c2d34225064647a05ca76c1da9d99e5828",
"shasum": "" "shasum": ""
}, },
"require": { "require": {
@ -675,7 +675,8 @@
"php": ">=5.6.0" "php": ">=5.6.0"
}, },
"require-dev": { "require-dev": {
"phpunit/phpunit": "^4|^5|^6|^7|^8|^9" "phpunit/phpunit": "^5|^6|^7|^8|^9|^10",
"yoast/phpunit-polyfills": "^2.0.0"
}, },
"bin": [ "bin": [
"bin/generate-defuse-key" "bin/generate-defuse-key"
@ -717,9 +718,9 @@
], ],
"support": { "support": {
"issues": "https://github.com/defuse/php-encryption/issues", "issues": "https://github.com/defuse/php-encryption/issues",
"source": "https://github.com/defuse/php-encryption/tree/v2.3.1" "source": "https://github.com/defuse/php-encryption/tree/v2.4.0"
}, },
"time": "2021-04-09T23:57:26+00:00" "time": "2023-06-19T06:10:36+00:00"
}, },
{ {
"name": "dflydev/dot-access-data", "name": "dflydev/dot-access-data",
@ -3878,31 +3879,34 @@
}, },
{ {
"name": "lcobucci/clock", "name": "lcobucci/clock",
"version": "2.0.0", "version": "2.3.0",
"source": { "source": {
"type": "git", "type": "git",
"url": "https://github.com/lcobucci/clock.git", "url": "https://github.com/lcobucci/clock.git",
"reference": "353d83fe2e6ae95745b16b3d911813df6a05bfb3" "reference": "c7aadcd6fd97ed9e199114269c0be3f335e38876"
}, },
"dist": { "dist": {
"type": "zip", "type": "zip",
"url": "https://api.github.com/repos/lcobucci/clock/zipball/353d83fe2e6ae95745b16b3d911813df6a05bfb3", "url": "https://api.github.com/repos/lcobucci/clock/zipball/c7aadcd6fd97ed9e199114269c0be3f335e38876",
"reference": "353d83fe2e6ae95745b16b3d911813df6a05bfb3", "reference": "c7aadcd6fd97ed9e199114269c0be3f335e38876",
"shasum": "" "shasum": ""
}, },
"require": { "require": {
"php": "^7.4 || ^8.0" "php": "~8.1.0 || ~8.2.0",
"stella-maris/clock": "^0.1.7"
},
"provide": {
"psr/clock-implementation": "1.0"
}, },
"require-dev": { "require-dev": {
"infection/infection": "^0.17", "infection/infection": "^0.26",
"lcobucci/coding-standard": "^6.0", "lcobucci/coding-standard": "^9.0",
"phpstan/extension-installer": "^1.0", "phpstan/extension-installer": "^1.2",
"phpstan/phpstan": "^0.12", "phpstan/phpstan": "^1.9.4",
"phpstan/phpstan-deprecation-rules": "^0.12", "phpstan/phpstan-deprecation-rules": "^1.1.1",
"phpstan/phpstan-phpunit": "^0.12", "phpstan/phpstan-phpunit": "^1.3.2",
"phpstan/phpstan-strict-rules": "^0.12", "phpstan/phpstan-strict-rules": "^1.4.4",
"phpunit/php-code-coverage": "9.1.4", "phpunit/phpunit": "^9.5.27"
"phpunit/phpunit": "9.3.7"
}, },
"type": "library", "type": "library",
"autoload": { "autoload": {
@ -3923,7 +3927,7 @@
"description": "Yet another clock abstraction", "description": "Yet another clock abstraction",
"support": { "support": {
"issues": "https://github.com/lcobucci/clock/issues", "issues": "https://github.com/lcobucci/clock/issues",
"source": "https://github.com/lcobucci/clock/tree/2.0.x" "source": "https://github.com/lcobucci/clock/tree/2.3.0"
}, },
"funding": [ "funding": [
{ {
@ -3935,20 +3939,20 @@
"type": "patreon" "type": "patreon"
} }
], ],
"time": "2020-08-27T18:56:02+00:00" "time": "2022-12-19T14:38:11+00:00"
}, },
{ {
"name": "lcobucci/jwt", "name": "lcobucci/jwt",
"version": "4.1.5", "version": "4.3.0",
"source": { "source": {
"type": "git", "type": "git",
"url": "https://github.com/lcobucci/jwt.git", "url": "https://github.com/lcobucci/jwt.git",
"reference": "fe2d89f2eaa7087af4aa166c6f480ef04e000582" "reference": "4d7de2fe0d51a96418c0d04004986e410e87f6b4"
}, },
"dist": { "dist": {
"type": "zip", "type": "zip",
"url": "https://api.github.com/repos/lcobucci/jwt/zipball/fe2d89f2eaa7087af4aa166c6f480ef04e000582", "url": "https://api.github.com/repos/lcobucci/jwt/zipball/4d7de2fe0d51a96418c0d04004986e410e87f6b4",
"reference": "fe2d89f2eaa7087af4aa166c6f480ef04e000582", "reference": "4d7de2fe0d51a96418c0d04004986e410e87f6b4",
"shasum": "" "shasum": ""
}, },
"require": { "require": {
@ -3957,19 +3961,19 @@
"ext-mbstring": "*", "ext-mbstring": "*",
"ext-openssl": "*", "ext-openssl": "*",
"ext-sodium": "*", "ext-sodium": "*",
"lcobucci/clock": "^2.0", "lcobucci/clock": "^2.0 || ^3.0",
"php": "^7.4 || ^8.0" "php": "^7.4 || ^8.0"
}, },
"require-dev": { "require-dev": {
"infection/infection": "^0.21", "infection/infection": "^0.21",
"lcobucci/coding-standard": "^6.0", "lcobucci/coding-standard": "^6.0",
"mikey179/vfsstream": "^1.6.7", "mikey179/vfsstream": "^1.6.7",
"phpbench/phpbench": "^1.0", "phpbench/phpbench": "^1.2",
"phpstan/extension-installer": "^1.0", "phpstan/extension-installer": "^1.0",
"phpstan/phpstan": "^0.12", "phpstan/phpstan": "^1.4",
"phpstan/phpstan-deprecation-rules": "^0.12", "phpstan/phpstan-deprecation-rules": "^1.0",
"phpstan/phpstan-phpunit": "^0.12", "phpstan/phpstan-phpunit": "^1.0",
"phpstan/phpstan-strict-rules": "^0.12", "phpstan/phpstan-strict-rules": "^1.0",
"phpunit/php-invoker": "^3.1", "phpunit/php-invoker": "^3.1",
"phpunit/phpunit": "^9.5" "phpunit/phpunit": "^9.5"
}, },
@ -3997,7 +4001,7 @@
], ],
"support": { "support": {
"issues": "https://github.com/lcobucci/jwt/issues", "issues": "https://github.com/lcobucci/jwt/issues",
"source": "https://github.com/lcobucci/jwt/tree/4.1.5" "source": "https://github.com/lcobucci/jwt/tree/4.3.0"
}, },
"funding": [ "funding": [
{ {
@ -4009,7 +4013,7 @@
"type": "patreon" "type": "patreon"
} }
], ],
"time": "2021-09-28T19:34:56+00:00" "time": "2023-01-02T13:28:00+00:00"
}, },
{ {
"name": "league/commonmark", "name": "league/commonmark",
@ -4681,37 +4685,37 @@
}, },
{ {
"name": "league/oauth2-server", "name": "league/oauth2-server",
"version": "8.3.5", "version": "8.5.3",
"source": { "source": {
"type": "git", "type": "git",
"url": "https://github.com/thephpleague/oauth2-server.git", "url": "https://github.com/thephpleague/oauth2-server.git",
"reference": "7aeb7c42b463b1a6fe4d084d3145e2fa22436876" "reference": "eb91b4190e7f6169053ebf8ffa352d47e756b2ce"
}, },
"dist": { "dist": {
"type": "zip", "type": "zip",
"url": "https://api.github.com/repos/thephpleague/oauth2-server/zipball/7aeb7c42b463b1a6fe4d084d3145e2fa22436876", "url": "https://api.github.com/repos/thephpleague/oauth2-server/zipball/eb91b4190e7f6169053ebf8ffa352d47e756b2ce",
"reference": "7aeb7c42b463b1a6fe4d084d3145e2fa22436876", "reference": "eb91b4190e7f6169053ebf8ffa352d47e756b2ce",
"shasum": "" "shasum": ""
}, },
"require": { "require": {
"defuse/php-encryption": "^2.2.1", "defuse/php-encryption": "^2.3",
"ext-json": "*",
"ext-openssl": "*", "ext-openssl": "*",
"lcobucci/jwt": "^3.4.6 || ^4.0.4", "lcobucci/clock": "^2.2 || ^3.0",
"lcobucci/jwt": "^4.3 || ^5.0",
"league/event": "^2.2", "league/event": "^2.2",
"league/uri": "^6.4", "league/uri": "^6.7",
"php": "^7.2 || ^8.0", "php": "^8.0",
"psr/http-message": "^1.0.1" "psr/http-message": "^1.0.1 || ^2.0"
}, },
"replace": { "replace": {
"league/oauth2server": "*", "league/oauth2server": "*",
"lncd/oauth2": "*" "lncd/oauth2": "*"
}, },
"require-dev": { "require-dev": {
"laminas/laminas-diactoros": "^2.4.1", "laminas/laminas-diactoros": "^3.0.0",
"phpstan/phpstan": "^0.12.57", "phpstan/phpstan": "^0.12.57",
"phpstan/phpstan-phpunit": "^0.12.16", "phpstan/phpstan-phpunit": "^0.12.16",
"phpunit/phpunit": "^8.5.13", "phpunit/phpunit": "^9.6.6",
"roave/security-advisories": "dev-master" "roave/security-advisories": "dev-master"
}, },
"type": "library", "type": "library",
@ -4757,7 +4761,7 @@
], ],
"support": { "support": {
"issues": "https://github.com/thephpleague/oauth2-server/issues", "issues": "https://github.com/thephpleague/oauth2-server/issues",
"source": "https://github.com/thephpleague/oauth2-server/tree/8.3.5" "source": "https://github.com/thephpleague/oauth2-server/tree/8.5.3"
}, },
"funding": [ "funding": [
{ {
@ -4765,41 +4769,42 @@
"type": "github" "type": "github"
} }
], ],
"time": "2022-05-03T21:21:28+00:00" "time": "2023-07-05T23:01:32+00:00"
}, },
{ {
"name": "league/uri", "name": "league/uri",
"version": "6.7.1", "version": "6.8.0",
"source": { "source": {
"type": "git", "type": "git",
"url": "https://github.com/thephpleague/uri.git", "url": "https://github.com/thephpleague/uri.git",
"reference": "2d7c87a0860f3126a39f44a8a9bf2fed402dcfea" "reference": "a700b4656e4c54371b799ac61e300ab25a2d1d39"
}, },
"dist": { "dist": {
"type": "zip", "type": "zip",
"url": "https://api.github.com/repos/thephpleague/uri/zipball/2d7c87a0860f3126a39f44a8a9bf2fed402dcfea", "url": "https://api.github.com/repos/thephpleague/uri/zipball/a700b4656e4c54371b799ac61e300ab25a2d1d39",
"reference": "2d7c87a0860f3126a39f44a8a9bf2fed402dcfea", "reference": "a700b4656e4c54371b799ac61e300ab25a2d1d39",
"shasum": "" "shasum": ""
}, },
"require": { "require": {
"ext-json": "*", "ext-json": "*",
"league/uri-interfaces": "^2.3", "league/uri-interfaces": "^2.3",
"php": "^7.4 || ^8.0", "php": "^8.1",
"psr/http-message": "^1.0" "psr/http-message": "^1.0.1"
}, },
"conflict": { "conflict": {
"league/uri-schemes": "^1.0" "league/uri-schemes": "^1.0"
}, },
"require-dev": { "require-dev": {
"friendsofphp/php-cs-fixer": "^v3.3.2", "friendsofphp/php-cs-fixer": "^v3.9.5",
"nyholm/psr7": "^1.5", "nyholm/psr7": "^1.5.1",
"php-http/psr7-integration-tests": "^1.1", "php-http/psr7-integration-tests": "^1.1.1",
"phpstan/phpstan": "^1.2.0", "phpbench/phpbench": "^1.2.6",
"phpstan/phpstan": "^1.8.5",
"phpstan/phpstan-deprecation-rules": "^1.0", "phpstan/phpstan-deprecation-rules": "^1.0",
"phpstan/phpstan-phpunit": "^1.0.0", "phpstan/phpstan-phpunit": "^1.1.1",
"phpstan/phpstan-strict-rules": "^1.1.0", "phpstan/phpstan-strict-rules": "^1.4.3",
"phpunit/phpunit": "^9.5.10", "phpunit/phpunit": "^9.5.24",
"psr/http-factory": "^1.0" "psr/http-factory": "^1.0.1"
}, },
"suggest": { "suggest": {
"ext-fileinfo": "Needed to create Data URI from a filepath", "ext-fileinfo": "Needed to create Data URI from a filepath",
@ -4856,7 +4861,7 @@
"docs": "https://uri.thephpleague.com", "docs": "https://uri.thephpleague.com",
"forum": "https://thephpleague.slack.com", "forum": "https://thephpleague.slack.com",
"issues": "https://github.com/thephpleague/uri/issues", "issues": "https://github.com/thephpleague/uri/issues",
"source": "https://github.com/thephpleague/uri/tree/6.7.1" "source": "https://github.com/thephpleague/uri/tree/6.8.0"
}, },
"funding": [ "funding": [
{ {
@ -4864,7 +4869,7 @@
"type": "github" "type": "github"
} }
], ],
"time": "2022-06-29T09:48:18+00:00" "time": "2022-09-13T19:58:47+00:00"
}, },
{ {
"name": "league/uri-interfaces", "name": "league/uri-interfaces",
@ -7421,6 +7426,54 @@
}, },
"time": "2016-08-06T20:24:11+00:00" "time": "2016-08-06T20:24:11+00:00"
}, },
{
"name": "psr/clock",
"version": "1.0.0",
"source": {
"type": "git",
"url": "https://github.com/php-fig/clock.git",
"reference": "e41a24703d4560fd0acb709162f73b8adfc3aa0d"
},
"dist": {
"type": "zip",
"url": "https://api.github.com/repos/php-fig/clock/zipball/e41a24703d4560fd0acb709162f73b8adfc3aa0d",
"reference": "e41a24703d4560fd0acb709162f73b8adfc3aa0d",
"shasum": ""
},
"require": {
"php": "^7.0 || ^8.0"
},
"type": "library",
"autoload": {
"psr-4": {
"Psr\\Clock\\": "src/"
}
},
"notification-url": "https://packagist.org/downloads/",
"license": [
"MIT"
],
"authors": [
{
"name": "PHP-FIG",
"homepage": "https://www.php-fig.org/"
}
],
"description": "Common interface for reading the clock.",
"homepage": "https://github.com/php-fig/clock",
"keywords": [
"clock",
"now",
"psr",
"psr-20",
"time"
],
"support": {
"issues": "https://github.com/php-fig/clock/issues",
"source": "https://github.com/php-fig/clock/tree/1.0.0"
},
"time": "2022-11-25T14:36:26+00:00"
},
{ {
"name": "psr/container", "name": "psr/container",
"version": "1.1.2", "version": "1.1.2",
@ -7628,25 +7681,25 @@
}, },
{ {
"name": "psr/http-message", "name": "psr/http-message",
"version": "1.0.1", "version": "1.1",
"source": { "source": {
"type": "git", "type": "git",
"url": "https://github.com/php-fig/http-message.git", "url": "https://github.com/php-fig/http-message.git",
"reference": "f6561bf28d520154e4b0ec72be95418abe6d9363" "reference": "cb6ce4845ce34a8ad9e68117c10ee90a29919eba"
}, },
"dist": { "dist": {
"type": "zip", "type": "zip",
"url": "https://api.github.com/repos/php-fig/http-message/zipball/f6561bf28d520154e4b0ec72be95418abe6d9363", "url": "https://api.github.com/repos/php-fig/http-message/zipball/cb6ce4845ce34a8ad9e68117c10ee90a29919eba",
"reference": "f6561bf28d520154e4b0ec72be95418abe6d9363", "reference": "cb6ce4845ce34a8ad9e68117c10ee90a29919eba",
"shasum": "" "shasum": ""
}, },
"require": { "require": {
"php": ">=5.3.0" "php": "^7.2 || ^8.0"
}, },
"type": "library", "type": "library",
"extra": { "extra": {
"branch-alias": { "branch-alias": {
"dev-master": "1.0.x-dev" "dev-master": "1.1.x-dev"
} }
}, },
"autoload": { "autoload": {
@ -7675,9 +7728,9 @@
"response" "response"
], ],
"support": { "support": {
"source": "https://github.com/php-fig/http-message/tree/master" "source": "https://github.com/php-fig/http-message/tree/1.1"
}, },
"time": "2016-08-06T14:39:51+00:00" "time": "2023-04-04T09:50:52+00:00"
}, },
{ {
"name": "psr/log", "name": "psr/log",
@ -8845,6 +8898,53 @@
}, },
"time": "2022-06-18T07:21:10+00:00" "time": "2022-06-18T07:21:10+00:00"
}, },
{
"name": "stella-maris/clock",
"version": "0.1.7",
"source": {
"type": "git",
"url": "https://github.com/stella-maris-solutions/clock.git",
"reference": "fa23ce16019289a18bb3446fdecd45befcdd94f8"
},
"dist": {
"type": "zip",
"url": "https://api.github.com/repos/stella-maris-solutions/clock/zipball/fa23ce16019289a18bb3446fdecd45befcdd94f8",
"reference": "fa23ce16019289a18bb3446fdecd45befcdd94f8",
"shasum": ""
},
"require": {
"php": "^7.0|^8.0",
"psr/clock": "^1.0"
},
"type": "library",
"autoload": {
"psr-4": {
"StellaMaris\\Clock\\": "src"
}
},
"notification-url": "https://packagist.org/downloads/",
"license": [
"MIT"
],
"authors": [
{
"name": "Andreas Heigl",
"role": "Maintainer"
}
],
"description": "A pre-release of the proposed PSR-20 Clock-Interface",
"homepage": "https://gitlab.com/stella-maris/clock",
"keywords": [
"clock",
"datetime",
"point in time",
"psr20"
],
"support": {
"source": "https://github.com/stella-maris-solutions/clock/tree/0.1.7"
},
"time": "2022-11-25T16:15:06+00:00"
},
{ {
"name": "swiftmailer/swiftmailer", "name": "swiftmailer/swiftmailer",
"version": "v6.3.0", "version": "v6.3.0",