phpdraft
phpdraft copied to clipboard
build(deps): bump twig/twig from 3.12.0 to 3.14.0
Bumps twig/twig from 3.12.0 to 3.14.0.
Changelog
Sourced from twig/twig's changelog.
3.14.0 (2024-09-09)
- Fix a security issue when an included sandboxed template has been loaded before without the sandbox context
- Add the possibility to reset globals via
Environment::resetGlobals()- Deprecate
Environment::mergeGlobals()3.13.0 (2024-09-07)
- Add the
typestag (experimental)- Deprecate the
Twig\Test\NodeTestCase::getTests()data provider, overrideprovideTests()instead.- Mark
Twig\Test\NodeTestCase::getEnvironment()as final, overridecreateEnvironment()instead.- Deprecate
Twig\Test\NodeTestCase::getVariableGetter(), callcreateVariableGetter()instead.- Deprecate
Twig\Test\NodeTestCase::getAttributeGetter(), callcreateAttributeGetter()instead.- Deprecate not overriding
Twig\Test\IntegrationTestCase::getFixturesDirectory(), this method will be abstract in 4.0- Marked
Twig\Test\IntegrationTestCase::getTests()andgetLegacyTests()as final
Commits
126b2c9Prepare the 3.14.0 release11f68e2Fix a security issue when an included sandboxed template has been loaded befo...540b54eminor #4290 fix the version mergeGlobals() is deprecated since (xabbuh)7957202Fix testf72c93dfix the version mergeGlobals() is deprecated since064e079Tweak code995e7c2Fix CS6420791minor #4289 Remove unused private methods (fabpot)45e167aAdd more tests28dc912Remove unused private methods- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
-
@dependabot rebasewill rebase this PR -
@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it -
@dependabot mergewill merge this PR after your CI passes on it -
@dependabot squash and mergewill squash and merge this PR after your CI passes on it -
@dependabot cancel mergewill cancel a previously requested merge and block automerging -
@dependabot reopenwill reopen this PR if it is closed -
@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually -
@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency -
@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)