calendar icon indicating copy to clipboard operation
calendar copied to clipboard

Security and other BUMPS

Open mmattel opened this issue 4 years ago • 9 comments

There are atm 13 open bumps open including an important security one. Some of them are green, at some of them CI did not start. PR #1129 (Release Calendar 1.6.5) should in case of a new build contain the merges if done.

@phil-davis @micbar

mmattel avatar Jan 26 '21 07:01 mmattel

@DeepDiver1975

micbar avatar Jan 27 '21 10:01 micbar

I'd like to push forward the 1.6.5 release. Not sure how many of these version bumps should be included. I'd vote for all, unless they break our CI in a way we cannot easily fix.

jnweiger avatar May 25 '21 11:05 jnweiger

@jnweiger I agree. The calendar app needs to be manually tested anyway. There are unit tests for PHP and JS, but no end-to-end automated UI tests. We may as well apply any dependabot PRs that pass the CI that we have. Then manual testing will confirm that the app UI really works.

Who is going to press the review and merge buttons on the PRs? (I can do it when someone agrees)

phil-davis avatar May 25 '21 12:05 phil-davis

@jnweiger @phil-davis The DEV and release cycles are managed by @DeepDiver1975 only in this app.

We need to wait until he is back in two weeks.

micbar avatar May 25 '21 20:05 micbar

Ping @DeepDiver1975

jnweiger avatar Aug 04 '21 17:08 jnweiger

@DeepDiver1975 @JanAckermann are we ready for release here?

jnweiger avatar Nov 18 '21 09:11 jnweiger

In case the sec bumps are 'only' for build time tools there is no need for a release ...

DeepDiver1975 avatar Nov 18 '21 11:11 DeepDiver1975

@DeepDiver1975 Is it the case? I am happy to close the release ticket then... :-)

jnweiger avatar Feb 10 '22 09:02 jnweiger

Probably obsoleted by #1259 ?

jnweiger avatar Aug 25 '22 14:08 jnweiger

all pending updates were released with 2.0.0 already.

jnweiger avatar Mar 14 '23 12:03 jnweiger