Skip to content

Commit dcef827

Browse files
authored
ci: pin composer to 2.9.8 to avoid GitHub Actions token disclosure (#7974)
1 parent f533810 commit dcef827

2 files changed

Lines changed: 27 additions & 27 deletions

File tree

.github/workflows/ci.yml

Lines changed: 26 additions & 26 deletions
Original file line numberDiff line numberDiff line change
@@ -42,7 +42,7 @@ jobs:
4242
php-version: ${{ matrix.php }}
4343
extensions: intl, bcmath, curl, openssl, mbstring, mongodb
4444
ini-values: memory_limit=-1
45-
tools: pecl, composer
45+
tools: pecl, composer:2.9.8
4646
coverage: none
4747
- name: Get composer cache directory
4848
id: composercache
@@ -103,7 +103,7 @@ jobs:
103103
php-version: ${{ matrix.php }}
104104
extensions: intl, bcmath, curl, openssl, mbstring
105105
ini-values: memory_limit=-1
106-
tools: composer
106+
tools: composer:2.9.8
107107
coverage: none
108108
- name: Get composer cache directory
109109
id: composercache
@@ -143,7 +143,7 @@ jobs:
143143
uses: shivammathur/setup-php@v2
144144
with:
145145
php-version: ${{ matrix.php }}
146-
tools: pecl, composer
146+
tools: pecl, composer:2.9.8
147147
extensions: intl, bcmath, curl, openssl, mbstring, mongodb
148148
coverage: none
149149
ini-values: memory_limit=-1
@@ -207,7 +207,7 @@ jobs:
207207
php-version: ${{ matrix.php }}
208208
extensions: intl, bcmath, curl, openssl, mbstring
209209
ini-values: memory_limit=-1
210-
tools: composer
210+
tools: composer:2.9.8
211211
coverage: none
212212
- name: Get composer cache directory
213213
id: composercache
@@ -258,7 +258,7 @@ jobs:
258258
uses: shivammathur/setup-php@v2
259259
with:
260260
php-version: ${{ matrix.php }}
261-
tools: pecl, composer
261+
tools: pecl, composer:2.9.8
262262
extensions: intl, bcmath, curl, openssl, mbstring, pdo_sqlite
263263
coverage: pcov
264264
ini-values: memory_limit=-1
@@ -344,7 +344,7 @@ jobs:
344344
uses: shivammathur/setup-php@v2
345345
with:
346346
php-version: ${{ matrix.php.version }}
347-
tools: pecl, composer
347+
tools: pecl, composer:2.9.8
348348
extensions: intl, bcmath, curl, openssl, mbstring, pdo_sqlite
349349
ini-values: memory_limit=-1
350350
- name: PMU
@@ -430,7 +430,7 @@ jobs:
430430
uses: shivammathur/setup-php@v2
431431
with:
432432
php-version: ${{ matrix.php.version }}
433-
tools: pecl, composer
433+
tools: pecl, composer:2.9.8
434434
extensions: intl, bcmath, curl, openssl, mbstring, pdo_sqlite
435435
ini-values: memory_limit=-1
436436
- name: Linking
@@ -471,7 +471,7 @@ jobs:
471471
uses: shivammathur/setup-php@v2
472472
with:
473473
php-version: ${{ matrix.php }}
474-
tools: pecl, composer
474+
tools: pecl, composer:2.9.8
475475
extensions: intl, bcmath, curl, openssl, mbstring, pdo_sqlite
476476
coverage: pcov
477477
ini-values: memory_limit=-1
@@ -565,7 +565,7 @@ jobs:
565565
uses: shivammathur/setup-php@v2
566566
with:
567567
php-version: ${{ matrix.php }}
568-
tools: pecl, composer
568+
tools: pecl, composer:2.9.8
569569
extensions: intl, bcmath, curl, openssl, mbstring, pdo_pgsql
570570
coverage: none
571571
ini-values: memory_limit=-1
@@ -620,7 +620,7 @@ jobs:
620620
uses: shivammathur/setup-php@v2
621621
with:
622622
php-version: ${{ matrix.php }}
623-
tools: pecl, composer
623+
tools: pecl, composer:2.9.8
624624
extensions: intl, bcmath, curl, openssl, mbstring, pdo_mysql
625625
coverage: none
626626
ini-values: memory_limit=-1
@@ -675,7 +675,7 @@ jobs:
675675
uses: shivammathur/setup-php@v2
676676
with:
677677
php-version: ${{ matrix.php }}
678-
tools: pecl, composer
678+
tools: pecl, composer:2.9.8
679679
extensions: intl, bcmath, curl, openssl, mbstring, mongodb
680680
coverage: pcov
681681
ini-values: memory_limit=-1
@@ -769,7 +769,7 @@ jobs:
769769
uses: shivammathur/setup-php@v2
770770
with:
771771
php-version: ${{ matrix.php }}
772-
tools: pecl, composer
772+
tools: pecl, composer:2.9.8
773773
extensions: intl, bcmath, curl, openssl, mbstring, mongodb
774774
coverage: pcov
775775
ini-values: memory_limit=-1
@@ -867,7 +867,7 @@ jobs:
867867
uses: shivammathur/setup-php@v2
868868
with:
869869
php-version: ${{ matrix.php }}
870-
tools: pecl, composer
870+
tools: pecl, composer:2.9.8
871871
extensions: ${{ matrix.extensions }}
872872
coverage: none
873873
ini-values: memory_limit=-1
@@ -929,7 +929,7 @@ jobs:
929929
uses: shivammathur/setup-php@v2
930930
with:
931931
php-version: ${{ matrix.php }}
932-
tools: pecl, composer
932+
tools: pecl, composer:2.9.8
933933
extensions: ${{ matrix.extensions }}
934934
coverage: none
935935
ini-values: memory_limit=-1
@@ -969,7 +969,7 @@ jobs:
969969
uses: shivammathur/setup-php@v2
970970
with:
971971
php-version: ${{ matrix.php }}
972-
tools: pecl, composer
972+
tools: pecl, composer:2.9.8
973973
extensions: intl, bcmath, curl, openssl, mbstring
974974
coverage: none
975975
ini-values: memory_limit=-1
@@ -1008,7 +1008,7 @@ jobs:
10081008
uses: shivammathur/setup-php@v2
10091009
with:
10101010
php-version: ${{ matrix.php }}
1011-
tools: pecl, composer
1011+
tools: pecl, composer:2.9.8
10121012
extensions: intl, bcmath, curl, openssl, mbstring
10131013
coverage: none
10141014
ini-values: memory_limit=-1
@@ -1051,7 +1051,7 @@ jobs:
10511051
uses: shivammathur/setup-php@v2
10521052
with:
10531053
php-version: ${{ matrix.php }}
1054-
tools: pecl, composer
1054+
tools: pecl, composer:2.9.8
10551055
extensions: intl, bcmath, curl, openssl, mbstring
10561056
coverage: none
10571057
ini-values: memory_limit=-1
@@ -1096,7 +1096,7 @@ jobs:
10961096
uses: shivammathur/setup-php@v2
10971097
with:
10981098
php-version: ${{ matrix.php }}
1099-
tools: pecl, composer
1099+
tools: pecl, composer:2.9.8
11001100
extensions: intl, bcmath, curl, openssl, mbstring
11011101
coverage: none
11021102
ini-values: memory_limit=-1
@@ -1146,7 +1146,7 @@ jobs:
11461146
uses: shivammathur/setup-php@v2
11471147
with:
11481148
php-version: ${{ matrix.php }}
1149-
tools: pecl, composer
1149+
tools: pecl, composer:2.9.8
11501150
extensions: intl, bcmath, curl, openssl, mbstring, pdo_sqlite, fileinfo
11511151
coverage: none
11521152
ini-values: memory_limit=-1
@@ -1196,7 +1196,7 @@ jobs:
11961196
uses: shivammathur/setup-php@v2
11971197
with:
11981198
php-version: ${{ matrix.php }}
1199-
tools: pecl, composer
1199+
tools: pecl, composer:2.9.8
12001200
extensions: intl, bcmath, curl, openssl, mbstring
12011201
coverage: none
12021202
ini-values: memory_limit=-1
@@ -1240,7 +1240,7 @@ jobs:
12401240
uses: shivammathur/setup-php@v2
12411241
with:
12421242
php-version: ${{ matrix.php }}
1243-
tools: pecl, composer
1243+
tools: pecl, composer:2.9.8
12441244
extensions: intl, bcmath, curl, openssl, mbstring
12451245
coverage: none
12461246
ini-values: memory_limit=-1
@@ -1287,7 +1287,7 @@ jobs:
12871287
uses: shivammathur/setup-php@v2
12881288
with:
12891289
php-version: ${{ matrix.php }}
1290-
tools: pecl, composer
1290+
tools: pecl, composer:2.9.8
12911291
extensions: intl, bcmath, curl, openssl, mbstring, pdo_sqlite
12921292
coverage: pcov
12931293
ini-values: memory_limit=-1
@@ -1363,7 +1363,7 @@ jobs:
13631363
uses: shivammathur/setup-php@v2
13641364
with:
13651365
php-version: ${{ matrix.php }}
1366-
tools: pecl, composer
1366+
tools: pecl, composer:2.9.8
13671367
extensions: intl, bcmath, curl, openssl, mbstring, pdo_sqlite
13681368
coverage: pcov
13691369
ini-values: memory_limit=-1
@@ -1411,7 +1411,7 @@ jobs:
14111411
uses: shivammathur/setup-php@v2
14121412
with:
14131413
php-version: ${{ matrix.php }}
1414-
tools: pecl, composer
1414+
tools: pecl, composer:2.9.8
14151415
extensions: intl, bcmath, curl, openssl, mbstring, pdo_sqlite
14161416
ini-values: memory_limit=-1
14171417
- name: Setup node
@@ -1461,7 +1461,7 @@ jobs:
14611461
uses: shivammathur/setup-php@v2
14621462
with:
14631463
php-version: ${{ matrix.php }}
1464-
tools: pecl, composer
1464+
tools: pecl, composer:2.9.8
14651465
extensions: intl, bcmath, curl, openssl, mbstring, pdo_sqlite
14661466
ini-values: memory_limit=-1
14671467
- name: Update project dependencies
@@ -1487,7 +1487,7 @@ jobs:
14871487
uses: shivammathur/setup-php@v2
14881488
with:
14891489
php-version: 8.5
1490-
tools: pecl, composer
1490+
tools: pecl, composer:2.9.8
14911491
extensions: intl, bcmath, curl, openssl, mbstring, pdo_sqlite
14921492
ini-values: memory_limit=-1
14931493
- name: Update project dependencies

.github/workflows/guides.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -24,7 +24,7 @@ jobs:
2424
uses: shivammathur/setup-php@v2
2525
with:
2626
php-version: 8.2
27-
tools: pecl, composer
27+
tools: pecl, composer:2.9.8
2828
extensions: intl, bcmath, curl, openssl, mbstring, pdo_sqlite
2929
coverage: none
3030
ini-values: memory_limit=-1

0 commit comments

Comments
 (0)