Skip to content

Commit 4fdf01d

Browse files
rhoerrclaude
andcommitted
chore(supported-version): bump composer 2.9.3 -> 2.9.7 (security)
Composer 2.9.3 has a known security vulnerability. Bump to 2.9.7 across all version entries that referenced 2.9.3 (Mage-OS 1.x and 2.2.x lines, the new Magento 2.4.9 entry, and the upcoming-release fields in the magento-open-source composite default/next entries). The composer field is consumed as `tools: composer:v\${{ matrix.composer }}` by setup-php, which requires an exact patch version (a floating "2.9" constraint is not supported by that tool spec). Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>
1 parent f899861 commit 4fdf01d

6 files changed

Lines changed: 23 additions & 23 deletions

File tree

supported-version/dist/index.js

Lines changed: 1 addition & 1 deletion
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

supported-version/src/kind/get-usable.spec.ts

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -84,8 +84,8 @@ describe('getUsableVersions for mage-os', () => {
8484

8585
it('should filter out mage-os 2.2.1 due to security advisory', () => {
8686
mockGetVersions.mockReturnValue({
87-
'mage-os/project-community-edition:2.2.0': { composer: '2.9.3' },
88-
'mage-os/project-community-edition:2.2.1': { composer: '2.9.3' }
87+
'mage-os/project-community-edition:2.2.0': { composer: '2.9.7' },
88+
'mage-os/project-community-edition:2.2.1': { composer: '2.9.7' }
8989
});
9090

9191
const versions = getUsableVersions(project);

supported-version/src/versions/mage-os/composite.json

Lines changed: 7 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -2,7 +2,7 @@
22
"mage-os/project-community-edition:>=1.0 <1.1": {
33
"magento": "mage-os/project-community-edition:>=1.0 <1.1",
44
"php": 8.3,
5-
"composer": "2.9.3",
5+
"composer": "2.9.7",
66
"mysql": "mariadb:10.6",
77
"elasticsearch": "elasticsearch:8.11.4",
88
"rabbitmq": "rabbitmq:3.13-management",
@@ -16,7 +16,7 @@
1616
"mage-os/project-community-edition:>=1.1 <1.2": {
1717
"magento": "mage-os/project-community-edition:>=1.1 <1.2",
1818
"php": 8.4,
19-
"composer": "2.9.3",
19+
"composer": "2.9.7",
2020
"mysql": "mysql:8.4",
2121
"opensearch": "opensearchproject/opensearch:2.19.1",
2222
"rabbitmq": "rabbitmq:4.0-management",
@@ -30,7 +30,7 @@
3030
"mage-os/project-community-edition:>=1.2 <1.3": {
3131
"magento": "mage-os/project-community-edition:>=1.2 <1.3",
3232
"php": 8.4,
33-
"composer": "2.9.3",
33+
"composer": "2.9.7",
3434
"mysql": "mysql:8.4",
3535
"opensearch": "opensearchproject/opensearch:2.19.1",
3636
"rabbitmq": "rabbitmq:4.0-management",
@@ -44,7 +44,7 @@
4444
"mage-os/project-community-edition:>=1.3 <1.4": {
4545
"magento": "mage-os/project-community-edition:>=1.3 <1.4",
4646
"php": 8.4,
47-
"composer": "2.9.3",
47+
"composer": "2.9.7",
4848
"mysql": "mysql:8.4",
4949
"opensearch": "opensearchproject/opensearch:2.19.1",
5050
"rabbitmq": "rabbitmq:4.0-management",
@@ -58,7 +58,7 @@
5858
"mage-os/project-community-edition:>=2.0 <2.1": {
5959
"magento": "mage-os/project-community-edition:>=2.0 <2.1",
6060
"php": 8.4,
61-
"composer": "2.9.3",
61+
"composer": "2.9.7",
6262
"mysql": "mysql:8.4",
6363
"opensearch": "opensearchproject/opensearch:2.19.1",
6464
"rabbitmq": "rabbitmq:4.0-management",
@@ -72,7 +72,7 @@
7272
"mage-os/project-community-edition:>=2.1 <2.2": {
7373
"magento": "mage-os/project-community-edition:>=2.1 <2.2",
7474
"php": 8.4,
75-
"composer": "2.9.3",
75+
"composer": "2.9.7",
7676
"mysql": "mysql:8.4",
7777
"opensearch": "opensearchproject/opensearch:2.19.1",
7878
"rabbitmq": "rabbitmq:4.0-management",
@@ -86,7 +86,7 @@
8686
"mage-os/project-community-edition:>=2.2 <2.3": {
8787
"magento": "mage-os/project-community-edition:>=2.2 <2.3",
8888
"php": 8.4,
89-
"composer": "2.9.3",
89+
"composer": "2.9.7",
9090
"mysql": "mysql:8.4",
9191
"opensearch": "opensearchproject/opensearch:2.19.1",
9292
"rabbitmq": "rabbitmq:4.0-management",

supported-version/src/versions/mage-os/individual.json

Lines changed: 9 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -108,7 +108,7 @@
108108
"magento": "mage-os/project-community-edition:1.1.0",
109109
"upstream": "2.4.8",
110110
"php": 8.4,
111-
"composer": "2.9.3",
111+
"composer": "2.9.7",
112112
"mysql": "mysql:8.4",
113113
"opensearch": "opensearchproject/opensearch:2.19.1",
114114
"rabbitmq": "rabbitmq:4.0-management",
@@ -123,7 +123,7 @@
123123
"magento": "mage-os/project-community-edition:1.1.1",
124124
"upstream": "2.4.8",
125125
"php": 8.4,
126-
"composer": "2.9.3",
126+
"composer": "2.9.7",
127127
"mysql": "mysql:8.4",
128128
"opensearch": "opensearchproject/opensearch:2.19.1",
129129
"rabbitmq": "rabbitmq:4.0-management",
@@ -138,7 +138,7 @@
138138
"magento": "mage-os/project-community-edition:1.2.0",
139139
"upstream": "2.4.8-p1",
140140
"php": 8.4,
141-
"composer": "2.9.3",
141+
"composer": "2.9.7",
142142
"mysql": "mysql:8.4",
143143
"opensearch": "opensearchproject/opensearch:2.19.1",
144144
"rabbitmq": "rabbitmq:4.0-management",
@@ -153,7 +153,7 @@
153153
"magento": "mage-os/project-community-edition:1.3.0",
154154
"upstream": "2.4.8-p2",
155155
"php": 8.4,
156-
"composer": "2.9.3",
156+
"composer": "2.9.7",
157157
"mysql": "mysql:8.4",
158158
"opensearch": "opensearchproject/opensearch:2.19.1",
159159
"rabbitmq": "rabbitmq:4.0-management",
@@ -168,7 +168,7 @@
168168
"magento": "mage-os/project-community-edition:1.3.1",
169169
"upstream": "2.4.8-p2",
170170
"php": 8.4,
171-
"composer": "2.9.3",
171+
"composer": "2.9.7",
172172
"mysql": "mysql:8.4",
173173
"opensearch": "opensearchproject/opensearch:2.19.1",
174174
"rabbitmq": "rabbitmq:4.0-management",
@@ -183,7 +183,7 @@
183183
"magento": "mage-os/project-community-edition:2.0.0",
184184
"upstream": "2.4.8-p3",
185185
"php": 8.4,
186-
"composer": "2.9.3",
186+
"composer": "2.9.7",
187187
"mysql": "mysql:8.4",
188188
"opensearch": "opensearchproject/opensearch:2.19.1",
189189
"rabbitmq": "rabbitmq:4.0-management",
@@ -198,7 +198,7 @@
198198
"magento": "mage-os/project-community-edition:2.1.0",
199199
"upstream": "2.4.8-p3",
200200
"php": 8.4,
201-
"composer": "2.9.3",
201+
"composer": "2.9.7",
202202
"mysql": "mysql:8.4",
203203
"opensearch": "opensearchproject/opensearch:2.19.1",
204204
"rabbitmq": "rabbitmq:4.0-management",
@@ -213,7 +213,7 @@
213213
"magento": "mage-os/project-community-edition:2.2.0",
214214
"upstream": "2.4.8-p4",
215215
"php": 8.4,
216-
"composer": "2.9.3",
216+
"composer": "2.9.7",
217217
"mysql": "mysql:8.4",
218218
"opensearch": "opensearchproject/opensearch:2.19.1",
219219
"rabbitmq": "rabbitmq:4.0-management",
@@ -228,7 +228,7 @@
228228
"magento": "mage-os/project-community-edition:2.2.1",
229229
"upstream": "2.4.8-p4",
230230
"php": 8.4,
231-
"composer": "2.9.3",
231+
"composer": "2.9.7",
232232
"mysql": "mysql:8.4",
233233
"opensearch": "opensearchproject/opensearch:2.19.1",
234234
"rabbitmq": "rabbitmq:4.0-management",

supported-version/src/versions/magento-open-source/composite.json

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -142,7 +142,7 @@
142142
"magento/project-community-edition:>=2.4.9 <2.4.10": {
143143
"magento": "magento/project-community-edition:>=2.4.9 <2.4.10",
144144
"php": 8.4,
145-
"composer": "2.9.3",
145+
"composer": "2.9.7",
146146
"mysql": "mariadb:11.4",
147147
"opensearch": "opensearchproject/opensearch:3",
148148
"rabbitmq": "rabbitmq:4.1-management",
@@ -156,7 +156,7 @@
156156
"magento/project-community-edition": {
157157
"magento": "magento/project-community-edition",
158158
"php": 8.4,
159-
"composer": "2.9.3",
159+
"composer": "2.9.7",
160160
"mysql": "mariadb:11.4",
161161
"opensearch": "opensearchproject/opensearch:3",
162162
"rabbitmq": "rabbitmq:4.1-management",
@@ -170,7 +170,7 @@
170170
"magento/project-community-edition:next": {
171171
"magento": "magento/project-community-edition:next",
172172
"php": 8.4,
173-
"composer": "2.9.3",
173+
"composer": "2.9.7",
174174
"mysql": "mariadb:11.4",
175175
"opensearch": "opensearchproject/opensearch:3",
176176
"rabbitmq": "rabbitmq:4.1-management",

supported-version/src/versions/magento-open-source/individual.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1052,7 +1052,7 @@
10521052
"magento/project-community-edition:2.4.9": {
10531053
"magento": "magento/project-community-edition:2.4.9",
10541054
"php": 8.4,
1055-
"composer": "2.9.3",
1055+
"composer": "2.9.7",
10561056
"mysql": "mariadb:11.4",
10571057
"opensearch": "opensearchproject/opensearch:3",
10581058
"rabbitmq": "rabbitmq:4.1-management",

0 commit comments

Comments
 (0)