|
You are here |
packagist.org | ||
| | | | |
ocramius.github.io
|
|
| | | | | A new project that helps you avoid composer packages with known security issues/vulnerabilities | |
| | | | |
daniel-siepmann.de
|
|
| | | | | The composer package "maglnet/composer-require-checker" allows you to check whether all used dependencies are actually registered via composer. | |
| | | | |
blog.packagist.com
|
|
| | | | | Please immediately update Composer to version 2.7.0 or 2.2.23 (composer.phar self-update). The new releases includes fixes for a code execution and possible privilege escalation via InstalledVersions.php or installed.php vulnerability (CVE-2024-24821) reported by Ed Cradock. The vulnerability does not impact packagist.org and Private | |
| | | | |
gavinhoward.com
|
|
| | | In which I argue that Source Available Modifiable Software still respects end users. | ||