Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jan 13, 2025

Bumps smarty/smarty from 4.5.3 to 5.4.3.

Release notes

Sourced from smarty/smarty's releases.

v5.4.3

What's Changed

  • replace/qualify call_user_func_array
  • Restore special handling of isset and empty as it was in v4. Fixes #1063

Full Changelog: smarty-php/smarty@v5.4.2...v5.4.3

v5.4.2

What's Changed

Full Changelog: smarty-php/smarty@v5.4.1...v5.4.2

v5.4.1

What's Changed

New Contributors

Full Changelog: smarty-php/smarty@v5.4.0...v5.4.1

v5.4.0

What's Changed

New Contributors

Full Changelog: smarty-php/smarty@v5.3.1...v5.4.0

v5.3.1

  • Fixed error when using section with nocache #1034

v5.3.0

What's Changed

Full Changelog: smarty-php/smarty@v5.2.0...v5.3.0

... (truncated)

Changelog

Sourced from smarty/smarty's changelog.

[5.4.3] - 2024-12-23

  • Fix PHP backtraces by qualifying/replacing call_user_func_array calls #1074

[5.4.2] - 2024-11-20

  • Support the deprecations introduced in PHP 8.4 and added tests for PHP 8.4 #1043

[5.4.1] - 2024-08-29

  • Enable (and fix) unit tests for Windows #1046
  • Fix the use of "extends:" to define the inheritance tree on Windows #1018

[5.4.0] - 2024-08-14

  • Fixing forced OpCache invalidation on every template include, which is resulting in fast raising wasted OpCache memory #1007
  • Improvement of auto-escaping #1030

[5.3.1] - 2024-06-16

  • Fixed error when using section with nocache #1034

[5.3.0] - 2024-05-30

  • Fix warning when calling hasVariable for an undefined variable #977
  • Added $smarty->prependTemplateDir() method #1022

[5.2.0] - 2024-05-28

  • Fixed a code injection vulnerability in extends-tag. This addresses CVE-2024-35226.
  • Added $smarty->setCacheModifiedCheck() setter for cache_modified_check
  • Added a PSR-4 loading script to allow Smarty to be used without Composer #1017

[5.1.0] - 2024-04-22

  • Prevent deprecation notices during compilation in PHP8.3 #996
  • Fix that getTemplateVars would return an array of objects instead of the assigned variables values #994
  • Fix Smarty::assign() not returning $this when called with an array as first parameter #972
  • Documented support for {if $element is in $array} syntax #937
  • Added support for {if $element is not in $array} syntax #937
  • Using stream variables in templates now throws a deprecation notice #933
  • Internal compiler classes always return a string (the internal has_code flag has been removed for simplicity) #918
  • Fix invalid classnames in Runtime code for foreach #1000

[5.0.2] - 2024-03-28

  • Fix Smarty::assign() not returning $this when called with an array as first parameter #972

[5.0.1] - 2024-03-27

  • Fix error in Smarty\Smarty::compileAllTemplates() by including missing FilesystemIterator class #966

... (truncated)

Commits
  • c6bff57 Merge branch 'release/5.4.3'
  • 07faafe version bump
  • 295b7fb move to official php8.4 image for unit testing in CI
  • cf9de56 Restore special handling of isset and empty as it was in v4. Fixes #1063 (#1093)
  • f47ac76 replace/qualify call_user_func_array. (#1083)
  • 642a97a Merge branch 'release/5.4.2'
  • 3bba3ff version bump
  • b3b43af Add to changelog
  • 1b06b37 Add PHP 8.4 support to Smarty (#1043)
  • a1b4c9c Add unit tests for short hand template function definition and shorthand temp...
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

@dependabot dependabot bot added dependencies Pull requests that update a dependency file php Pull requests that update Php code labels Jan 13, 2025
@dependabot dependabot bot force-pushed the dependabot/composer/smarty/smarty-5.4.3 branch from 904600b to 86a4e7e Compare February 7, 2025 16:11
Bumps [smarty/smarty](https://github.com/smarty-php/smarty) from 4.5.3 to 5.4.3.
- [Release notes](https://github.com/smarty-php/smarty/releases)
- [Changelog](https://github.com/smarty-php/smarty/blob/master/CHANGELOG.md)
- [Commits](smarty-php/smarty@v4.5.3...v5.4.3)

---
updated-dependencies:
- dependency-name: smarty/smarty
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot force-pushed the dependabot/composer/smarty/smarty-5.4.3 branch from 86a4e7e to 103f257 Compare February 7, 2025 16:14
@HaGuesto
Copy link
Member

HaGuesto commented Feb 7, 2025

This is our template engine. In former updates we had breaking changes. This needs a proper review.

@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Apr 14, 2025

Superseded by #693.

@dependabot dependabot bot closed this Apr 14, 2025
@dependabot dependabot bot deleted the dependabot/composer/smarty/smarty-5.4.3 branch April 14, 2025 15:13
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file php Pull requests that update Php code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants