Skip to content

Bump the php-prod group across 1 directory with 15 updates - #2104

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/composer/php-prod-2ff3465543
Open

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/composer/php-prod-2ff3465543

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 18, 2026 •

Copy link
Copy Markdown
Contributor

Bumps the php-prod group with 15 updates in the / directory:

Package From To
beberlei/assert 3.3.3 3.3.4
doctrine/dbal 4.4.3 4.4.5
doctrine/orm 3.6.7 3.7.1
monolog/monolog 3.10.0 3.12.0
ramsey/uuid 4.9.2 4.9.4
symfony/console 7.4.11 7.4.20
symfony/dotenv 7.4.11 7.4.18
symfony/expression-language 7.4.8 7.4.18
symfony/mailer 7.4.12 7.4.19
symfony/security-bundle 7.4.12 7.4.18
symfony/translation 7.4.10 7.4.17
symfony/twig-bundle 7.4.8 7.4.19
symfony/validator 7.4.10 7.4.19
symfony/yaml 7.4.12 7.4.18
twig/twig 3.26.0 3.30.0

Updates beberlei/assert from 3.3.3 to 3.3.4

Release notes

Sourced from beberlei/assert's releases.

v3.3.4

What's Changed

Full Changelog: beberlei/assert@v3.3.3...v3.3.4

Commits

Updates doctrine/dbal from 4.4.3 to 4.4.5

Release notes

Sourced from doctrine/dbal's releases.

4.4.5

Release Notes for 4.4.5

4.4.5

  • Total issues resolved: 0
  • Total pull requests resolved: 8
  • Total contributors: 5

Dependencies,Test Suite

Bugfixes

Static Analysis

Test Suite

4.4.4

Release Notes for 4.4.4

4.4.4

  • Total issues resolved: 1
  • Total pull requests resolved: 18
  • Total contributors: 6

Bug,Error Handling,PostgreSQL

Bug,MySQL,Schema Introspection

... (truncated)

Commits

Updates doctrine/orm from 3.6.7 to 3.7.1

Release notes

Sourced from doctrine/orm's releases.

3.7.1

Release Notes for 3.7.1

3.7.1

  • Total issues resolved: 0
  • Total pull requests resolved: 2
  • Total contributors: 1

Bugfixes

3.7.0

Release Notes for 3.7.0

Feature release (minor)

3.7.0

  • Total issues resolved: 3
  • Total pull requests resolved: 35
  • Total contributors: 13

New Features

Improvements

... (truncated)

Commits
  • 037807a Merge pull request #12607 from greg0ire/fix-12606
  • e0f980f Merge pull request #12603 from greg0ire/single-dispatch
  • 7d857bf Merge pull request #12611 from doctrine/2.20.x
  • 68d6a26 Merge pull request #12610 from pawel-slowik/schema-tool-drop-database-docs
  • 3739443 Update documentation for SchemaTool DROP_DATABASE / dropDatabase
  • 1800016 Ensure ToolEvents::postGenerateSchema is called once
  • 58bda41 Avoid creating duplicate index for conflicting STI associations
  • e118419 Merge pull request #12601 from greg0ire/update-branch-metadata
  • 1b5410d Remove version with few downloads
  • 0e26f5b Update branch metadata
  • Additional commits viewable in compare view

Updates monolog/monolog from 3.10.0 to 3.12.0

Release notes

Sourced from monolog/monolog's releases.

3.12.0

  • Added support for reading the timestamp of new records from a PSR-20 clock, via a new $clock constructor param and Logger::setClock() (#2065)
  • Added support for #[WithMonologChannel] on constructor/method parameters, so a channel can be bound to a single argument instead of the whole class (#2068)
  • Fixed TelegramBotHandler breaking HTML markup when truncating or splitting long messages, open tags are now closed at the end of a chunk and reopened in the next one (#2066)
  • Fixed RedactingFormatter not redacting secrets nested inside array values of sensitive keys (#2067)

Full Changelog: Seldaek/monolog@3.11.0...3.12.0

3.11.0

  • Security: Fixed potential XSS in BrowserConsoleHandler when logging user provided content
  • Added RedactingFormatter to automatically redact sensitive data from records, based on key names, #[SensitiveParameter] constructor params and/or regex patterns (#2041)
  • Added FrankenPhpHandler to log records via FrankenPHP's frankenphp_log() function (#2056)
  • Added LogMonsterHandler which complains if the code did not log enough records before the process/request ends, like a dead man's switch for logs (#2039)
  • Added FILE_PER_HOUR rotation mode to RotatingFileHandler (#2040)
  • Added ErrorHandler::captureStackTraces() to attach the stack trace of PHP errors to the records it generates (#2060)
  • Added NormalizerFormatter::setMaxTraceLength() to limit how many stack trace frames are included when normalizing exceptions (#2015)
  • Added extension points to TelegramBotHandler to change the API URL (e.g. for a self-hosted Bot API server) and to send extra curl headers (#2029)
  • Added ability to override IntrospectionProcessor's SKIP_FUNCTIONS in subclasses (#2050)
  • Added $maxLength param to SyslogUdpHandler/UdpSocket to keep datagrams below the path MTU, as fragmented UDP packets are often dropped (#2049)
  • Fixed StreamHandler truncating writes on non-blocking streams, it now loops until the whole record is written (#2016)
  • Fixed stack trace frames without file/line being skipped, they are now reported as internal[function] entries so traces are not truncated or empty (#2061)
  • Fixed RotatingFileHandler cleanup not finding files behind stream wrappers (e.g. private://) as glob() cannot see through those (#2058)
  • Fixed RotatingFileHandler not using the configured timezone when computing the next rotation time (#2022)
  • Fixed scalars being replaced by the "Over N levels deep" message instead of being output when the max normalization depth is reached (#2042)
  • Fixed DeduplicationHandler failing with an undefined array key error when the store file is written to concurrently (#2020)
  • Fixed TelegramBotHandler swallowing errors when the API returns a non-JSON response (#2030)
  • Fixed AbstractProcessingHandler::handle() reading $bubble directly instead of calling getBubble(), so overrides of it were ignored (#2031)
  • Fixed warning on PHP 8.5 when ErrorHandler sets the HTTP response code and a status line was already registered (#2027)

Full Changelog: Seldaek/monolog@3.10.0...3.11.0

Changelog

Sourced from monolog/monolog's changelog.

3.12.0 (2026-09-09)

  • Added support for reading the timestamp of new records from a PSR-20 clock, via a new $clock constructor param and Logger::setClock() (#2065)
  • Added support for #[WithMonologChannel] on constructor/method parameters, so a channel can be bound to a single argument instead of the whole class (#2068)
  • Fixed TelegramBotHandler breaking HTML markup when truncating or splitting long messages, open tags are now closed at the end of a chunk and reopened in the next one (#2066)
  • Fixed RedactingFormatter not redacting secrets nested inside array values of sensitive keys (#2067)

3.11.0 (2026-09-02)

  • Security: Fixed potential XSS in BrowserConsoleHandler when logging user provided content
  • Added RedactingFormatter to automatically redact sensitive data from records, based on key names, #[SensitiveParameter] constructor params and/or regex patterns (#2041)
  • Added FrankenPhpHandler to log records via FrankenPHP's frankenphp_log() function (#2056)
  • Added LogMonsterHandler which complains if the code did not log enough records before the process/request ends, like a dead man's switch for logs (#2039)
  • Added FILE_PER_HOUR rotation mode to RotatingFileHandler (#2040)
  • Added ErrorHandler::captureStackTraces() to attach the stack trace of PHP errors to the records it generates (#2060)
  • Added NormalizerFormatter::setMaxTraceLength() to limit how many stack trace frames are included when normalizing exceptions (#2015)
  • Added extension points to TelegramBotHandler to change the API URL (e.g. for a self-hosted Bot API server) and to send extra curl headers (#2029)
  • Added ability to override IntrospectionProcessor's SKIP_FUNCTIONS in subclasses (#2050)
  • Added $maxLength param to SyslogUdpHandler/UdpSocket to keep datagrams below the path MTU, as fragmented UDP packets are often dropped (#2049)
  • Fixed StreamHandler truncating writes on non-blocking streams, it now loops until the whole record is written (#2016)
  • Fixed stack trace frames without file/line being skipped, they are now reported as internal[function] entries so traces are not truncated or empty (#2061)
  • Fixed RotatingFileHandler cleanup not finding files behind stream wrappers (e.g. private://) as glob() cannot see through those (#2058)
  • Fixed RotatingFileHandler not using the configured timezone when computing the next rotation time (#2022)
  • Fixed scalars being replaced by the "Over N levels deep" message instead of being output when the max normalization depth is reached (#2042)
  • Fixed DeduplicationHandler failing with an undefined array key error when the store file is written to concurrently (#2020)
  • Fixed TelegramBotHandler swallowing errors when the API returns a non-JSON response (#2030)
  • Fixed AbstractProcessingHandler::handle() reading $bubble directly instead of calling getBubble(), so overrides of it were ignored (#2031)
  • Fixed warning on PHP 8.5 when ErrorHandler sets the HTTP response code and a status line was already registered (#2027)
Commits
  • 72c534f Update changelog
  • 7f81d36 Fix baseline
  • 1ab1776 Add more mongodb version pins
  • d3d822a Fix baseline
  • c1dd221 Fix TelegramBotHandler breaking HTML tags when truncating or splitting long m...
  • ddcd2b4 Fix mongodb version in phpstan build as well
  • b8f218d Allow reading the timestamp of log records from a PSR-20 clock (#2065)
  • 9e5649c Fix couchdb install warning
  • f04a319 Pin a higher version of mongodb to avoid problems with outdated versions
  • 2313cc7 Fix RedactingFormatter missing secrets nested in array-valued sensitive keys ...
  • Additional commits viewable in compare view

Updates ramsey/uuid from 4.9.2 to 4.9.4

Release notes

Sourced from ramsey/uuid's releases.

4.9.4

Fixed

  • Add support for brick/math ^0.19, ^0.20, and ^1.0; fixed in #642.

Full Changelog: ramsey/uuid@4.9.3...4.9.4

4.9.3

Fixed

  • Upgrade brick/math to support versions ^0.14 to ^0.17; fixed in #638.
  • Add support for brick/math ^0.18.

New Contributors

Full Changelog: ramsey/uuid@4.9.2...4.9.3

Changelog

Sourced from ramsey/uuid's changelog.

4.9.4 - 2026-09-16

Fixed

  • Add support for brick/math ^0.19, ^0.20, and ^1.0; fixed in #642.

4.9.3 - 2026-06-18

Fixed

  • Upgrade brick/math to support versions ^0.14 to ^0.17; fixed in #638.
  • Add support for brick/math ^0.18.
Commits
  • 75d73f4 Prepare release 4.9.4
  • 40988c5 Fix: Add support for brick/math:^0.19, brick/math:^0.20, and `brick/math:...
  • da5b521 Fix brick/math support (#640)
  • 1df1584 Prepare release 4.9.3
  • 5525d34 Upgrade PHPStan to 2.2 and remove superfluous assertion
  • 0d95f9e Support brick/math 0.18
  • 1a1f98b [4.x] Upgrade brick/math to support versions ^0.14–^0.17 (#638)
  • 3d1c6d9 chore(deps): bump codecov/codecov-action from 5 to 6
  • 39d47ce chore(deps): bump ramsey/composer-install from 3 to 4
  • See full diff in compare view

Updates symfony/console from 7.4.11 to 7.4.20

Release notes

Sourced from symfony/console's releases.

v7.4.20

Changelog (symfony/console@v7.4.19...v7.4.20)

v7.4.19

Changelog (symfony/console@v7.4.18...v7.4.19)

v7.4.18

Changelog (symfony/console@v7.4.17...v7.4.18)

v7.4.17

Changelog (symfony/console@v7.4.16...v7.4.17)

v7.4.16

Changelog (symfony/console@v7.4.15...v7.4.16)

v7.4.15

Changelog (symfony/console@v7.4.14...v7.4.15)

v7.4.14

Changelog (symfony/console@v7.4.13...v7.4.14)

... (truncated)

Commits
  • d7bca2f Merge branch '6.4' into 7.4
  • 0f758df [Console] Fix quadratic formatting of non-ASCII content
  • 3a19734 [Console] Report a validation error instead of a TypeError on numeric argumen...
  • 9553be3 [Console] [FrameworkBundle] Adapt merged tests to the 7.4 APIs
  • 30dc1f2 Merge branch '6.4' into 7.4
  • 9e118dd [Console] Keep messages containing malformed UTF-8 when wrapping
  • 2e7eaed [Console] Type the autocompleter callback as returning a list
  • 9e7bbe1 [Console] Disambiguate the autocompleter callback return type
  • a3ae4ce Merge branch '6.4' into 7.4
  • 91860d4 [Console] Cover the zsh completion against running the typed command line
  • Additional commits viewable in compare view

Updates symfony/dotenv from 7.4.11 to 7.4.18

Release notes

Sourced from symfony/dotenv's releases.

v7.4.18

Changelog (symfony/dotenv@v7.4.15...v7.4.18)

v7.4.15

Changelog (symfony/dotenv@v7.4.14...v7.4.15)

v7.4.14

Changelog (symfony/dotenv@v7.4.11...v7.4.14)

Commits
  • 99b5b14 Merge branch '6.4' into 7.4
  • 9b82700 [Dotenv] Don't collapse backslashes of external env var values
  • 23f6c99 [Dotenv] Don't truncate external env vars containing $ when only reachable vi...
  • 045d497 Merge branch '6.4' into 7.4
  • c7cce4c [Dotenv] Allow multiple underscores at start
  • 9b9c7a0 Merge branch '6.4' into 7.4
  • d71597d Drop PR warning and auto-closing on subtree splits
  • 1506847 Merge branch '6.4' into 7.4
  • fccc03c [Dotenv] Don't truncate external env vars containing $ when referenced via ${...
  • See full diff in compare view

Updates symfony/expression-language from 7.4.8 to 7.4.18

Release notes

Sourced from symfony/expression-language's releases.

v7.4.18

Changelog (symfony/expression-language@v7.4.14...v7.4.18)

v7.4.14

Changelog (symfony/expression-language@v7.4.9...v7.4.14)

Commits
  • b738665 Merge branch '6.4' into 7.4
  • 91edabb Merge branch '5.4' into 6.4
  • 5a4915a [ExpressionLanguage] Bound the nesting level of parsed expressions
  • 517821b Check arrays and bools directly instead of comparing them to count()/true/fal...
  • 92c24e8 Merge branch '6.4' into 7.4
  • d033441 Check arrays and bools directly instead of comparing them to count()/true/fal...
  • bd5763f Merge branch '6.4' into 7.4
  • 728f0c4 Unsafe unserialize phpstan rule
  • da18576 Merge branch '6.4' into 7.4
  • 04007e7 Drop PR warning and auto-closing on subtree splits
  • Additional commits viewable in compare view

Updates symfony/mailer from 7.4.12 to 7.4.19

Release notes

Sourced from symfony/mailer's releases.

v7.4.19

Changelog (symfony/mailer@v7.4.17...v7.4.19)

v7.4.17

Changelog (symfony/mailer@v7.4.15...v7.4.17)

v7.4.15

Changelog (symfony/mailer@v7.4.14...v7.4.15)

  • bug #64985 Fix fatal TypeError when sending a RawMessage via an API transport (@​Baylox)
  • bug #64710 Reject control characters in SmtpTransport::setLocalDomain() (@​iliaal)

v7.4.14

Changelog (symfony/mailer@v7.4.12...v7.4.14)

  • bug #64605 Register MicrosoftGraphTransportFactory in Transport::FACTORY_CLASSES (@​Amoifr)
Commits
  • 6f6f244 Merge branch '6.4' into 7.4
  • 21cc391 [Mailer] Run the assertions that follow the expected exception
  • d6d5516 Merge branch '6.4' into 7.4
  • 7aa759f [Mailer] Reconnect when the server closed the transmission channel
  • b17c9bf Merge branch '6.4' into 7.4
  • cea6ee2 bug #65527 [Mailer] Fix emails reported twice when they are queued and sent i...
  • e41bf16 Merge branch '6.4' into 7.4
  • 0032e81 [Mailer] Fix the SMTP scheme check in the transport factory test case
  • cb508fa [Mailer] Fix emails reported twice when they are queued and sent in the same ...
  • 2f294d3 Merge branch '6.4' into 7.4
  • Additional commits viewable in compare view

Updates symfony/security-bundle from 7.4.12 to 7.4.18

Release notes

Sourced from symfony/security-bundle's releases.

v7.4.18

Changelog (symfony/security-bundle@v7.4.15...v7.4.18)

v7.4.15

Changelog (symfony/security-bundle@v7.4.14...v7.4.15)

v7.4.14

Changelog (symfony/security-bundle@v7.4.13...v7.4.14)

v7.4.13

Changelog (symfony/security-bundle@v7.4.12...v7.4.13)

Commits
  • caaa8b9 [Security] Stop calling the APIs that web-token/jwt-framework 4.3 deprecates
  • e9b3f2b Merge branch '6.4' into 7.4
  • de06cd0 [SecurityBundle] Un-skip the explicit lock factory login throttling test
  • 524649d Merge branch '6.4' into 7.4
  • 7984320 Merge branch '5.4' into 6.4
  • 06c3aba [SecurityBundle] Use a lock for login throttling by default
  • 7b0c144 [SecurityBundle] Make the remember-me cookie follow the session cookie defaults
  • e1a2295 [Security] Apply "signature_properties" when a remember-me token provider is ...
  • 4ec887a Merge branch '6.4' into 7.4
  • f60e680 Check arrays and bools directly instead of comparing them to count()/true/fal...
  • Additional commits viewable in compare view

Updates symfony/translation from 7.4.10 to 7.4.17

Release notes

Sourced from symfony/translation's releases.

v7.4.17

Changelog (symfony/translation@v7.4.16...v7.4.17)

v7.4.16

Changelog (symfony/translation@v7.4.14...v7.4.16)

v7.4.14

Changelog (symfony/translation@v7.4.13...v7.4.14)

Commits
  • 2ee1e4a Merge branch '6.4' into 7.4
  • fa22355 [Translation] Stop leaking a copy of the xml.xsd schema per validated file in...
  • c85687f Merge branch '6.4' into 7.4
  • 6cce7cb [Translation] Fix extracting TranslatableMessage with nikic/php-parser 4
  • f621e40 Merge branch '6.4' into 7.4
  • acc8658 [Translation] Read CSV translations without SplFileObject
  • 5f4cb20 Merge branch '6.4' into 7.4
  • 889e806 Check arrays and bools directly instead of comparing them to count()/true/fal...
  • fc1a12f Merge branch '6.4' into 7.4
  • 9a565ad [Translation] Do not extract messages from classes merely named TranslatableM...
  • Additional commits viewable in

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file php Pull requests that update php code labels Sep 18, 2026
@dependabot
dependabot Bot force-pushed the dependabot/composer/php-prod-2ff3465543 branch from 724a3e6 to 1099b51 Compare September 23, 2026 03:44
Bumps the php-prod group with 15 updates in the / directory:

| Package | From | To |
| --- | --- | --- |
| [beberlei/assert](https://github.com/beberlei/assert) | `3.3.3` | `3.3.4` |
| [doctrine/dbal](https://github.com/doctrine/dbal) | `4.4.3` | `4.4.5` |
| [doctrine/orm](https://github.com/doctrine/orm) | `3.6.7` | `3.7.1` |
| [monolog/monolog](https://github.com/Seldaek/monolog) | `3.10.0` | `3.12.0` |
| [ramsey/uuid](https://github.com/ramsey/uuid) | `4.9.2` | `4.9.4` |
| [symfony/console](https://github.com/symfony/console) | `7.4.11` | `7.4.20` |
| [symfony/dotenv](https://github.com/symfony/dotenv) | `7.4.11` | `7.4.18` |
| [symfony/expression-language](https://github.com/symfony/expression-language) | `7.4.8` | `7.4.18` |
| [symfony/mailer](https://github.com/symfony/mailer) | `7.4.12` | `7.4.19` |
| [symfony/security-bundle](https://github.com/symfony/security-bundle) | `7.4.12` | `7.4.18` |
| [symfony/translation](https://github.com/symfony/translation) | `7.4.10` | `7.4.17` |
| [symfony/twig-bundle](https://github.com/symfony/twig-bundle) | `7.4.8` | `7.4.19` |
| [symfony/validator](https://github.com/symfony/validator) | `7.4.10` | `7.4.19` |
| [symfony/yaml](https://github.com/symfony/yaml) | `7.4.12` | `7.4.18` |
| [twig/twig](https://github.com/twigphp/Twig) | `3.26.0` | `3.30.0` |



Updates `beberlei/assert` from 3.3.3 to 3.3.4
- [Release notes](https://github.com/beberlei/assert/releases)
- [Changelog](https://github.com/beberlei/assert/blob/master/CHANGELOG.md)
- [Commits](beberlei/assert@v3.3.3...v3.3.4)

Updates `doctrine/dbal` from 4.4.3 to 4.4.5
- [Release notes](https://github.com/doctrine/dbal/releases)
- [Commits](doctrine/dbal@4.4.3...4.4.5)

Updates `doctrine/orm` from 3.6.7 to 3.7.1
- [Release notes](https://github.com/doctrine/orm/releases)
- [Commits](doctrine/orm@3.6.7...3.7.1)

Updates `monolog/monolog` from 3.10.0 to 3.12.0
- [Release notes](https://github.com/Seldaek/monolog/releases)
- [Changelog](https://github.com/Seldaek/monolog/blob/main/CHANGELOG.md)
- [Commits](Seldaek/monolog@3.10.0...3.12.0)

Updates `ramsey/uuid` from 4.9.2 to 4.9.4
- [Release notes](https://github.com/ramsey/uuid/releases)
- [Changelog](https://github.com/ramsey/uuid/blob/4.x/CHANGELOG.md)
- [Commits](ramsey/uuid@4.9.2...4.9.4)

Updates `symfony/console` from 7.4.11 to 7.4.20
- [Release notes](https://github.com/symfony/console/releases)
- [Changelog](https://github.com/symfony/console/blob/8.2/CHANGELOG.md)
- [Commits](symfony/console@v7.4.11...v7.4.20)

Updates `symfony/dotenv` from 7.4.11 to 7.4.18
- [Release notes](https://github.com/symfony/dotenv/releases)
- [Changelog](https://github.com/symfony/dotenv/blob/8.2/CHANGELOG.md)
- [Commits](symfony/dotenv@v7.4.11...v7.4.18)

Updates `symfony/expression-language` from 7.4.8 to 7.4.18
- [Release notes](https://github.com/symfony/expression-language/releases)
- [Changelog](https://github.com/symfony/expression-language/blob/8.2/CHANGELOG.md)
- [Commits](symfony/expression-language@v7.4.8...v7.4.18)

Updates `symfony/mailer` from 7.4.12 to 7.4.19
- [Release notes](https://github.com/symfony/mailer/releases)
- [Changelog](https://github.com/symfony/mailer/blob/8.2/CHANGELOG.md)
- [Commits](symfony/mailer@v7.4.12...v7.4.19)

Updates `symfony/security-bundle` from 7.4.12 to 7.4.18
- [Release notes](https://github.com/symfony/security-bundle/releases)
- [Changelog](https://github.com/symfony/security-bundle/blob/8.2/CHANGELOG.md)
- [Commits](symfony/security-bundle@v7.4.12...v7.4.18)

Updates `symfony/translation` from 7.4.10 to 7.4.17
- [Release notes](https://github.com/symfony/translation/releases)
- [Changelog](https://github.com/symfony/translation/blob/8.2/CHANGELOG.md)
- [Commits](symfony/translation@v7.4.10...v7.4.17)

Updates `symfony/twig-bundle` from 7.4.8 to 7.4.19
- [Release notes](https://github.com/symfony/twig-bundle/releases)
- [Changelog](https://github.com/symfony/twig-bundle/blob/8.2/CHANGELOG.md)
- [Commits](symfony/twig-bundle@v7.4.8...v7.4.19)

Updates `symfony/validator` from 7.4.10 to 7.4.19
- [Release notes](https://github.com/symfony/validator/releases)
- [Changelog](https://github.com/symfony/validator/blob/8.2/CHANGELOG.md)
- [Commits](symfony/validator@v7.4.10...v7.4.19)

Updates `symfony/yaml` from 7.4.12 to 7.4.18
- [Release notes](https://github.com/symfony/yaml/releases)
- [Changelog](https://github.com/symfony/yaml/blob/8.2/CHANGELOG.md)
- [Commits](symfony/yaml@v7.4.12...v7.4.18)

Updates `twig/twig` from 3.26.0 to 3.30.0
- [Release notes](https://github.com/twigphp/Twig/releases)
- [Changelog](https://github.com/twigphp/Twig/blob/3.x/CHANGELOG)
- [Commits](twigphp/Twig@v3.26.0...v3.30.0)

---
updated-dependencies:
- dependency-name: beberlei/assert
  dependency-version: 3.3.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: php-prod
- dependency-name: doctrine/dbal
  dependency-version: 4.4.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: php-prod
- dependency-name: doctrine/orm
  dependency-version: 3.6.8
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: php-prod
- dependency-name: monolog/monolog
  dependency-version: 3.11.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: php-prod
- dependency-name: ramsey/uuid
  dependency-version: 4.9.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: php-prod
- dependency-name: symfony/console
  dependency-version: 7.4.19
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: php-prod
- dependency-name: symfony/dotenv
  dependency-version: 7.4.18
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: php-prod
- dependency-name: symfony/expression-language
  dependency-version: 7.4.18
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: php-prod
- dependency-name: symfony/mailer
  dependency-version: 7.4.17
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: php-prod
- dependency-name: symfony/security-bundle
  dependency-version: 7.4.18
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: php-prod
- dependency-name: symfony/translation
  dependency-version: 7.4.17
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: php-prod
- dependency-name: symfony/twig-bundle
  dependency-version: 7.4.15
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: php-prod
- dependency-name: symfony/validator
  dependency-version: 7.4.18
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: php-prod
- dependency-name: symfony/yaml
  dependency-version: 7.4.18
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: php-prod
- dependency-name: twig/twig
  dependency-version: 3.29.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: php-prod
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/composer/php-prod-2ff3465543 branch from 1099b51 to 93b2758 Compare October 2, 2026 03:44
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file php Pull requests that update php code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants