Skip to content

build(deps-dev): bump the minor-and-patch group across 1 directory with 2 updates - #146

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/composer/sdk/php/minor-and-patch-a418c84729
Closed

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/composer/sdk/php/minor-and-patch-a418c84729

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 8, 2026 •

Copy link
Copy Markdown

Bumps the minor-and-patch group with 2 updates in the /sdk/php directory: giorgiosironi/eris and phpunit/phpunit.

Updates giorgiosironi/eris from 1.1.0 to 1.2.0

Release notes

Sourced from giorgiosironi/eris's releases.

1.2.0

Added

Changed

  • The Composer dist archive now ships only src/, composer.json, LICENSE, README.md and CHANGELOG.md: development files (test/, examples/, docs/, tooling configuration, etc.) are excluded via export-ignore rules in .gitattributes. If you relied on any of them being installed in vendor/, install with --prefer-source or open an issue.

Fixed

  • choose() can generate every integer of a range wider than mt_getrandmax() instead of only some of them, and generates only integers inside a range wider than PHP_INT_MAX instead of floats below its lower limit; a broken random source raises a RuntimeException instead of looping forever (#207), thanks @​sebastianbergmann.
  • An Error (such as DivisionByZeroError or TypeError) raised by a property is reported as itself instead of as an OutOfBoundsException about the evaluation ratio, and listeners are notified of it (#206), thanks @​sebastianbergmann.
Changelog

Sourced from giorgiosironi/eris's changelog.

[1.2.0] - 2026-09-30

Added

Changed

  • The Composer dist archive now ships only src/, composer.json, LICENSE, README.md and CHANGELOG.md: development files (test/, examples/, docs/, tooling configuration, etc.) are excluded via export-ignore rules in .gitattributes. If you relied on any of them being installed in vendor/, install with --prefer-source or open an issue.

Fixed

  • choose() can generate every integer of a range wider than mt_getrandmax() instead of only some of them, and generates only integers inside a range wider than PHP_INT_MAX instead of floats below its lower limit; a broken random source raises a RuntimeException instead of looping forever (#207), thanks @​sebastianbergmann.
  • An Error (such as DivisionByZeroError or TypeError) raised by a property is reported as itself instead of as an OutOfBoundsException about the evaluation ratio, and listeners are notified of it (#206), thanks @​sebastianbergmann.
Commits

Updates phpunit/phpunit from 10.5.64 to 10.5.66

Release notes

Sourced from phpunit/phpunit's releases.

PHPUnit 10.5.66

Changed

  • The Software Bill of Materials (SBOM) embedded in the PHAR now uses CycloneDX 1.7 and provides the NTIA minimum elements as well as the data fields that BSI TR-03183-2 (version 2.1.0) requires for logical and identified components, including component creators, original, distribution and effective licences, source code URIs, and the PHP runtime and its extensions as external components

Learn how to install or update PHPUnit 10.5 in the documentation.

Keep up to date with PHPUnit:

PHPUnit 10.5.65

Changed

  • Do not pass empty output of a test that was run in a separate process to unserialize() (which emits a warning for an empty string as of PHP 8.6)

Learn how to install or update PHPUnit 10.5 in the documentation.

Keep up to date with PHPUnit:

Changelog

Sourced from phpunit/phpunit's changelog.

[10.5.66] - 2026-10-05

Changed

  • The Software Bill of Materials (SBOM) embedded in the PHAR now uses CycloneDX 1.7 and provides the NTIA minimum elements as well as the data fields that BSI TR-03183-2 (version 2.1.0) requires for logical and identified components, including component creators, original, distribution and effective licences, source code URIs, and the PHP runtime and its extensions as external components

[10.5.65] - 2026-09-23

Changed

  • Do not pass empty output of a test that was run in a separate process to unserialize() (which emits a warning for an empty string as of PHP 8.6)
Commits
  • 747c988 Prepare release
  • a7d6e8b Merge branch '9.6' into 10.5
  • 8b5f757 Prepare release
  • d2e3381 Merge branch '8.5' into 9.6
  • 951b085 Prepare release
  • 9063826 Fix CS/WS issues
  • cfda24d Merge branch '9.6' into 10.5
  • 91cb0d4 Merge branch '8.5' into 9.6
  • b488d80 Generate and sign an SBOM for each PHAR file, including its filename and SHA-...
  • d1700ef Add BSI TR-03183-2 data fields to the SBOM embedded in the PHAR
  • Additional commits viewable in compare view

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file php Pull requests that update php code labels Oct 8, 2026
@dependabot
dependabot Bot requested a review from egeominotti as a code owner October 8, 2026 14:39
@vercel

vercel Bot commented Oct 8, 2026 •

Copy link
Copy Markdown

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Actions Updated
docs Ready Ready Preview Oct 8, 2026 3:03pm UTC

@coderabbitai

coderabbitai Bot commented Oct 8, 2026 •

Copy link
Copy Markdown

Important

Review skipped

Bot user detected.

To trigger a single review, invoke the @coderabbitai review command.

⚙️ Run configuration
  • Configuration used: defaults
  • Review profile: CHILL
  • Plan: Advanced
  • Run ID: 5b384310-e8ea-4c6e-8041-8e5281660532

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Use the checkbox below for a quick retry:

  • 🔍 Trigger review
  • Autopilot · Keep fixing CodeRabbit findings and required CI, and resolving merge conflicts

Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands.

…th 2 updates

Bumps the minor-and-patch group with 2 updates in the /sdk/php directory: [giorgiosironi/eris](https://github.com/giorgiosironi/eris) and [phpunit/phpunit](https://github.com/sebastianbergmann/phpunit).


Updates `giorgiosironi/eris` from 1.1.0 to 1.2.0
- [Release notes](https://github.com/giorgiosironi/eris/releases)
- [Changelog](https://github.com/giorgiosironi/eris/blob/master/CHANGELOG.md)
- [Commits](giorgiosironi/eris@1.1.0...1.2.0)

Updates `phpunit/phpunit` from 10.5.64 to 10.5.66
- [Release notes](https://github.com/sebastianbergmann/phpunit/releases)
- [Changelog](https://github.com/sebastianbergmann/phpunit/blob/10.5.66/ChangeLog-10.5.md)
- [Commits](sebastianbergmann/phpunit@10.5.64...10.5.66)

---
updated-dependencies:
- dependency-name: giorgiosironi/eris
  dependency-version: 1.2.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: minor-and-patch
- dependency-name: phpunit/phpunit
  dependency-version: 10.5.66
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: minor-and-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot changed the title build(deps-dev): bump the minor-and-patch group in /sdk/php with 2 updates build(deps-dev): bump the minor-and-patch group across 1 directory with 2 updates Oct 8, 2026
@dependabot
dependabot Bot force-pushed the dependabot/composer/sdk/php/minor-and-patch-a418c84729 branch from 4ace570 to 1f4e7b9 Compare October 8, 2026 15:02
@egeominotti egeominotti closed this Oct 8, 2026
@egeominotti
egeominotti deleted the dependabot/composer/sdk/php/minor-and-patch-a418c84729 branch October 8, 2026 15:36
@dependabot @github

dependabot Bot commented on behalf of github Oct 8, 2026

Copy link
Copy Markdown
Author

This pull request was built based on a group rule. Closing it will not ignore any of these versions in future pull requests.

To ignore these dependencies, configure ignore rules in dependabot.yml

This branch was successfully deployed

1 active deployment
Preview — 1f4e7b92 Deployed Oct 8, 2026 by vercel[bot]
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file php Pull requests that update php code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant