Skip to content

[AUTOPATCHER-CORE] Upgrade php to 8.3.35 for CVE-2026-91768, CVE-2026-92842, CVE-2026-6103, CVE-2025-1218, CVE-2026-91769, CVE-2025-14181, CVE-2026-93682, CVE-2026-91766, CVE-2026-91765, CVE-2026-91767 - #18972

Open
azurelinux-ci-jwt-app[bot] wants to merge 2 commits into
fasttrack/3.0from
cblmargh/php-upgrade-to-8.3.35-fasttrack/3.0

Conversation

@azurelinux-ci-jwt-app

@azurelinux-ci-jwt-app azurelinux-ci-jwt-app Bot commented Sep 24, 2026 •

Copy link
Copy Markdown

[AUTOPATCHER-CORE] Upgrade php to 8.3.35 for CVE-2026-91768, CVE-2026-92842, CVE-2026-6103, CVE-2025-1218, CVE-2026-91769, CVE-2025-14181, CVE-2026-93682, CVE-2026-91766, CVE-2026-91765, CVE-2026-91767

Upgrade pipeline run -> https://dev.azure.com/mariner-org/mariner/_build/results?buildId=1209721&view=results
BUDDY BUILD - https://dev.azure.com/mariner-org/mariner/_build/results?buildId=1209732&view=results

@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines:
There may be pipelines that require an authorized user to comment /azp run to run.

@microsoft-github-policy-service microsoft-github-policy-service Bot added Packaging fasttrack/3.0 PRs Destined for Azure Linux 3.0 labels Sep 24, 2026
@Kanishk-Bansal
Kanishk Bansal (Kanishk-Bansal) marked this pull request as draft September 24, 2026 17:13
@Kanishk-Bansal
Kanishk Bansal (Kanishk-Bansal) marked this pull request as ready for review September 24, 2026 17:46
@Kanishk-Bansal Kanishk Bansal (Kanishk-Bansal) changed the title [AUTOPATCHER-CORE] Upgrade php to 8.3.35 for CVEs [AUTOPATCHER-CORE] Upgrade php to 8.3.35 for CVE-2026-91768, CVE-2026-92842, CVE-2026-6103, CVE-2025-1218, CVE-2026-91769, CVE-2025-14181, CVE-2026-93682, CVE-2026-91766, CVE-2026-91765, CVE-2026-91767 Sep 26, 2026
Updated changelog for PHP package to specify CVEs addressed in the upgrade.
@Kanishk-Bansal Kanishk Bansal (Kanishk-Bansal) added the CVEFixReadyForMaintainerReview When a CVE fix has been reviewed by release manager and is ready for stable maintainer review label Sep 26, 2026

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

AutoUpgrade Core CVE-fixed-by-upgrade CVE fixed by package upgrade CVEFixReadyForMaintainerReview When a CVE fix has been reviewed by release manager and is ready for stable maintainer review fasttrack/3.0 PRs Destined for Azure Linux 3.0 Packaging security

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants