Skip to content

Bump vimeo/psalm from 3.14.1 to 3.14.2

Wesley Klop requested to merge dependabot/composer/vimeo/psalm-3.14.2 into master

Created by: dependabot[bot]

Bumps vimeo/psalm from 3.14.1 to 3.14.2.

Release notes

Sourced from vimeo/psalm's releases.

Fix another regression

Bugfixes

  • Fix exception when two mixins declare the same method (seen frequently on Laravel, thanks @xyng) – #4013
  • Prevent mixed assignment in loop after positive check (#4011)
  • Allow @psalm-type to reference imported type right above (#3999)
  • Fixed some hash_* function signatures - thanks @baukevdw (#4014)
  • Allow float defaults in namespaced class @method docblock annotations (#4017)
  • Taint analysis - added sinks for pgsql functions - thanks @TysonAndre (#4021)
  • Resolve type aliases in foreach docblock annotations - thanks @weirdan (#4029)
  • Don’t hang when pcntl_fork is disabled - thanks @weirdan (#3951)
  • Add config option to discover unused @psalm-suppress on every run – thanks @micheh (#3011)
Commits

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Merge request reports