Problem/Motivation

Modules current required version of dompdf/dompdf conflicts with roave/security-advisories dev-latest.

Problem 1
- drupal/pdf_generator[2.0.2, ..., 2.0.x-dev] require dompdf/dompdf ^1.1 -> satisfiable by dompdf/dompdf[v1.1.0, ..., v1.2.2].
- drupal/pdf_generator[2.0.0, ..., 2.0.1] require dompdf/dompdf ^0.8 -> satisfiable by dompdf/dompdf[v0.8.0, ..., v0.8.6].
- roave/security-advisories dev-latest conflicts with dompdf/dompdf v1.2.2.
- roave/security-advisories dev-latest conflicts with dompdf/dompdf v1.1.1.
- roave/security-advisories dev-latest conflicts with dompdf/dompdf v0.8.6.
- roave/security-advisories dev-latest conflicts with dompdf/dompdf v0.8.5.
- roave/security-advisories dev-latest conflicts with dompdf/dompdf v0.8.3.
- roave/security-advisories dev-latest conflicts with dompdf/dompdf v0.8.2.
- roave/security-advisories dev-latest conflicts with dompdf/dompdf v0.8.1.
- roave/security-advisories dev-latest conflicts with dompdf/dompdf v0.8.0.
- Root composer.json requires roave/security-advisories dev-latest -> satisfiable by roave/security-advisories[dev-latest].
- Root composer.json requires drupal/pdf_generator ^2.0 -> satisfiable by drupal/pdf_generator[2.0.0, ..., 2.0.x-dev].

Steps to reproduce

"composer update --with-dependencies"

Proposed resolution

Update to the latest stable version of dompdf (2.0.0) which address multiple security vulnerabilites.

https://github.com/dompdf/dompdf/releases/tag/v2.0.0

Comments

jerryimiolo created an issue. See original summary.

jerryimiolo’s picture

My attempt to create the patch to correct the issue. Please let me know if there anything I could do better. Thanks!

jncruces’s picture

Status: Active » Closed (duplicate)

I will commit the patch submitted to another issue but i will attempt to add this user to the contribution because this patch is the same and is older than the other patch.