Skip to content

build(deps): Bump phoenix from 1.7.21 to 1.7.23#350

Merged
nelsonic merged 1 commit into
mainfrom
dependabot/hex/phoenix-1.7.23
May 25, 2026
Merged

build(deps): Bump phoenix from 1.7.21 to 1.7.23#350
nelsonic merged 1 commit into
mainfrom
dependabot/hex/phoenix-1.7.23

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github May 11, 2026

Bumps phoenix from 1.7.21 to 1.7.23.

Changelog

Sourced from phoenix's changelog.

1.7.23 (2026-05-06)

Bug fixes

  • Fix invalid status code when longpoll request times out

JavaScript Client Bug Fixes

  • Fix invalid longpoll POST content type argument

1.7.22 (2026-05-05)

Security fixes

  • CVE-2026-32689: Fix Phoenix.Socket Longpoll transport memory exhaustion in nd-JSON body splitting
Commits

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file elixir Pull requests that update elixir code labels May 11, 2026
Bumps [phoenix](https://github.com/phoenixframework/phoenix) from 1.7.21 to 1.7.23.
- [Release notes](https://github.com/phoenixframework/phoenix/releases)
- [Changelog](https://github.com/phoenixframework/phoenix/blob/v1.7.23/CHANGELOG.md)
- [Commits](phoenixframework/phoenix@v1.7.21...v1.7.23)

---
updated-dependencies:
- dependency-name: phoenix
  dependency-version: 1.7.23
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/hex/phoenix-1.7.23 branch from 509f69b to 1a80c38 Compare May 25, 2026 13:20
Copy link
Copy Markdown
Member

@nelsonic nelsonic left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks @dependabot 🤖📕👌

@nelsonic nelsonic merged commit 07a15bc into main May 25, 2026
2 checks passed
@dependabot dependabot Bot deleted the dependabot/hex/phoenix-1.7.23 branch May 25, 2026 14:47
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file elixir Pull requests that update elixir code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant