3.1 KiB
		
	
	
	
	
	
	
	
			
		
		
	
	
			3.1 KiB
		
	
	
	
	
	
	
	
Changelog
All notable changes to this project will be documented in this file, in reverse chronological order by release.
2.5.6 - TBD
Added
- Nothing.
Deprecated
- Nothing.
Removed
- Nothing.
Fixed
- Nothing.
2.5.5 - 2016-08-08
Added
- #44, #45, #46, #47, #48, and #49 prepare the documentation for publication at https://zendframework.github.io/zend-http/
Deprecated
- Nothing.
Removed
- Nothing.
Fixed
- #87 fixes the
ContentLengthconstructor to test for a non null value (vs a falsy value) before validating the value; this ensures 0 values may be specified for the length.
- #85 fixes infinite recursion on AbstractAccept. If you create a new Accept and try to call getFieldValue(), an infinite recursion and a fatal error happens.
- #58 avoid triggering a notice with special crafted accept headers. In the case the value of an accept header does not contain an equal sign, an "Undefined offset" notice is triggered.
2.5.4 - 2016-02-04
Added
- Nothing.
Deprecated
- Nothing.
Removed
- Nothing.
Fixed
- #42 updates dependencies to ensure it can work with PHP 5.5+ and 7.0+, as well as zend-stdlib 2.5+/3.0+.
2.5.3 - 2015-09-14
Added
- Nothing.
Deprecated
- Nothing.
Removed
- Nothing.
Fixed
- #23 fixes a BC break
introduced with fixes for ZF2015-04,
pertaining specifically to the SetCookieheader. The fix backs out a check for message splitting syntax, as that particular class already encodes the value in a manner that prevents the attack. It also adds tests to ensure the security vulnerability remains patched.
2.5.2 - 2015-08-05
Added
- Nothing.
Deprecated
- Nothing.
Removed
- Nothing.
Fixed
- #7 fixes a call in the
proxy adapter to Response::extractCode(), which does not exist, toResponse::fromString()->getStatusCode(), which does.
- #8 ensures that the Curl
client adapter enables the CURLINFO_HEADER_OUT, which is required to ensure we can fetch the raw request after it is sent.
- #14 fixes
Zend\Http\PhpEnvironment\Requestto ensure that emptySCRIPT_FILENAMEandSCRIPT_NAMEvalues which result in an empty$baseUrlwill not raise anE_WARNINGwhen used to do astrpos()check during base URI detection.
