Commit Graph

5051 Commits

Author SHA1 Message Date
oleibman 8654e805f4 Ods Writer Eliminate Padding at End of Row
Ods Writer currently will write something like `<table:table-cell table:number-columns-repeated="1023" />` at the end of each row. This is not necessary. In eliminating that, I have made the code a bit more efficient and (hopefully) more readable.
2024-12-05 20:14:12 -08:00
oleibman ad0289977b Merge pull request #4258 from oleibman/upgrdfixer
Upgrade php-cs-fixer
2024-12-01 14:13:06 +00:00
oleibman 4357263e9d Upgrade php-cs-fixer
Dependabot push required a very minor code change.
2024-12-01 06:04:52 -08:00
oleibman 41d6f5af03 Merge pull request #4253 from PHPOffice/dependabot/composer/squizlabs/php_codesniffer-3.11.1
Bump squizlabs/php_codesniffer from 3.10.3 to 3.11.1
2024-12-01 12:37:22 +00:00
oleibman b0f5e641af Merge pull request #4254 from PHPOffice/dependabot/composer/mitoteam/jpgraph-10.4.3
Bump mitoteam/jpgraph from 10.4.1 to 10.4.3
2024-12-01 12:36:54 +00:00
oleibman dd2e96a3f6 Merge pull request #4255 from PHPOffice/dependabot/composer/mpdf/mpdf-8.2.5
Bump mpdf/mpdf from 8.2.4 to 8.2.5
2024-12-01 12:36:30 +00:00
dependabot[bot] c9d62867c7 Bump mpdf/mpdf from 8.2.4 to 8.2.5
Bumps [mpdf/mpdf](https://github.com/mpdf/mpdf) from 8.2.4 to 8.2.5.
- [Release notes](https://github.com/mpdf/mpdf/releases)
- [Changelog](https://github.com/mpdf/mpdf/blob/development/CHANGELOG.md)
- [Commits](https://github.com/mpdf/mpdf/compare/v8.2.4...v8.2.5)

---
updated-dependencies:
- dependency-name: mpdf/mpdf
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-12-01 11:53:48 +00:00
dependabot[bot] 00b2ae5e4c Bump mitoteam/jpgraph from 10.4.1 to 10.4.3
Bumps [mitoteam/jpgraph](https://github.com/mitoteam/jpgraph) from 10.4.1 to 10.4.3.
- [Release notes](https://github.com/mitoteam/jpgraph/releases)
- [Commits](https://github.com/mitoteam/jpgraph/compare/10.4.1...10.4.3)

---
updated-dependencies:
- dependency-name: mitoteam/jpgraph
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-12-01 11:53:44 +00:00
dependabot[bot] bfd2fe72d8 Bump squizlabs/php_codesniffer from 3.10.3 to 3.11.1
Bumps [squizlabs/php_codesniffer](https://github.com/PHPCSStandards/PHP_CodeSniffer) from 3.10.3 to 3.11.1.
- [Release notes](https://github.com/PHPCSStandards/PHP_CodeSniffer/releases)
- [Changelog](https://github.com/PHPCSStandards/PHP_CodeSniffer/blob/master/CHANGELOG.md)
- [Commits](https://github.com/PHPCSStandards/PHP_CodeSniffer/compare/3.10.3...3.11.1)

---
updated-dependencies:
- dependency-name: squizlabs/php_codesniffer
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-12-01 11:53:39 +00:00
oleibman d9d5ae8736 Merge pull request #4247 from oleibman/issue4246
Swapped Row and Column Indexes in ReferenceHelper
2024-11-30 03:31:34 +00:00
oleibman 1972cb101e Merge branch 'master' into issue4246 2024-11-29 19:29:05 -08:00
oleibman 54fd177ea5 Update CHANGELOG.md 2024-11-29 19:28:16 -08:00
oleibman a0699607bf Merge pull request #4244 from oleibman/issue4241
Fix Minor Break Handling Drawings
2024-11-30 03:16:36 +00:00
oleibman 8efb0fc4f3 Merge branch 'master' into issue4241 2024-11-29 19:13:21 -08:00
oleibman 0e9719b68d Update CHANGELOG.md 2024-11-29 19:12:27 -08:00
oleibman d4ffa3e894 Merge pull request #4243 from sirbaconjr/fix-dollar-sign-issue-4242
Escape any dollar signs when formatting cell data
2024-11-30 02:35:31 +00:00
oleibman 2454696dc6 Swapped Row and Column Indexes in ReferenceHelper
Fix #4246. This can cause an Exception in unusual circumstances.
2024-11-27 18:06:23 -08:00
oleibman 690cb21166 Handle Escaped Quote in Format 2024-11-27 17:04:18 -08:00
oleibman 4b568b47b4 Handle Case Where Both Format and Value Contain Quotation Mark 2024-11-26 15:20:32 -08:00
Everton Barbosa 3eee74950f Ignore cell formatting when the format is a single @
This commit fix two issues that happened when the a cell was formatted as text
* When the cell contains a number prefixed with dollar sign, this number is getting replaced with 0. The replacement happens due to the preg_replace function.
* When the cell contains quotes, the quote would be removed.
2024-11-26 17:20:47 -03:00
oleibman a70b33570e Merge pull request #4239 from oleibman/phpunit11d
Use Php Attributes Rather than Annotations for PhpUnit
2024-11-26 15:03:51 +00:00
oleibman 5c3ae52446 Fix Minor Break Handling Drawings
Fix #4241. Some security batches caused a minor break in Drawings, forcing `setWorksheet` to come after `setPath`. Although the problem is easily fixed in user code, this was not an intended change. Some slight recoding restores the earlier functionality where the order of calls was not important, without sacrificing the security gains. This change will be back-ported to the other active branches to which the security patch had been applied.
2024-11-25 19:54:38 -08:00
oleibman d647fe7ee7 Use Php Attributes Rather than Annotations for PhpUnit
With PhpUnit 10 came the ability to use Php attributes rather than doc-block annotations for things like "data provider". PhpUnit 11 deprecates the use of annotations, and PhpUnit 12 will not not permit their use. Since PhpUnit 11 requires Php8.2+, we cannot adopt it as long as we support Php8.1, which will continue to be the case for some time. However, there is no penalty for early adoption.

Php-cs-fixer can use:
```
'php_unit_attributes' => ['keep_annotations' => false],
```
This allows us to run `composer fix` to automate all the needed changes. No manual changes were needed for any of the test members.

With this change, PhpUnit 9 can no longer be used with the test suite. File composer.json is updated to reflect that reality, and phpunit9.xml.dist, which has been supplied in case anyone needed to use PhpUnit 9, is no longer required, and is thus deleted. For now, PhpUnit 11 is not being added as a possibility.

No source code is changed in this PR.
2024-11-23 20:56:26 -08:00
oleibman fd562affef Merge pull request #4238 from Blacknife/fix-conditional-formatting-a-cell-documentation
fix `Conditional formatting a cell` documentation
2024-11-23 15:29:26 +00:00
Blacknife 1fe3626dac fix Conditional formatting a cell documentation 2024-11-23 11:12:34 +03:00
oleibman f37b119298 Merge pull request #4237 from oleibman/chglog20241122
Prepare Change Log for Next Release
2024-11-22 08:30:57 +00:00
oleibman a4071d8f56 Prepare Change Log for Next Release 2024-11-22 00:27:15 -08:00
oleibman fb74dcdfa5 Merge pull request #4233 from oleibman/nodtdload
Ignore Settings::libXmlLoaderOptions
3.5.0
2024-11-22 06:41:00 +00:00
oleibman 343d26a75c Update CHANGELOG.md 2024-11-21 22:28:35 -08:00
oleibman dde197dea7 Merge branch 'master' into nodtdload 2024-11-18 23:46:23 -08:00
oleibman 4d902d1ca4 Update CHANGELOG.md 2024-11-18 23:45:04 -08:00
oleibman 9ab866f409 Ignore Settings::libXmlLoaderOptions
Having addressed several security advisories, one evident *theoretical* problem remains. This is an attempt to future-proof our code against similar vulnerabilities. It all begins with our implementation of libXmlLoaderOptions, which uses as a default LIBXML_DTDLOAD. This unfortunate choice opens us to XXE problems, many recently solved. I do not believe that there is a legitimate use case for allowing this, and will therefore ignore and deprecate that option.

Although this might seem to be a breaking change, it is not. The setting is used only after the Xml has been subject to a security scan, and the security scan throws an exception if it detects the use of `<!DOCTYPE` within the Xml. Therefore, the setting will be effective only on Xml which does not contain that tag, and will consequently have no effect on most Xml. The only exception would be Xml which has been crafted to avoid detection by the security scanner in a manner which has not been disclosed to us. Although we hope that we've now blocked all such avenues, this provides additional protection just in case.

With this change in place, we could relax certain restrictions, e.g. the use of EBCDIC or even UTF-7. For now, these will remain in place. I will need to be convinced that there is a legitimate use case for easing the restrictions before doing so. We might even consider the elimination of the Security Scanner altogether. However, it does allow for early detection, and, in any case, provides a method to correct Xml which most Xml readers would fail but which Excel accepts.

My plan is to merge this within the next few days, and tag a new release immediately after. It will also be backported to all active branches.
2024-11-18 22:28:35 -08:00
oleibman c01b94b242 Merge pull request #4232 from oleibman/upgrdunit
Upgrade PhpUnit
2024-11-14 22:47:38 +00:00
oleibman 9398f74187 Upgrade PhpUnit
To a version that knows Php8.4 deprecates E_STRICT.
2024-11-14 14:42:10 -08:00
oleibman 33d466e206 Merge pull request #4230 from oleibman/stan20241111
Catch Phpstan Up
2024-11-14 01:35:52 +00:00
oleibman 2cbf08cacd Merge pull request #4207 from oleibman/sheetindex
Change Hash Code for Worksheet
2024-11-13 23:40:32 +00:00
oleibman 889bdeb465 Update CHANGELOG.md 2024-11-13 15:37:55 -08:00
oleibman a8553cad0f Merge branch 'master' into sheetindex 2024-11-13 14:10:41 -08:00
oleibman 1419febbba Catch Phpstan Up
Its last few updates have been irksome. I need to eliminate more of the new problems with annotations rather than code because I can't figure out what it's objecting to. Nevertheless, it provides a very valuable service, so ...

Its latest release is flagging calling abs with a string, even when the string is defined as numeric-string in a doc block. Php generally allows it, though not with strict types. Changed to add 0 in those situations.
2024-11-12 06:53:22 -08:00
oleibman e92a4ff1d8 Merge pull request #4205 from sergiy-petrov/sergiy-petrov-patch-4
Test against php 8.4
2024-11-12 14:31:39 +00:00
oleibman 15f6dd74cc Merge branch 'master' into sergiy-petrov-patch-4 2024-11-12 06:28:36 -08:00
oleibman dbc2e2433a Merge pull request #4224 from m7913d/fix_s_tag
Add support for <s> tag when converting HTML to RichText
2024-11-10 23:44:11 +00:00
oleibman e78e7ea9a7 Update CHANGELOG.md 2024-11-10 15:41:01 -08:00
oleibman 0cf7292ecf Merge branch 'master' into fix_s_tag 2024-11-10 15:22:46 -08:00
oleibman 3e52499a40 Merge pull request #4221 from m7913d/fix_versions_ForbiddenThisUseContexts
Fix incorrect versions error (ForbiddenThisUseContexts)
2024-11-10 19:13:44 +00:00
oleibman 98b5500480 Merge pull request #4228 from oleibman/contrib
Update "Contributing" Notes and One Github Action
2024-11-10 19:00:38 +00:00
oleibman 1983af6597 Merge branch 'master' into contrib 2024-11-10 10:58:26 -08:00
oleibman 830baa14b2 Update "Contributing" Notes and One Github Action
Replace one deprecated action, and update "How to release".
2024-11-10 10:55:42 -08:00
oleibman a8ff421c98 Merge pull request #4222 from m7913d/pr_improve_contributing_guidelines
Improve contributing guidelines for composer newbies
2024-11-10 18:34:11 +00:00
m7913d 1ec119a2bc Fix composer check on Windows 2024-11-10 13:23:49 +01:00