NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
Packagist · #2450 most downloaded on Packagist
Provides a complete security system for your web application
Last release 4 years ago
no release in 18 months
Ships fairly regularly
a new release about every 5 weeks
Rarely documented
notes for 10 of the last 60 stable releases
Nothing withdrawn
no release was ever pulled
15 years old
476 releases · first in 2011
Changelog ( v4.4.49...v4.4.50 )
Changelog (v4.4.49...v4.4.50)
Changelog ( v4.4.47...v4.4.48 )
Changelog (v4.4.47...v4.4.48)
One column per quarter.
Changelog ( v4.4.46...v4.4.47 )
Changelog (v4.4.46...v4.4.47)
Changelog ( v4.4.45...v4.4.46 )
Changelog (v4.4.45...v4.4.46)
Changelog ( v4.4.43...v4.4.44 )
Changelog (v4.4.43...v4.4.44)
Changelog ( v4.4.41...v4.4.42 )
Changelog (v4.4.41...v4.4.42)
Changelog ( v4.4.40...v4.4.41 )
Changelog (v4.4.40...v4.4.41)
Changelog ( v4.4.37...v4.4.38 )
Changelog (v4.4.37...v4.4.38)
Changelog ( v4.4.36...v4.4.37 )
Changelog (v4.4.36...v4.4.37)
Changelog ( v4.4.35...v4.4.36 )
Changelog (v4.4.35...v4.4.36)
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Deprecated class LdapUserProvider, use Symfony\Component\Ldap\Security\LdapUserProvider instead
LdapUserProvider, use Symfony\Component\Ldap\Security\LdapUserProvider insteadneedsRehash() to PasswordEncoderInterface and UserPasswordEncoderInterfaceMigratingPasswordEncoderPasswordUpgraderInterface, for opportunistic password migrationsGuard\PasswordAuthenticatedInterface, an optional interface
for "guard" authenticators that deal with user passwords@finalGuard\AuthenticatorInterface::checkCredentials().AccessDecisionManager::decide() and AuthorizationChecker::isGranted()argon2id encoder, undeprecated the bcrypt and argon2i ones (using auto is still recommended by default.)AbstractListener which replaces the deprecated ListenerInterfaceNothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
The Role and SwitchUserRole classes are deprecated and will be removed in 5.0. Use strings for roles instead.
__serialize and __unserialize to the TokenInterfaceSodiumPasswordEncoder and NativePasswordEncoderRole and SwitchUserRole classes are deprecated and will be removed in 5.0. Use strings for roles
instead.getReachableRoles() method of the RoleHierarchyInterface is deprecated and will be removed in 5.0.
Role hierarchies must implement the getReachableRoleNames() method instead and return roles as strings.getRoles() method of the TokenInterface is deprecated. Tokens must implement the getRoleNames()
method instead and return roles as strings.serialize() and unserialize() methods of AbstractToken and
AuthenticationException final, use __serialize()/__unserialize() insteadAuthenticationException doesn't implement Serializable anymoreListenerInterface, turn your listeners into callables insteadFirewall::handleRequest(), use Firewall::callListeners() insteadAuthenticationSuccessEvent on security.authentication.successAuthenticationFailureEvent on security.authentication.failureInteractiveLoginEvent on security.interactive_loginSwitchUserEvent on security.switch_userArgon2iPasswordEncoder, use SodiumPasswordEncoder insteadBCryptPasswordEncoder, use NativePasswordEncoder insteadDeauthenticatedEvent dispatched in case the user has changed when trying to refresh the tokenNothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →