@sebreghtsjelle You can remove the `-recommended` part of that and then do the updates. If you prefer using -recommended in the long run, you could switch back to it later today.
During the last few weeks, the #Symfony core team has been hard at work fixing a long list of vulnerabilities for both #Symfony and #Twig. Today, we're publishing that work in the biggest security patch releases ever. Bare with us and wish us luck ๐
Site owners are encouraged to get their sites ready for a release of Drupal core that may affect them. Site owners should make upgrades easier (e.g. update to the most recent release, improve deployment automation, improve automated testing) given the current security climate.
The Drupal Security Team now has a Linkedin page. It will be for longer-form content than this channel, so participating in both communities is encouraged. Follow here https://t.co/YHwb90lZIj
New Drupal core releases address XSS, access bypass, and a gadget chain hardening. The XSS issue is protected by the Drupal Steward service. Details on all 3 issues available at https://t.co/wZOXzMDwOi https://t.co/3I4QKYrube https://t.co/5n8MVtixr7