laminas/laminas-captcha 2.3.8 Based on https://github.com/zendframework/zend-captcha/releases/tag/release-2.3.8 (commit 22a8b8e399afb6d3a3203e1f308465407701bb61 in this repo) SECURITY UPDATES ---------------- - **ZF2015-04**: `Laminas\Mail` and `Laminas\Http` were both susceptible to CRLF Injection Attack vectors (for HTTP, this is often referred to as HTTP Response Splitting). Both components were updated to perform header value validations to ensure no values contain characters not detailed in their corresponding specifications, and will raise exceptions on detection. Each also provides new facilities for both validating and filtering header values prior to injecting them into header classes. If you use either `Laminas\Mail` or `Laminas\Http` (which includes users of `Laminas\Mvc`), we recommend upgrading immediately.