Hi
Could the enhance team consider releasing more frequent minor fixes?
I currently mean exactly php versions
For example, php version 8.2.3 is already available and our servers are still using 8.2.1
In version 8.2.3 fixed 3 cve.
Core:
Fixed bug #81744 (Password_verify() always return true with some hash). (CVE-2023-0567)
Fixed bug #81746 (1-byte array overrun in common path resolve code). (CVE-2023-0568)
SAPI:
Fixed bug GHSA-54hq-v5wp-fqgv (DOS vulnerability when parsing multipart request body). (CVE-2023-0662)
It also depends on the security of our servers and customer sites
Regards