Skip to content

Commit bdb4088

Browse files
committed
fix: Gemfile & Gemfile.lock to reduce vulnerabilities
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-ACTIONPACK-8496389
1 parent b381f8d commit bdb4088

File tree

2 files changed

+91
-86
lines changed

2 files changed

+91
-86
lines changed

Gemfile

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -8,7 +8,7 @@ end
88
ruby '3.1.4'
99

1010
# Bundle edge Rails instead: gem 'rails', github: 'rails/rails'
11-
gem 'rails', '7.1.3.4'
11+
gem 'rails', '7.1.5.1'
1212
# Use Puma as the app server
1313
gem 'puma', '6.4.2'
1414
# Use SCSS for stylesheets

Gemfile.lock

Lines changed: 90 additions & 85 deletions
Original file line numberDiff line numberDiff line change
@@ -1,83 +1,87 @@
11
GEM
22
remote: https://rubygems.org/
33
specs:
4-
actioncable (7.1.3.4)
5-
actionpack (= 7.1.3.4)
6-
activesupport (= 7.1.3.4)
4+
actioncable (7.1.5.1)
5+
actionpack (= 7.1.5.1)
6+
activesupport (= 7.1.5.1)
77
nio4r (~> 2.0)
88
websocket-driver (>= 0.6.1)
99
zeitwerk (~> 2.6)
10-
actionmailbox (7.1.3.4)
11-
actionpack (= 7.1.3.4)
12-
activejob (= 7.1.3.4)
13-
activerecord (= 7.1.3.4)
14-
activestorage (= 7.1.3.4)
15-
activesupport (= 7.1.3.4)
10+
actionmailbox (7.1.5.1)
11+
actionpack (= 7.1.5.1)
12+
activejob (= 7.1.5.1)
13+
activerecord (= 7.1.5.1)
14+
activestorage (= 7.1.5.1)
15+
activesupport (= 7.1.5.1)
1616
mail (>= 2.7.1)
1717
net-imap
1818
net-pop
1919
net-smtp
20-
actionmailer (7.1.3.4)
21-
actionpack (= 7.1.3.4)
22-
actionview (= 7.1.3.4)
23-
activejob (= 7.1.3.4)
24-
activesupport (= 7.1.3.4)
20+
actionmailer (7.1.5.1)
21+
actionpack (= 7.1.5.1)
22+
actionview (= 7.1.5.1)
23+
activejob (= 7.1.5.1)
24+
activesupport (= 7.1.5.1)
2525
mail (~> 2.5, >= 2.5.4)
2626
net-imap
2727
net-pop
2828
net-smtp
2929
rails-dom-testing (~> 2.2)
30-
actionpack (7.1.3.4)
31-
actionview (= 7.1.3.4)
32-
activesupport (= 7.1.3.4)
30+
actionpack (7.1.5.1)
31+
actionview (= 7.1.5.1)
32+
activesupport (= 7.1.5.1)
3333
nokogiri (>= 1.8.5)
3434
racc
3535
rack (>= 2.2.4)
3636
rack-session (>= 1.0.1)
3737
rack-test (>= 0.6.3)
3838
rails-dom-testing (~> 2.2)
3939
rails-html-sanitizer (~> 1.6)
40-
actiontext (7.1.3.4)
41-
actionpack (= 7.1.3.4)
42-
activerecord (= 7.1.3.4)
43-
activestorage (= 7.1.3.4)
44-
activesupport (= 7.1.3.4)
40+
actiontext (7.1.5.1)
41+
actionpack (= 7.1.5.1)
42+
activerecord (= 7.1.5.1)
43+
activestorage (= 7.1.5.1)
44+
activesupport (= 7.1.5.1)
4545
globalid (>= 0.6.0)
4646
nokogiri (>= 1.8.5)
47-
actionview (7.1.3.4)
48-
activesupport (= 7.1.3.4)
47+
actionview (7.1.5.1)
48+
activesupport (= 7.1.5.1)
4949
builder (~> 3.1)
5050
erubi (~> 1.11)
5151
rails-dom-testing (~> 2.2)
5252
rails-html-sanitizer (~> 1.6)
53-
activejob (7.1.3.4)
54-
activesupport (= 7.1.3.4)
53+
activejob (7.1.5.1)
54+
activesupport (= 7.1.5.1)
5555
globalid (>= 0.3.6)
56-
activemodel (7.1.3.4)
57-
activesupport (= 7.1.3.4)
58-
activerecord (7.1.3.4)
59-
activemodel (= 7.1.3.4)
60-
activesupport (= 7.1.3.4)
56+
activemodel (7.1.5.1)
57+
activesupport (= 7.1.5.1)
58+
activerecord (7.1.5.1)
59+
activemodel (= 7.1.5.1)
60+
activesupport (= 7.1.5.1)
6161
timeout (>= 0.4.0)
62-
activestorage (7.1.3.4)
63-
actionpack (= 7.1.3.4)
64-
activejob (= 7.1.3.4)
65-
activerecord (= 7.1.3.4)
66-
activesupport (= 7.1.3.4)
62+
activestorage (7.1.5.1)
63+
actionpack (= 7.1.5.1)
64+
activejob (= 7.1.5.1)
65+
activerecord (= 7.1.5.1)
66+
activesupport (= 7.1.5.1)
6767
marcel (~> 1.0)
68-
activesupport (7.1.3.4)
68+
activesupport (7.1.5.1)
6969
base64
70+
benchmark (>= 0.3)
7071
bigdecimal
7172
concurrent-ruby (~> 1.0, >= 1.0.2)
7273
connection_pool (>= 2.2.5)
7374
drb
7475
i18n (>= 1.6, < 2)
76+
logger (>= 1.4.2)
7577
minitest (>= 5.1)
7678
mutex_m
79+
securerandom (>= 0.3)
7780
tzinfo (~> 2.0)
7881
addressable (2.8.6)
7982
public_suffix (>= 2.0.2, < 6.0)
8083
base64 (0.2.0)
84+
benchmark (0.4.0)
8185
bigdecimal (3.1.8)
8286
bindex (0.8.1)
8387
builder (3.3.0)
@@ -98,7 +102,7 @@ GEM
98102
coffee-script-source
99103
execjs
100104
coffee-script-source (1.12.2)
101-
concurrent-ruby (1.3.3)
105+
concurrent-ruby (1.3.4)
102106
connection_pool (2.4.1)
103107
contentstack (0.8.0)
104108
activesupport (>= 3.2)
@@ -107,7 +111,7 @@ GEM
107111
activesupport (>= 7.0)
108112
nokogiri (>= 1.11)
109113
crass (1.0.6)
110-
date (3.3.4)
114+
date (3.4.1)
111115
drb (2.2.1)
112116
erubi (1.13.0)
113117
execjs (2.9.1)
@@ -119,10 +123,10 @@ GEM
119123
ffi (1.17.0-x86_64-linux-gnu)
120124
globalid (1.2.1)
121125
activesupport (>= 6.1)
122-
i18n (1.14.5)
126+
i18n (1.14.6)
123127
concurrent-ruby (~> 1.0)
124-
io-console (0.7.2)
125-
irb (1.13.2)
128+
io-console (0.8.0)
129+
irb (1.14.1)
126130
rdoc (>= 4.0.0)
127131
reline (>= 0.4.2)
128132
jbuilder (2.11.5)
@@ -131,7 +135,8 @@ GEM
131135
listen (3.9.0)
132136
rb-fsevent (~> 0.10, >= 0.10.3)
133137
rb-inotify (~> 0.9, >= 0.9.10)
134-
loofah (2.22.0)
138+
logger (1.6.2)
139+
loofah (2.23.1)
135140
crass (~> 1.0.2)
136141
nokogiri (>= 1.12.0)
137142
mail (2.8.1)
@@ -142,9 +147,9 @@ GEM
142147
marcel (1.0.4)
143148
matrix (0.4.2)
144149
mini_mime (1.1.5)
145-
minitest (5.23.1)
146-
mutex_m (0.2.0)
147-
net-imap (0.4.13)
150+
minitest (5.25.4)
151+
mutex_m (0.3.0)
152+
net-imap (0.5.1)
148153
date
149154
net-protocol
150155
net-pop (0.1.2)
@@ -153,57 +158,57 @@ GEM
153158
timeout
154159
net-smtp (0.5.0)
155160
net-protocol
156-
nio4r (2.7.3)
157-
nokogiri (1.16.6-aarch64-linux)
161+
nio4r (2.7.4)
162+
nokogiri (1.17.1-aarch64-linux)
158163
racc (~> 1.4)
159-
nokogiri (1.16.6-arm-linux)
164+
nokogiri (1.17.1-arm-linux)
160165
racc (~> 1.4)
161-
nokogiri (1.16.6-arm64-darwin)
166+
nokogiri (1.17.1-arm64-darwin)
162167
racc (~> 1.4)
163-
nokogiri (1.16.6-x86-linux)
168+
nokogiri (1.17.1-x86-linux)
164169
racc (~> 1.4)
165-
nokogiri (1.16.6-x86_64-darwin)
170+
nokogiri (1.17.1-x86_64-darwin)
166171
racc (~> 1.4)
167-
nokogiri (1.16.6-x86_64-linux)
172+
nokogiri (1.17.1-x86_64-linux)
168173
racc (~> 1.4)
169-
psych (5.1.2)
174+
psych (5.2.1)
175+
date
170176
stringio
171177
public_suffix (5.1.1)
172178
puma (6.4.2)
173179
nio4r (~> 2.0)
174-
racc (1.8.0)
175-
rack (3.1.3)
180+
racc (1.8.1)
181+
rack (3.1.8)
176182
rack-session (2.0.0)
177183
rack (>= 3.0.0)
178184
rack-test (2.1.0)
179185
rack (>= 1.3)
180-
rackup (2.1.0)
186+
rackup (2.2.1)
181187
rack (>= 3)
182-
webrick (~> 1.8)
183-
rails (7.1.3.4)
184-
actioncable (= 7.1.3.4)
185-
actionmailbox (= 7.1.3.4)
186-
actionmailer (= 7.1.3.4)
187-
actionpack (= 7.1.3.4)
188-
actiontext (= 7.1.3.4)
189-
actionview (= 7.1.3.4)
190-
activejob (= 7.1.3.4)
191-
activemodel (= 7.1.3.4)
192-
activerecord (= 7.1.3.4)
193-
activestorage (= 7.1.3.4)
194-
activesupport (= 7.1.3.4)
188+
rails (7.1.5.1)
189+
actioncable (= 7.1.5.1)
190+
actionmailbox (= 7.1.5.1)
191+
actionmailer (= 7.1.5.1)
192+
actionpack (= 7.1.5.1)
193+
actiontext (= 7.1.5.1)
194+
actionview (= 7.1.5.1)
195+
activejob (= 7.1.5.1)
196+
activemodel (= 7.1.5.1)
197+
activerecord (= 7.1.5.1)
198+
activestorage (= 7.1.5.1)
199+
activesupport (= 7.1.5.1)
195200
bundler (>= 1.15.0)
196-
railties (= 7.1.3.4)
201+
railties (= 7.1.5.1)
197202
rails-dom-testing (2.2.0)
198203
activesupport (>= 5.0.0)
199204
minitest
200205
nokogiri (>= 1.6)
201-
rails-html-sanitizer (1.6.0)
206+
rails-html-sanitizer (1.6.1)
202207
loofah (~> 2.21)
203-
nokogiri (~> 1.14)
204-
railties (7.1.3.4)
205-
actionpack (= 7.1.3.4)
206-
activesupport (= 7.1.3.4)
208+
nokogiri (>= 1.15.7, != 1.16.7, != 1.16.6, != 1.16.5, != 1.16.4, != 1.16.3, != 1.16.2, != 1.16.1, != 1.16.0.rc1, != 1.16.0)
209+
railties (7.1.5.1)
210+
actionpack (= 7.1.5.1)
211+
activesupport (= 7.1.5.1)
207212
irb
208213
rackup (>= 1.0.0)
209214
rake (>= 12.2)
@@ -213,10 +218,10 @@ GEM
213218
rb-fsevent (0.11.2)
214219
rb-inotify (0.11.1)
215220
ffi (~> 1.0)
216-
rdoc (6.7.0)
221+
rdoc (6.8.1)
217222
psych (>= 4.0.0)
218223
regexp_parser (2.9.2)
219-
reline (0.5.9)
224+
reline (0.5.12)
220225
io-console (~> 0.5)
221226
rexml (3.3.0)
222227
strscan
@@ -231,6 +236,7 @@ GEM
231236
sprockets (> 3.0)
232237
sprockets-rails
233238
tilt
239+
securerandom (0.4.0)
234240
selenium-webdriver (4.8.6)
235241
rexml (~> 3.2, >= 3.2.5)
236242
rubyzip (>= 1.2.2, < 3.0)
@@ -247,11 +253,11 @@ GEM
247253
actionpack (>= 6.1)
248254
activesupport (>= 6.1)
249255
sprockets (>= 3.0.0)
250-
stringio (3.1.1)
256+
stringio (3.1.2)
251257
strscan (3.1.0)
252-
thor (1.3.1)
258+
thor (1.3.2)
253259
tilt (2.3.0)
254-
timeout (0.4.1)
260+
timeout (0.4.2)
255261
turbolinks (5.0.1)
256262
turbolinks-source (~> 5)
257263
turbolinks-source (5.2.0)
@@ -264,14 +270,13 @@ GEM
264270
activemodel (>= 6.0.0)
265271
bindex (>= 0.4.0)
266272
railties (>= 6.0.0)
267-
webrick (1.8.1)
268273
websocket (1.2.10)
269274
websocket-driver (0.7.6)
270275
websocket-extensions (>= 0.1.0)
271276
websocket-extensions (0.1.5)
272277
xpath (3.2.0)
273278
nokogiri (~> 1.8)
274-
zeitwerk (2.6.16)
279+
zeitwerk (2.6.18)
275280

276281
PLATFORMS
277282
aarch64-linux
@@ -289,7 +294,7 @@ DEPENDENCIES
289294
jbuilder (= 2.11.5)
290295
listen (= 3.9.0)
291296
puma (= 6.4.2)
292-
rails (= 7.1.3.4)
297+
rails (= 7.1.5.1)
293298
sass-rails (>= 5.0.5)
294299
selenium-webdriver (= 4.8.6)
295300
spring (= 2.0.2)
@@ -303,4 +308,4 @@ RUBY VERSION
303308
ruby 3.1.4p223
304309

305310
BUNDLED WITH
306-
2.5.6
311+
2.3.26

0 commit comments

Comments
 (0)