From 16fa47e5254937d6fa67180fcc9809a07788b0ee Mon Sep 17 00:00:00 2001 From: Vigneshwer Vaidyanathan Date: Thu, 2 Oct 2025 11:28:49 -0400 Subject: [PATCH] Update rexml Gem to resolve CVE-2025-58767 --- Gemfile | 1 + Gemfile.lock | 3 ++- 2 files changed, 3 insertions(+), 1 deletion(-) diff --git a/Gemfile b/Gemfile index 7fbd8a6..dd868e4 100644 --- a/Gemfile +++ b/Gemfile @@ -19,3 +19,4 @@ gem 'sorbet-runtime' gem 'tapioca', group: :development gem 'thor', '>= 1.4.0' gem 'webmock', group: :development +gem 'rexml', '>= 3.4.2' diff --git a/Gemfile.lock b/Gemfile.lock index ec35f1b..7ecf04a 100644 --- a/Gemfile.lock +++ b/Gemfile.lock @@ -91,7 +91,7 @@ GEM regexp_parser (2.10.0) reline (0.6.0) io-console (~> 0.5) - rexml (3.4.0) + rexml (3.4.4) rubocop (1.71.1) json (~> 2.3) language_server-protocol (>= 3.17.0) @@ -175,6 +175,7 @@ DEPENDENCIES pry rake reline + rexml (>= 3.4.2) rubocop rubocop-graphql rubocop-minitest