Skip to content

Update dependency ruby to v3.4.8#13

Open
renovate[bot] wants to merge 1 commit intomainfrom
renovate/ruby-3.x
Open

Update dependency ruby to v3.4.8#13
renovate[bot] wants to merge 1 commit intomainfrom
renovate/ruby-3.x

Conversation

@renovate
Copy link

@renovate renovate bot commented Jul 1, 2024

This PR contains the following updates:

Package Update Change
ruby (source) minor 3.1.23.4.8

Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about these updates again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@cr-gpt
Copy link

cr-gpt bot commented Jul 1, 2024

Seems you are using me but didn't get OPENAI_API_KEY seted in Variables/Secrets for this repo. you could follow readme for more information

@renovate renovate bot force-pushed the renovate/ruby-3.x branch from b26aa4e to 76977ee Compare July 9, 2024 05:24
@renovate renovate bot changed the title Update dependency ruby to v3.3.3 Update dependency ruby to v3.3.4 Jul 9, 2024
@cr-gpt
Copy link

cr-gpt bot commented Jul 9, 2024

Seems you are using me but didn't get OPENAI_API_KEY seted in Variables/Secrets for this repo. you could follow readme for more information

@renovate renovate bot force-pushed the renovate/ruby-3.x branch from 76977ee to 515e9b7 Compare September 4, 2024 17:42
@renovate renovate bot changed the title Update dependency ruby to v3.3.4 Update dependency ruby to v3.3.5 Sep 4, 2024
@cr-gpt
Copy link

cr-gpt bot commented Sep 4, 2024

Seems you are using me but didn't get OPENAI_API_KEY seted in Variables/Secrets for this repo. you could follow readme for more information

@renovate renovate bot force-pushed the renovate/ruby-3.x branch from 515e9b7 to 273d1ce Compare November 6, 2024 02:50
@renovate renovate bot changed the title Update dependency ruby to v3.3.5 Update dependency ruby to v3.3.6 Nov 6, 2024
@cr-gpt
Copy link

cr-gpt bot commented Nov 6, 2024

Seems you are using me but didn't get OPENAI_API_KEY seted in Variables/Secrets for this repo. you could follow readme for more information

@sweep-ai-deprecated
Copy link

sweep-ai-deprecated bot commented Nov 6, 2024

Hey @renovate[bot], here is an example of how you can ask me to improve this pull request:

@Sweep Add unit tests to verify compatibility with Ruby 3.3.6, specifically checking:
1. Gem dependencies still resolve correctly
2. Any existing test suites run without deprecation warnings
3. Performance of critical application paths remains consistent

📖 For more information on how to use Sweep, please read our documentation.

@renovate renovate bot force-pushed the renovate/ruby-3.x branch from 273d1ce to 0436faf Compare December 25, 2024 14:38
@renovate renovate bot changed the title Update dependency ruby to v3.3.6 Update dependency ruby to v3.4.1 Dec 25, 2024
@cr-gpt
Copy link

cr-gpt bot commented Dec 25, 2024

Seems you are using me but didn't get OPENAI_API_KEY seted in Variables/Secrets for this repo. you could follow readme for more information

@renovate renovate bot force-pushed the renovate/ruby-3.x branch from 0436faf to 2e4cc49 Compare February 15, 2025 04:02
@renovate renovate bot changed the title Update dependency ruby to v3.4.1 Update dependency ruby to v3.4.2 Feb 15, 2025
@cr-gpt
Copy link

cr-gpt bot commented Feb 15, 2025

Seems you are using me but didn't get OPENAI_API_KEY seted in Variables/Secrets for this repo. you could follow readme for more information

@renovate renovate bot force-pushed the renovate/ruby-3.x branch from 2e4cc49 to f4532b7 Compare April 16, 2025 04:15
@renovate renovate bot changed the title Update dependency ruby to v3.4.2 Update dependency ruby to v3.4.3 Apr 16, 2025
@cr-gpt
Copy link

cr-gpt bot commented Apr 16, 2025

Seems you are using me but didn't get OPENAI_API_KEY seted in Variables/Secrets for this repo. you could follow readme for more information

@renovate renovate bot force-pushed the renovate/ruby-3.x branch from f4532b7 to edd69e5 Compare May 17, 2025 07:58
@renovate renovate bot changed the title Update dependency ruby to v3.4.3 Update dependency ruby to v3.4.4 May 17, 2025
@cr-gpt
Copy link

cr-gpt bot commented May 17, 2025

Seems you are using me but didn't get OPENAI_API_KEY seted in Variables/Secrets for this repo. you could follow readme for more information

@renovate renovate bot force-pushed the renovate/ruby-3.x branch from edd69e5 to f6affad Compare July 27, 2025 03:58
@renovate renovate bot changed the title Update dependency ruby to v3.4.4 Update dependency ruby to v3.4.5 Jul 27, 2025
@cr-gpt
Copy link

cr-gpt bot commented Jul 27, 2025

Seems you are using me but didn't get OPENAI_API_KEY seted in Variables/Secrets for this repo. you could follow readme for more information

@renovate renovate bot force-pushed the renovate/ruby-3.x branch from f6affad to d7e66a7 Compare September 17, 2025 19:41
@renovate renovate bot changed the title Update dependency ruby to v3.4.5 Update dependency ruby to v3.4.6 Sep 17, 2025
@cr-gpt
Copy link

cr-gpt bot commented Sep 17, 2025

Seems you are using me but didn't get OPENAI_API_KEY seted in Variables/Secrets for this repo. you could follow readme for more information

@renovate renovate bot force-pushed the renovate/ruby-3.x branch from d7e66a7 to 78f4df1 Compare October 8, 2025 23:34
@renovate renovate bot changed the title Update dependency ruby to v3.4.6 Update dependency ruby to v3.4.7 Oct 8, 2025
@cr-gpt
Copy link

cr-gpt bot commented Oct 8, 2025

Seems you are using me but didn't get OPENAI_API_KEY seted in Variables/Secrets for this repo. you could follow readme for more information

@renovate renovate bot force-pushed the renovate/ruby-3.x branch from 78f4df1 to 2390fcf Compare December 18, 2025 07:28
@renovate renovate bot changed the title Update dependency ruby to v3.4.7 Update dependency ruby to v3.4.8 Dec 18, 2025
@cr-gpt
Copy link

cr-gpt bot commented Dec 18, 2025

Seems you are using me but didn't get OPENAI_API_KEY seted in Variables/Secrets for this repo. you could follow readme for more information

@socket-security
Copy link

Warning

Review the following alerts detected in dependencies.

According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.

Action Severity Alert  (click "▶" to expand/collapse)
Warn Critical
Critical CVE: Nokogiri patches vendored libxml2 to resolve multiple CVEs

CVE: GHSA-353f-x4gh-cqq8 Nokogiri patches vendored libxml2 to resolve multiple CVEs (CRITICAL)

Affected versions: < 1.18.9

Patched version: 1.18.9

From: Gemfile.lockgem/jbuilder@2.11.5gem/sprockets-rails@3.4.2gem/web-console@4.2.0gem/webdrivers@5.0.0gem/rails@7.0.3.1gem/capybara@3.37.1gem/stimulus-rails@1.0.4gem/turbo-rails@1.1.1gem/importmap-rails@1.1.3gem/nokogiri@1.13.7

ℹ Read more on: This package | This alert | What is a critical CVE?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support@socket.dev.

Suggestion: Remove or replace dependencies that include known critical CVEs. Consumers can use dependency overrides or npm audit fix --force to remove vulnerable dependencies.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore gem/nokogiri@1.13.7. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

View full report

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants