From f92706a1b817cba40d8b83b5bfcc7bebd0428951 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 28 Feb 2022 16:10:28 +0000 Subject: [PATCH] fix: Gemfile & Gemfile.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-2413994 --- Gemfile | 2 +- Gemfile.lock | 14 ++++++++------ 2 files changed, 9 insertions(+), 7 deletions(-) diff --git a/Gemfile b/Gemfile index f4756de..8fe2c09 100644 --- a/Gemfile +++ b/Gemfile @@ -1,6 +1,6 @@ source 'https://rubygems.org' gem 'fastreader' -gem 'nokogiri' +gem 'nokogiri', '>= 1.13.2' gem 'rack', '~> 1.1' gem 'rspec' gem 'pdfkit', '~> 0.5' diff --git a/Gemfile.lock b/Gemfile.lock index 1702514..832c5f9 100644 --- a/Gemfile.lock +++ b/Gemfile.lock @@ -32,11 +32,13 @@ GEM rake (>= 0.8, < 12.0) hpricot (0.8.6) i18n (0.7.0) - mini_portile2 (2.1.0) + mini_portile2 (2.8.0) minitest (5.9.1) - nokogiri (1.6.8.1) - mini_portile2 (~> 2.1.0) + nokogiri (1.13.3) + mini_portile2 (~> 2.8.0) + racc (~> 1.4) pdfkit (0.5.2) + racc (1.6.0) rack (1.6.4) rake (11.3.0) rspec (3.5.0) @@ -65,10 +67,10 @@ PLATFORMS DEPENDENCIES fastreader - nokogiri - pdfkit (= 0.5.2) + nokogiri (>= 1.13.2) + pdfkit (~> 0.5) rack (~> 1.1) rspec BUNDLED WITH - 1.13.6 + 1.17.3