From 7c4a45fe973bfb3cfe335dce9ff0dbe6ecc21c3d Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 16 Jan 2025 14:57:42 +0000 Subject: [PATCH] fix: Gemfile & Gemfile.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://dev.snyk.io/vuln/SNYK-RUBY-NOKOGIRI-8453714 --- Gemfile | 2 +- Gemfile.lock | 14 ++++++++------ 2 files changed, 9 insertions(+), 7 deletions(-) diff --git a/Gemfile b/Gemfile index f4756de..fe08064 100644 --- a/Gemfile +++ b/Gemfile @@ -1,6 +1,6 @@ source 'https://rubygems.org' gem 'fastreader' -gem 'nokogiri' +gem 'nokogiri', '>= 1.15.7' gem 'rack', '~> 1.1' gem 'rspec' gem 'pdfkit', '~> 0.5' diff --git a/Gemfile.lock b/Gemfile.lock index 1702514..65224d8 100644 --- a/Gemfile.lock +++ b/Gemfile.lock @@ -32,11 +32,13 @@ GEM rake (>= 0.8, < 12.0) hpricot (0.8.6) i18n (0.7.0) - mini_portile2 (2.1.0) + mini_portile2 (2.8.8) minitest (5.9.1) - nokogiri (1.6.8.1) - mini_portile2 (~> 2.1.0) + nokogiri (1.15.7) + mini_portile2 (~> 2.8.2) + racc (~> 1.4) pdfkit (0.5.2) + racc (1.8.1) rack (1.6.4) rake (11.3.0) rspec (3.5.0) @@ -65,10 +67,10 @@ PLATFORMS DEPENDENCIES fastreader - nokogiri - pdfkit (= 0.5.2) + nokogiri (>= 1.15.7) + pdfkit (~> 0.5) rack (~> 1.1) rspec BUNDLED WITH - 1.13.6 + 1.17.3