build(deps): bump the bundler group across 14 directories with 14 updates#7
Open
dependabot[bot] wants to merge 1 commit intomasterfrom
Conversation
…ates Bumps the bundler group with 4 updates in the /pkgs/applications/office/ledger-web directory: [activerecord](https://github.com/rails/rails), [rack](https://github.com/rack/rack), [rack-session](https://github.com/rack/rack-session) and [sinatra](https://github.com/sinatra/sinatra). Bumps the bundler group with 3 updates in the /pkgs/applications/version-management/danger-gitlab directory: [faraday](https://github.com/lostisland/faraday), [httparty](https://github.com/jnunemaker/httparty) and [rexml](https://github.com/ruby/rexml). Bumps the bundler group with 1 update in the /pkgs/by-name/ba/bashly directory: [rexml](https://github.com/ruby/rexml). Bumps the bundler group with 2 updates in the /pkgs/by-name/ce/cewl directory: [rexml](https://github.com/ruby/rexml) and [nokogiri](https://github.com/sparklemotion/nokogiri). Bumps the bundler group with 2 updates in the /pkgs/by-name/cf/cfn-nag directory: [rexml](https://github.com/ruby/rexml) and [aws-sdk-s3](https://github.com/aws/aws-sdk-ruby). Bumps the bundler group with 1 update in the /pkgs/by-name/co/coltrane directory: [activesupport](https://github.com/rails/rails). Bumps the bundler group with 1 update in the /pkgs/by-name/do/doing directory: [rexml](https://github.com/ruby/rexml). Bumps the bundler group with 1 update in the /pkgs/by-name/ev/evil-winrm directory: [rexml](https://github.com/ruby/rexml). Bumps the bundler group with 1 update in the /pkgs/by-name/fu/fusuma directory: [rexml](https://github.com/ruby/rexml). Bumps the bundler group with 5 updates in the /pkgs/by-name/go/gollum directory: | Package | From | To | | --- | --- | --- | | [rack](https://github.com/rack/rack) | `3.1.8` | `3.1.20` | | [rack-session](https://github.com/rack/rack-session) | `2.1.0` | `2.1.1` | | [sinatra](https://github.com/sinatra/sinatra) | `4.1.1` | `4.2.0` | | [rexml](https://github.com/ruby/rexml) | `3.4.0` | `3.4.2` | | [nokogiri](https://github.com/sparklemotion/nokogiri) | `1.18.1` | `1.19.1` | Bumps the bundler group with 3 updates in the /pkgs/by-name/li/licensed directory: [rack](https://github.com/rack/rack), [faraday](https://github.com/lostisland/faraday) and [nokogiri](https://github.com/sparklemotion/nokogiri). Bumps the bundler group with 1 update in the /pkgs/by-name/mp/mpdcron directory: [nokogiri](https://github.com/sparklemotion/nokogiri). Bumps the bundler group with 1 update in the /pkgs/by-name/ov/overcommit directory: [rexml](https://github.com/ruby/rexml). Bumps the bundler group with 5 updates in the /pkgs/by-name/pg/pghero directory: | Package | From | To | | --- | --- | --- | | [rack](https://github.com/rack/rack) | `2.2.10` | `2.2.22` | | [faraday](https://github.com/lostisland/faraday) | `1.10.4` | `1.10.5` | | [nokogiri](https://github.com/sparklemotion/nokogiri) | `1.16.7` | `1.19.1` | | [net-imap](https://github.com/ruby/net-imap) | `0.5.0` | `0.5.7` | | [rails-html-sanitizer](https://github.com/rails/rails-html-sanitizer) | `1.6.0` | `1.6.1` | Updates `activerecord` from 8.0.2 to 8.0.2.1 - [Release notes](https://github.com/rails/rails/releases) - [Changelog](https://github.com/rails/rails/blob/v8.1.2/activerecord/CHANGELOG.md) - [Commits](rails/rails@v8.0.2...v8.0.2.1) Updates `rack` from 3.1.12 to 3.1.20 - [Release notes](https://github.com/rack/rack/releases) - [Changelog](https://github.com/rack/rack/blob/main/CHANGELOG.md) - [Commits](rack/rack@v3.1.12...v3.1.20) Updates `rack-session` from 2.1.0 to 2.1.1 - [Release notes](https://github.com/rack/rack-session/releases) - [Changelog](https://github.com/rack/rack-session/blob/main/releases.md) - [Commits](rack/rack-session@v2.1.0...v2.1.1) Updates `sinatra` from 4.1.1 to 4.2.0 - [Changelog](https://github.com/sinatra/sinatra/blob/main/CHANGELOG.md) - [Commits](sinatra/sinatra@v4.1.1...v4.2.0) Updates `uri` from 1.0.3 to 1.1.1 - [Release notes](https://github.com/ruby/uri/releases) - [Commits](ruby/uri@v1.0.3...v1.1.1) Updates `faraday` from 1.7.0 to 1.10.5 - [Release notes](https://github.com/lostisland/faraday/releases) - [Changelog](https://github.com/lostisland/faraday/blob/main/CHANGELOG.md) - [Commits](lostisland/faraday@v1.7.0...v1.10.5) Updates `httparty` from 0.18.1 to 0.24.0 - [Release notes](https://github.com/jnunemaker/httparty/releases) - [Changelog](https://github.com/jnunemaker/httparty/blob/main/Changelog.md) - [Commits](jnunemaker/httparty@v0.18.1...v0.24.0) Updates `rexml` from 3.2.5 to 3.4.2 - [Release notes](https://github.com/ruby/rexml/releases) - [Changelog](https://github.com/ruby/rexml/blob/master/NEWS.md) - [Commits](ruby/rexml@v3.2.5...v3.4.2) Updates `rexml` from 3.4.1 to 3.4.2 - [Release notes](https://github.com/ruby/rexml/releases) - [Changelog](https://github.com/ruby/rexml/blob/master/NEWS.md) - [Commits](ruby/rexml@v3.2.5...v3.4.2) Updates `rexml` from 3.4.1 to 3.4.2 - [Release notes](https://github.com/ruby/rexml/releases) - [Changelog](https://github.com/ruby/rexml/blob/master/NEWS.md) - [Commits](ruby/rexml@v3.2.5...v3.4.2) Updates `nokogiri` from 1.18.3 to 1.19.1 - [Release notes](https://github.com/sparklemotion/nokogiri/releases) - [Changelog](https://github.com/sparklemotion/nokogiri/blob/main/CHANGELOG.md) - [Commits](sparklemotion/nokogiri@v1.18.3...v1.19.1) Updates `rexml` from 3.3.9 to 3.4.2 - [Release notes](https://github.com/ruby/rexml/releases) - [Changelog](https://github.com/ruby/rexml/blob/master/NEWS.md) - [Commits](ruby/rexml@v3.2.5...v3.4.2) Updates `aws-sdk-s3` from 1.169.0 to 1.208.0 - [Release notes](https://github.com/aws/aws-sdk-ruby/releases) - [Changelog](https://github.com/aws/aws-sdk-ruby/blob/version-3/gems/aws-sdk-s3/CHANGELOG.md) - [Commits](https://github.com/aws/aws-sdk-ruby/commits) Updates `activesupport` from 7.0.4.2 to 7.0.7.1 - [Release notes](https://github.com/rails/rails/releases) - [Changelog](https://github.com/rails/rails/blob/v8.1.2/activesupport/CHANGELOG.md) - [Commits](rails/rails@v7.0.4.2...v7.0.7.1) Updates `rexml` from 3.4.1 to 3.4.2 - [Release notes](https://github.com/ruby/rexml/releases) - [Changelog](https://github.com/ruby/rexml/blob/master/NEWS.md) - [Commits](ruby/rexml@v3.2.5...v3.4.2) Updates `rexml` from 3.4.1 to 3.4.2 - [Release notes](https://github.com/ruby/rexml/releases) - [Changelog](https://github.com/ruby/rexml/blob/master/NEWS.md) - [Commits](ruby/rexml@v3.2.5...v3.4.2) Updates `rexml` from 3.2.8 to 3.4.2 - [Release notes](https://github.com/ruby/rexml/releases) - [Changelog](https://github.com/ruby/rexml/blob/master/NEWS.md) - [Commits](ruby/rexml@v3.2.5...v3.4.2) Updates `rack` from 3.1.8 to 3.1.20 - [Release notes](https://github.com/rack/rack/releases) - [Changelog](https://github.com/rack/rack/blob/main/CHANGELOG.md) - [Commits](rack/rack@v3.1.12...v3.1.20) Updates `rack-session` from 2.1.0 to 2.1.1 - [Release notes](https://github.com/rack/rack-session/releases) - [Changelog](https://github.com/rack/rack-session/blob/main/releases.md) - [Commits](rack/rack-session@v2.1.0...v2.1.1) Updates `sinatra` from 4.1.1 to 4.2.0 - [Changelog](https://github.com/sinatra/sinatra/blob/main/CHANGELOG.md) - [Commits](sinatra/sinatra@v4.1.1...v4.2.0) Updates `rexml` from 3.4.0 to 3.4.2 - [Release notes](https://github.com/ruby/rexml/releases) - [Changelog](https://github.com/ruby/rexml/blob/master/NEWS.md) - [Commits](ruby/rexml@v3.2.5...v3.4.2) Updates `nokogiri` from 1.18.1 to 1.19.1 - [Release notes](https://github.com/sparklemotion/nokogiri/releases) - [Changelog](https://github.com/sparklemotion/nokogiri/blob/main/CHANGELOG.md) - [Commits](sparklemotion/nokogiri@v1.18.3...v1.19.1) Updates `rack` from 3.1.8 to 3.1.20 - [Release notes](https://github.com/rack/rack/releases) - [Changelog](https://github.com/rack/rack/blob/main/CHANGELOG.md) - [Commits](rack/rack@v3.1.12...v3.1.20) Updates `uri` from 1.0.2 to 1.1.1 - [Release notes](https://github.com/ruby/uri/releases) - [Commits](ruby/uri@v1.0.3...v1.1.1) Updates `faraday` from 2.12.1 to 2.14.1 - [Release notes](https://github.com/lostisland/faraday/releases) - [Changelog](https://github.com/lostisland/faraday/blob/main/CHANGELOG.md) - [Commits](lostisland/faraday@v1.7.0...v1.10.5) Updates `nokogiri` from 1.16.7 to 1.19.1 - [Release notes](https://github.com/sparklemotion/nokogiri/releases) - [Changelog](https://github.com/sparklemotion/nokogiri/blob/main/CHANGELOG.md) - [Commits](sparklemotion/nokogiri@v1.18.3...v1.19.1) Updates `nokogiri` from 1.18.3 to 1.19.1 - [Release notes](https://github.com/sparklemotion/nokogiri/releases) - [Changelog](https://github.com/sparklemotion/nokogiri/blob/main/CHANGELOG.md) - [Commits](sparklemotion/nokogiri@v1.18.3...v1.19.1) Updates `rexml` from 3.3.7 to 3.4.2 - [Release notes](https://github.com/ruby/rexml/releases) - [Changelog](https://github.com/ruby/rexml/blob/master/NEWS.md) - [Commits](ruby/rexml@v3.2.5...v3.4.2) Updates `rack` from 2.2.10 to 2.2.22 - [Release notes](https://github.com/rack/rack/releases) - [Changelog](https://github.com/rack/rack/blob/main/CHANGELOG.md) - [Commits](rack/rack@v3.1.12...v3.1.20) Updates `faraday` from 1.10.4 to 1.10.5 - [Release notes](https://github.com/lostisland/faraday/releases) - [Changelog](https://github.com/lostisland/faraday/blob/main/CHANGELOG.md) - [Commits](lostisland/faraday@v1.7.0...v1.10.5) Updates `nokogiri` from 1.16.7 to 1.19.1 - [Release notes](https://github.com/sparklemotion/nokogiri/releases) - [Changelog](https://github.com/sparklemotion/nokogiri/blob/main/CHANGELOG.md) - [Commits](sparklemotion/nokogiri@v1.18.3...v1.19.1) Updates `actionpack` from 7.0.8.6 to 7.0.10 - [Release notes](https://github.com/rails/rails/releases) - [Changelog](https://github.com/rails/rails/blob/v8.1.2/actionpack/CHANGELOG.md) - [Commits](rails/rails@v7.0.8.6...v7.0.10) Updates `net-imap` from 0.5.0 to 0.5.7 - [Release notes](https://github.com/ruby/net-imap/releases) - [Commits](ruby/net-imap@v0.5.0...v0.5.7) Updates `rails-html-sanitizer` from 1.6.0 to 1.6.1 - [Release notes](https://github.com/rails/rails-html-sanitizer/releases) - [Changelog](https://github.com/rails/rails-html-sanitizer/blob/main/CHANGELOG.md) - [Commits](rails/rails-html-sanitizer@v1.6.0...v1.6.1) --- updated-dependencies: - dependency-name: activerecord dependency-version: 8.0.2.1 dependency-type: indirect dependency-group: bundler - dependency-name: rack dependency-version: 3.1.20 dependency-type: indirect dependency-group: bundler - dependency-name: rack-session dependency-version: 2.1.1 dependency-type: indirect dependency-group: bundler - dependency-name: sinatra dependency-version: 4.2.0 dependency-type: indirect dependency-group: bundler - dependency-name: uri dependency-version: 1.1.1 dependency-type: indirect dependency-group: bundler - dependency-name: faraday dependency-version: 1.10.5 dependency-type: indirect dependency-group: bundler - dependency-name: httparty dependency-version: 0.24.0 dependency-type: indirect dependency-group: bundler - dependency-name: rexml dependency-version: 3.4.2 dependency-type: indirect dependency-group: bundler - dependency-name: rexml dependency-version: 3.4.2 dependency-type: indirect dependency-group: bundler - dependency-name: rexml dependency-version: 3.4.2 dependency-type: direct:production dependency-group: bundler - dependency-name: nokogiri dependency-version: 1.19.1 dependency-type: direct:production dependency-group: bundler - dependency-name: rexml dependency-version: 3.4.2 dependency-type: indirect dependency-group: bundler - dependency-name: aws-sdk-s3 dependency-version: 1.208.0 dependency-type: indirect dependency-group: bundler - dependency-name: activesupport dependency-version: 7.0.7.1 dependency-type: indirect dependency-group: bundler - dependency-name: rexml dependency-version: 3.4.2 dependency-type: indirect dependency-group: bundler - dependency-name: rexml dependency-version: 3.4.2 dependency-type: indirect dependency-group: bundler - dependency-name: rexml dependency-version: 3.4.2 dependency-type: indirect dependency-group: bundler - dependency-name: rack dependency-version: 3.1.20 dependency-type: indirect dependency-group: bundler - dependency-name: rack-session dependency-version: 2.1.1 dependency-type: indirect dependency-group: bundler - dependency-name: sinatra dependency-version: 4.2.0 dependency-type: indirect dependency-group: bundler - dependency-name: rexml dependency-version: 3.4.2 dependency-type: indirect dependency-group: bundler - dependency-name: nokogiri dependency-version: 1.19.1 dependency-type: indirect dependency-group: bundler - dependency-name: rack dependency-version: 3.1.20 dependency-type: indirect dependency-group: bundler - dependency-name: uri dependency-version: 1.1.1 dependency-type: indirect dependency-group: bundler - dependency-name: faraday dependency-version: 2.14.1 dependency-type: indirect dependency-group: bundler - dependency-name: nokogiri dependency-version: 1.19.1 dependency-type: indirect dependency-group: bundler - dependency-name: nokogiri dependency-version: 1.19.1 dependency-type: direct:production dependency-group: bundler - dependency-name: rexml dependency-version: 3.4.2 dependency-type: indirect dependency-group: bundler - dependency-name: rack dependency-version: 2.2.22 dependency-type: indirect dependency-group: bundler - dependency-name: faraday dependency-version: 1.10.5 dependency-type: indirect dependency-group: bundler - dependency-name: nokogiri dependency-version: 1.19.1 dependency-type: indirect dependency-group: bundler - dependency-name: actionpack dependency-version: 7.0.10 dependency-type: indirect dependency-group: bundler - dependency-name: net-imap dependency-version: 0.5.7 dependency-type: indirect dependency-group: bundler - dependency-name: rails-html-sanitizer dependency-version: 1.6.1 dependency-type: indirect dependency-group: bundler ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the bundler group with 4 updates in the /pkgs/applications/office/ledger-web directory: activerecord, rack, rack-session and sinatra.
Bumps the bundler group with 3 updates in the /pkgs/applications/version-management/danger-gitlab directory: faraday, httparty and rexml.
Bumps the bundler group with 1 update in the /pkgs/by-name/ba/bashly directory: rexml.
Bumps the bundler group with 2 updates in the /pkgs/by-name/ce/cewl directory: rexml and nokogiri.
Bumps the bundler group with 2 updates in the /pkgs/by-name/cf/cfn-nag directory: rexml and aws-sdk-s3.
Bumps the bundler group with 1 update in the /pkgs/by-name/co/coltrane directory: activesupport.
Bumps the bundler group with 1 update in the /pkgs/by-name/do/doing directory: rexml.
Bumps the bundler group with 1 update in the /pkgs/by-name/ev/evil-winrm directory: rexml.
Bumps the bundler group with 1 update in the /pkgs/by-name/fu/fusuma directory: rexml.
Bumps the bundler group with 5 updates in the /pkgs/by-name/go/gollum directory:
3.1.83.1.202.1.02.1.14.1.14.2.03.4.03.4.21.18.11.19.1Bumps the bundler group with 3 updates in the /pkgs/by-name/li/licensed directory: rack, faraday and nokogiri.
Bumps the bundler group with 1 update in the /pkgs/by-name/mp/mpdcron directory: nokogiri.
Bumps the bundler group with 1 update in the /pkgs/by-name/ov/overcommit directory: rexml.
Bumps the bundler group with 5 updates in the /pkgs/by-name/pg/pghero directory:
2.2.102.2.221.10.41.10.51.16.71.19.10.5.00.5.71.6.01.6.1Updates
activerecordfrom 8.0.2 to 8.0.2.1Release notes
Sourced from activerecord's releases.
... (truncated)
Commits
b0c813bPreparing for 8.0.2.1 releasea6d50aeUpdate CHANGELOGs568c0bcCall inspect on ids in RecordNotFound errorUpdates
rackfrom 3.1.12 to 3.1.20Changelog
Sourced from rack's changelog.
... (truncated)
Commits
6504434Bump patch version.48e9030Prevent directory traversal via root prefix bypass.ed0f455XSS injection via malicious filename inRack::Directory.b29df31Bump patch version.72719a8Allow Multipart head to span read boundary. (#2392)96cf078Bump patch version.cbd541eUnbounded read inRack::Requestform parsing can lead to memory exhaustion.7e69f65Improper handling of proxy headers inRack::Sendfilemay allow proxy bypass.db6bc0fNormalize adivsories links.ad81f80Fix handling ofErrno::EPIPEin multipart tests.Updates
rack-sessionfrom 2.1.0 to 2.1.1Release notes
Sourced from rack-session's releases.
Changelog
Sourced from rack-session's changelog.
Commits
96663ecBump patch version.c58ad79Don't allow session to be recreated accidentally.Updates
sinatrafrom 4.1.1 to 4.2.0Changelog
Sourced from sinatra's changelog.
Commits
f2ad45f4.2.0 release (#2122)3fe8c38Fix regex inetag_matches?to prevent ReDoS (#2121)fa99a21PATH_INFOcan never be empty. (#2114)ea0d3faSkip broken tests. (#2115)5e15985Sync changelog for v4.0.191cfb54Add :static_headers setting for custom headers in static file responses (#2089)c918134Setrubygems_mfa_requiredfor thesinatragem (#2087)ac3ff23README: Remove duplicate mention of installing puma (#2091)cfcc70dCI: don't useRack::Linton invalid hostname (#2086)c235249CI: Test with Ruby 3.4 (#2083)Updates
urifrom 1.0.3 to 1.1.1Release notes
Sourced from uri's releases.
... (truncated)
Commits
f1b05c8v1.1.18557e8dMerge pull request #189 from osyoyu/restore-whatwg-email-regexpc551d70Re-allow consecutive, leading and trailing dots in EMAIL_REGEXPc41903bv1.1.0b433f34Merge pull request #187 from ruby/switch-version-code1fc4f04Use generic version number to VERSION and generate VERSION_CODE from thate830680Exclude dependabot updates from release note70d245fMerge pull request #130 from soda92/improve-error-messaged629c8cMerge pull request #161 from y-yagi/fix_changing_parserfec6733Merge pull request #166 from vivshaw/vivshaw/correct-obsolete-parseUpdates
faradayfrom 1.7.0 to 1.10.5Release notes
Sourced from faraday's releases.
... (truncated)
Changelog
Sourced from faraday's changelog.
... (truncated)
Commits
5c1d68aVersion bump to 1.10.5ea02c0eUpdate rubocop complexity thresholds for security fixd0fc049Backport security fix for CVE-2026-25765 to 1.x branch (#1665)41c990eVersion bump to 1.10.4435888dMake sure thatFaraday::Request::JsonandFaraday::Response::Jsonare cor...8208693Use ruby/setup-ruby in publish.ymleeec367Fix ruby version in publish.yml92c038bUpdate publish.yml to use Ruby 2.77a382b5Version bump to 1.10.316506eeAdd support for Ruby 3.2.0 in Faraday v1.x (#1483)Updates
httpartyfrom 0.18.1 to 0.24.0Release notes
Sourced from httparty's releases.
... (truncated)
Changelog
Sourced from httparty's changelog.
Commits
55ec76eRelease 0.24.0ddfbc8dMerge pull request #830 from jnunemaker/fix-ssrf-base-uri-bypass0529bcdfix: prevent SSRF via absolute URL bypassing base_uri (GHSA-hm5p-x4rq-38w4)05f38fdMerge pull request #829 from jnunemaker/memory8901c23feat: stream multipart file uploads to reduce memory usage091bd6aMerge pull request #828 from jnunemaker/issue-82659c0ac5feat: set Content-Type for Hash body in requests5c8b45eMerge pull request #823 from jnunemaker/mixed-encodings6419cb3Force binary encoding throughoutc74571fRelease 0.23.2Updates
rexmlfrom 3.2.5 to 3.4.2Release notes
Sourced from rexml's releases.
... (truncated)
Changelog
Sourced from rexml's changelog.
... (truncated)
Commits
f36916fAdd 3.4.2 entry (#284)5859bdeAdded XML declaration check &Source#skip_spacesmethod (#282)1d876e3Bump actions/checkout from 4 to 5 (#283)c87bda8Remove ostruct from dev deps (#281)c60ae02Remove bundler from dev deps (#277)9b084d7Fix & Deprecate REXML::Text#text_indent (#275)04a589aFix a bug that XPath can't be used for no document element (#268)66232eaRemove redundant return statements (#266)63f3e97Use Safe Navigation (&.) from Ruby 2.3 (#265)d427fc5Avoid redundant calls for doctype (#264)Updates
rexmlfrom 3.4.1 to 3.4.2Release notes
Sourced from rexml's releases.
... (truncated)
Changelog
Sourced from rexml's changelog.
... (truncated)
Commits
f36916fAdd 3.4.2 entry (#284)5859bdeAdded XML declaration check &Source#skip_spacesmethod (#282)1d876e3Bump actions/checkout from 4 to 5 (#283)c87bda8Remove ostruct from dev deps (#281)c60ae02Remove bundler from dev deps (#277)9b084d7Fix & Deprecate REXML::Text#text_indent (#275)04a589aFix a bug that XPath can't be used for no document element (#268)66232eaRemove redundant return statements (#266)63f3e97Use Safe Navigation (&.) from Ruby 2.3 (#265)d427fc5Avoid redundant calls for doctype (#264)Updates
rexmlfrom 3.4.1 to 3.4.2Release notes
Sourced from rexml's releases.
... (truncated)
Changelog
Sourced from