From a34f04873240f4c9b1c9d360f95028190ef6f7eb Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 5 Apr 2023 00:58:16 +0000 Subject: [PATCH] fix: Gemfile to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-ACTIVESUPPORT-3237242 - https://snyk.io/vuln/SNYK-RUBY-ACTIVESUPPORT-3360028 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-2620374 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-2630623 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-2630898 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-2840634 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-3052880 - https://snyk.io/vuln/SNYK-RUBY-RACK-1061917 - https://snyk.io/vuln/SNYK-RUBY-RACK-2848599 - https://snyk.io/vuln/SNYK-RUBY-RACK-2848600 - https://snyk.io/vuln/SNYK-RUBY-RACK-3237240 - https://snyk.io/vuln/SNYK-RUBY-RACK-3356639 - https://snyk.io/vuln/SNYK-RUBY-RACK-569066 - https://snyk.io/vuln/SNYK-RUBY-RACK-572377 - https://snyk.io/vuln/SNYK-RUBY-RACKPROTECTION-20394 - https://snyk.io/vuln/SNYK-RUBY-REDCARPET-1059089 - https://snyk.io/vuln/SNYK-RUBY-REDCARPET-20212 - https://snyk.io/vuln/SNYK-RUBY-SINATRA-20488 - https://snyk.io/vuln/SNYK-RUBY-SINATRA-22027 - https://snyk.io/vuln/SNYK-RUBY-SINATRA-2806372 - https://snyk.io/vuln/SNYK-RUBY-SINATRA-3150405 - https://snyk.io/vuln/SNYK-RUBY-TZINFO-2958048 --- Gemfile | 12 ++++++------ 1 file changed, 6 insertions(+), 6 deletions(-) diff --git a/Gemfile b/Gemfile index ab6a5ab0..ec547fc6 100644 --- a/Gemfile +++ b/Gemfile @@ -2,23 +2,23 @@ source "https://rubygems.org" ruby '2.7.5' -gem 'activesupport' +gem 'activesupport', '>= 6.1.7.3' gem "erector", "~> 0.10.0" -gem "sinatra", "~> 1.4.0" -gem "sinatra-contrib", "~> 1.4.0" -gem "nokogiri" +gem "sinatra", "~> 2.2.3" +gem "sinatra-contrib", "~> 2.2.3" +gem "nokogiri", ">= 1.13.9" gem "thin", "1.8.1" gem 'rack-codehighlighter' gem 'coderay' gem "deckrb", "~> 0.5.2" gem "sass" -gem "redcarpet" +gem "redcarpet", ">= 3.5.1" gem "rubyzip" gem "i18n", "~> 0.7" gem 'font-awesome-sass' gem 'bootstrap-sass' gem 'jquery-cdn' -gem 'sprockets' +gem 'sprockets', '>= 4.2.0' gem 'ffi', "1.15.5" gem 'backports', "3.23.0"