From 73acd5f72d2b6903bc1bd079fb815c5ae150891a Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 5 Apr 2023 11:36:44 +0530 Subject: [PATCH] fix: Gemfile to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-ACTIVESUPPORT-3237242 - https://snyk.io/vuln/SNYK-RUBY-ACTIVESUPPORT-3360028 - https://snyk.io/vuln/SNYK-RUBY-ACTIVESUPPORT-569598 - https://snyk.io/vuln/SNYK-RUBY-ADDRESSABLE-1316242 - https://snyk.io/vuln/SNYK-RUBY-DALLI-3136292 - https://snyk.io/vuln/SNYK-RUBY-EXCON-537866 - https://snyk.io/vuln/SNYK-RUBY-OMNIAUTH-174820 - https://snyk.io/vuln/SNYK-RUBY-OMNIAUTH-2987513 - https://snyk.io/vuln/SNYK-RUBY-PUMA-2400629 - https://snyk.io/vuln/SNYK-RUBY-PUMA-2437090 - https://snyk.io/vuln/SNYK-RUBY-RACK-1061917 - https://snyk.io/vuln/SNYK-RUBY-RACK-2848599 - https://snyk.io/vuln/SNYK-RUBY-RACK-2848600 - https://snyk.io/vuln/SNYK-RUBY-RACK-3237233 - https://snyk.io/vuln/SNYK-RUBY-RACK-3237237 - https://snyk.io/vuln/SNYK-RUBY-RACK-3237240 - https://snyk.io/vuln/SNYK-RUBY-RACK-3356639 - https://snyk.io/vuln/SNYK-RUBY-RACK-3360233 - https://snyk.io/vuln/SNYK-RUBY-RACK-538324 - https://snyk.io/vuln/SNYK-RUBY-RACK-569066 - https://snyk.io/vuln/SNYK-RUBY-RACK-572377 - https://snyk.io/vuln/SNYK-RUBY-RAKE-552000 - https://snyk.io/vuln/SNYK-RUBY-RUBYZIP-469156 - https://snyk.io/vuln/SNYK-RUBY-SINATRA-2806372 - https://snyk.io/vuln/SNYK-RUBY-SINATRA-3150405 - https://snyk.io/vuln/SNYK-RUBY-TZINFO-2958048 --- Gemfile | 16 ++++++++-------- 1 file changed, 8 insertions(+), 8 deletions(-) diff --git a/Gemfile b/Gemfile index a901a3c..944b680 100644 --- a/Gemfile +++ b/Gemfile @@ -1,15 +1,15 @@ source "https://rubygems.org" ruby "2.7.5" -gem "sinatra", "~>2.0.2" -gem "sinatra-contrib" -gem "puma" -gem "dalli" -gem "rubyzip" -gem "excon" +gem "sinatra", "~> 2.2.3" +gem "sinatra-contrib", ">= 2.2.3" +gem "puma", ">= 5.6.4" +gem "dalli", ">= 3.2.3" +gem "rubyzip", ">= 1.3.0" +gem "excon", ">= 0.71.0" gem "sinatra-asset-pipeline" gem "scrolls" -gem "heroku-bouncer" +gem "heroku-bouncer", ">= 0.9.0" gem "git_hub_integration", "0.1.4", source: "https://packagecloud.io/heroku/gemgate/" gem "redis" gem "octokit" @@ -23,6 +23,6 @@ end group "test" do gem "minitest" - gem "rack-test" + gem "rack-test", ">= 2.0.0" gem "webmock" end