From 1e80bfdb9d1cf273fb39d85d9604cd4adf8594b1 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 20 Oct 2022 16:03:03 +0000 Subject: [PATCH] fix: Gemfile & Gemfile.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-3052880 --- Gemfile | 2 +- Gemfile.lock | 10 ++++++---- 2 files changed, 7 insertions(+), 5 deletions(-) diff --git a/Gemfile b/Gemfile index 6593519..c5302a4 100644 --- a/Gemfile +++ b/Gemfile @@ -12,5 +12,5 @@ group :development do gem 'berkshelf' gem 'codecov' gem 'webmock' - gem 'nokogiri' + gem 'nokogiri', '>= 1.13.9' end diff --git a/Gemfile.lock b/Gemfile.lock index 8b4972f..8f02b50 100644 --- a/Gemfile.lock +++ b/Gemfile.lock @@ -378,7 +378,7 @@ GEM mime-types (3.3.1) mime-types-data (~> 3.2015) mime-types-data (3.2020.0512) - mini_portile2 (2.4.0) + mini_portile2 (2.8.0) minitar (0.9) minitest (5.14.1) mixlib-archive (1.0.7) @@ -418,8 +418,9 @@ GEM net-ssh-multi (1.2.1) net-ssh (>= 2.6.5) net-ssh-gateway (>= 1.2.0) - nokogiri (1.10.10) - mini_portile2 (~> 2.4.0) + nokogiri (1.13.9) + mini_portile2 (~> 2.8.0) + racc (~> 1.4) nori (2.6.0) octokit (4.18.0) faraday (>= 0.9) @@ -450,6 +451,7 @@ GEM coderay (~> 1.1) method_source (~> 1.0) public_suffix (4.0.5) + racc (1.6.0) rack (2.2.3) rainbow (3.0.0) rake (12.3.3) @@ -675,7 +677,7 @@ DEPENDENCIES github_changelog_generator kitchen-inspec kitchen-vagrant - nokogiri + nokogiri (>= 1.13.9) rake (< 13) rspec stove