From 2ae42c842ffaf47d932083998364b8ea1ee322e4 Mon Sep 17 00:00:00 2001 From: "dependabot-preview[bot]" <27856297+dependabot-preview[bot]@users.noreply.github.com> Date: Thu, 8 Apr 2021 06:56:03 +0000 Subject: [PATCH] [Security] Bump loofah from 2.0.2 to 2.9.1 Bumps [loofah](https://github.com/flavorjones/loofah) from 2.0.2 to 2.9.1. **This update includes security fixes.** - [Release notes](https://github.com/flavorjones/loofah/releases) - [Changelog](https://github.com/flavorjones/loofah/blob/main/CHANGELOG.md) - [Commits](https://github.com/flavorjones/loofah/compare/v2.0.2...v2.9.1) Signed-off-by: dependabot-preview[bot] --- Gemfile.lock | 10 ++++++---- 1 file changed, 6 insertions(+), 4 deletions(-) diff --git a/Gemfile.lock b/Gemfile.lock index 268829a..db4c121 100644 --- a/Gemfile.lock +++ b/Gemfile.lock @@ -45,6 +45,7 @@ GEM arel (6.0.3) builder (3.2.2) concurrent-ruby (1.0.5) + crass (1.0.6) database_cleaner (1.4.1) diff-lcs (1.2.5) erubis (2.7.0) @@ -52,17 +53,18 @@ GEM activesupport (>= 4.2.0) i18n (0.7.0) json (1.8.2) - loofah (2.0.2) + loofah (2.9.1) + crass (~> 1.0.2) nokogiri (>= 1.5.9) mail (2.6.6) mime-types (>= 1.16, < 4) mime-types (3.1) mime-types-data (~> 3.2015) mime-types-data (3.2016.0521) - mini_portile (0.6.2) + mini_portile2 (2.1.0) minitest (5.6.1) - nokogiri (1.6.6.2) - mini_portile (~> 0.6.0) + nokogiri (1.6.8.1) + mini_portile2 (~> 2.1.0) pg (0.18.2) rack (1.6.1) rack-test (0.6.3)