From 287bc6b443b10791a8de4376adbfe60046dcd12c Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 5 Oct 2023 14:03:18 +0000 Subject: [PATCH] fix: Gemfile to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-ACTIVESUPPORT-3237242 - https://snyk.io/vuln/SNYK-RUBY-ACTIVESUPPORT-3360028 - https://snyk.io/vuln/SNYK-RUBY-ACTIVESUPPORT-569598 - https://snyk.io/vuln/SNYK-RUBY-ERUBIS-20482 - https://snyk.io/vuln/SNYK-RUBY-GLOBALID-3237234 - https://snyk.io/vuln/SNYK-RUBY-I18N-72582 - https://snyk.io/vuln/SNYK-RUBY-JSON-560838 - https://snyk.io/vuln/SNYK-RUBY-LOOFAH-22023 - https://snyk.io/vuln/SNYK-RUBY-LOOFAH-3168317 - https://snyk.io/vuln/SNYK-RUBY-LOOFAH-474102 - https://snyk.io/vuln/SNYK-RUBY-LOOFAH-72548 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-1055008 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-1293239 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-1583442 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-1726792 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-20214 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-20245 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-20277 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-20292 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-20299 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-20367 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-20368 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-20432 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-22013 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-22014 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-2413994 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-2620374 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-2630623 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-2630898 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-2840634 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-3052880 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-3357693 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-459107 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-534637 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-552159 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-72433 - https://snyk.io/vuln/SNYK-RUBY-RACK-1061917 - https://snyk.io/vuln/SNYK-RUBY-RACK-2848599 - https://snyk.io/vuln/SNYK-RUBY-RACK-2848600 - https://snyk.io/vuln/SNYK-RUBY-RACK-3237240 - https://snyk.io/vuln/SNYK-RUBY-RACK-3356639 - https://snyk.io/vuln/SNYK-RUBY-RACK-538324 - https://snyk.io/vuln/SNYK-RUBY-RACK-569066 - https://snyk.io/vuln/SNYK-RUBY-RACK-572377 - https://snyk.io/vuln/SNYK-RUBY-RACK-72567 - https://snyk.io/vuln/SNYK-RUBY-RAILSHTMLSANITIZER-20254 - https://snyk.io/vuln/SNYK-RUBY-RAILSHTMLSANITIZER-20257 - https://snyk.io/vuln/SNYK-RUBY-RAILSHTMLSANITIZER-20261 - https://snyk.io/vuln/SNYK-RUBY-RAILSHTMLSANITIZER-22025 - https://snyk.io/vuln/SNYK-RUBY-RAILSHTMLSANITIZER-2935879 - https://snyk.io/vuln/SNYK-RUBY-RAILSHTMLSANITIZER-3168316 - https://snyk.io/vuln/SNYK-RUBY-RAILSHTMLSANITIZER-3168646 - https://snyk.io/vuln/SNYK-RUBY-RAILSHTMLSANITIZER-3168648 - https://snyk.io/vuln/SNYK-RUBY-TZINFO-2958048 --- Gemfile | 18 +++++++++--------- 1 file changed, 9 insertions(+), 9 deletions(-) diff --git a/Gemfile b/Gemfile index b792c19..f5d14bc 100644 --- a/Gemfile +++ b/Gemfile @@ -2,29 +2,29 @@ source 'https://rubygems.org' ruby '2.2.3' -gem 'rails', '4.2.4' +gem 'rails', '7.1.0' gem 'pg', '~> 0.18.3' -gem 'sass-rails', '~> 5.0' +gem 'sass-rails', '~> 5.0', '>= 5.0.8' gem 'uglifier', '>= 1.3.0' -gem 'coffee-rails', '~> 4.1.0' -gem 'jquery-rails', '~> 4.0.5' +gem 'coffee-rails', '~> 4.2.2' +gem 'jquery-rails', '~> 4.1.0' gem 'sdoc', '~> 0.4.0', group: :doc -gem 'devise', '~> 3.5.2' +gem 'devise', '~> 4.7.0' gem 'haml', '~>4.0.7' gem 'multi_json', '~> 1.2' gem 'active_model_serializers', '~> 0.9.3' gem 'rack-cors', require: 'rack/cors' -gem 'kaminari', '~> 0.16.3' +gem 'kaminari', '~> 0.17.0' gem 'paper_trail', '~> 4.0.0' gem 'delayed_job_active_record', '~> 4.1.0' gem 'delayed_job_web', '~> 1.2.10' -gem 'mandrill_mailer', '~> 1.1.0' +gem 'mandrill_mailer', '~> 1.7.0' gem 'aasm', '~> 4.3.0' gem 'liquid', '~> 2.6.1' gem 'unicorn', '~> 5.0.0' gem 'bundler' -gem 'angular-rails-templates', '~> 0.1.5' +gem 'angular-rails-templates', '~> 0.2.0' source 'https://rails-assets.org' do gem 'rails-assets-angular' @@ -46,7 +46,7 @@ end # I tried to put this in assets group # but it does not work for that reason # this libraries are here :( -gem 'less-rails', '~> 2.7.0' +gem 'less-rails', '~> 2.7.1' gem 'railsstrap', '~> 3.3.4' group :development, :test do