From 0e9b6ab17520b471baf3a47fd11ced6bb2142955 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 24 Jan 2023 18:02:56 +0000 Subject: [PATCH] fix: Gemfile to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-ACTIONPACK-3237231 - https://snyk.io/vuln/SNYK-RUBY-ACTIONPACK-3237232 - https://snyk.io/vuln/SNYK-RUBY-ACTIVERECORD-3237239 - https://snyk.io/vuln/SNYK-RUBY-ACTIVESUPPORT-3237242 - https://snyk.io/vuln/SNYK-RUBY-GLOBALID-3237234 - https://snyk.io/vuln/SNYK-RUBY-RACK-3237240 --- Gemfile | 12 ++++++------ 1 file changed, 6 insertions(+), 6 deletions(-) diff --git a/Gemfile b/Gemfile index 6a261f81..b57c2653 100644 --- a/Gemfile +++ b/Gemfile @@ -1,12 +1,12 @@ source 'http://rubygems.org' ruby '2.3.3' -gem 'rails', '4.2.7.1' +gem 'rails', '6.1.7.1' # Gems used only for assets and not required # in production environments by default. group :assets do - gem 'sass-rails', '>= 3.2' + gem 'sass-rails', '>= 5.0.8' gem 'therubyracer' gem 'uglifier', '>= 1.0.3' @@ -22,7 +22,7 @@ gem 'jquery-rails' gem 'http_accept_language' # Mongo -gem 'mongoid' +gem 'mongoid', '>= 7.0.12' # Omniauth gem 'omniauth' @@ -40,11 +40,11 @@ gem 'dalli' gem 'memcachier' # Pagination -gem 'kaminari', '~> 1.0' -gem 'kaminari-mongoid', '~> 1.0' +gem 'kaminari', '~> 1.0', '>= 1.0.1' +gem 'kaminari-mongoid', '~> 1.0', '>= 1.0.1' # Notify exceptions -gem 'exception_notification' +gem 'exception_notification', '>= 4.4.0' # Static pages gem 'high_voltage'