From 0dfd2acf084a5a6cea8cfe1e59eb94106716deb1 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 10 Oct 2025 08:25:47 +0000 Subject: [PATCH] fix: Gemfile to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-RACK-13378928 - https://snyk.io/vuln/SNYK-RUBY-RACK-13378930 - https://snyk.io/vuln/SNYK-RUBY-RACK-13378932 --- Gemfile | 14 +++++++------- 1 file changed, 7 insertions(+), 7 deletions(-) diff --git a/Gemfile b/Gemfile index bd21667..f75a207 100644 --- a/Gemfile +++ b/Gemfile @@ -7,18 +7,18 @@ ruby ::File.read('.ruby-version').split('-').last # Application Dependencies gem 'activesupport' gem 'puma' -gem 'sinatra', require: false -gem 'sinatra-contrib' +gem 'sinatra', '>= 2.0.6', require: false +gem 'sinatra-contrib', '>= 2.0.6' gem 'sinatra-flash' # Settings gem 'config' # Datastore Dependencies -gem 'actionpack', require: false +gem 'actionpack', '>= 5.2.4', require: false gem 'activerecord' gem 'pg' -gem 'standalone_migrations' +gem 'standalone_migrations', '>= 6.0.0' # Rake & Job Dependencies gem 'bundler-audit' @@ -26,11 +26,11 @@ gem 'progressbar' gem 'rake' group :development, :test do - gem 'capybara' + gem 'capybara', '>= 3.27.0' gem 'factory_bot' gem 'faker' - gem 'rack-test' - gem 'racksh' + gem 'rack-test', '>= 2.0.0' + gem 'racksh', '>= 1.0.1' gem 'rspec' gem 'rspec-json_expectations' gem 'rubocop', require: false