From 8b17fb75152d0e870b2c0c1735b33b06d44f1333 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 5 Oct 2023 14:53:21 +0000 Subject: [PATCH] fix: Gemfile to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-ERUBIS-20482 - https://snyk.io/vuln/SNYK-RUBY-I18N-20124 - https://snyk.io/vuln/SNYK-RUBY-I18N-72582 - https://snyk.io/vuln/SNYK-RUBY-RACK-1061917 - https://snyk.io/vuln/SNYK-RUBY-RACK-20021 - https://snyk.io/vuln/SNYK-RUBY-RACK-20028 - https://snyk.io/vuln/SNYK-RUBY-RACK-20045 - https://snyk.io/vuln/SNYK-RUBY-RACK-20052 - https://snyk.io/vuln/SNYK-RUBY-RACK-20058 - https://snyk.io/vuln/SNYK-RUBY-RACK-20059 - https://snyk.io/vuln/SNYK-RUBY-RACK-20230 - https://snyk.io/vuln/SNYK-RUBY-RACK-2848599 - https://snyk.io/vuln/SNYK-RUBY-RACK-2848600 - https://snyk.io/vuln/SNYK-RUBY-RACK-3356639 - https://snyk.io/vuln/SNYK-RUBY-RACK-538324 - https://snyk.io/vuln/SNYK-RUBY-RACK-569066 - https://snyk.io/vuln/SNYK-RUBY-RACK-572377 - https://snyk.io/vuln/SNYK-RUBY-RACK-72567 - https://snyk.io/vuln/SNYK-RUBY-SPROCKETS-20199 --- Gemfile | 14 +++++++------- 1 file changed, 7 insertions(+), 7 deletions(-) diff --git a/Gemfile b/Gemfile index 225cb65..ad6081d 100644 --- a/Gemfile +++ b/Gemfile @@ -1,6 +1,6 @@ source 'http://rubygems.org' -gem 'rails', '~> 3.1.0' +gem 'rails', '~> 7.1.0' # Bundle edge Rails instead: # gem 'rails', :git => 'git://github.com/rails/rails.git' @@ -10,20 +10,20 @@ gem 'gravatar_image_tag', '1.0.0.pre2' gem 'will_paginate', '3.0.pre2' group:development do - gem 'rspec-rails', '2.6.1' + gem 'rspec-rails', '2.8.0' gem 'annotate', '2.4.0' gem 'faker', '0.3.1' end group:test do - gem 'rspec-rails','2.6.1' + gem 'rspec-rails', '2.8.0' gem 'webrat', '0.7.1' gem 'spork', '0.9.0.rc8' gem 'autotest', '4.4.6' gem 'autotest-rails-pure', '4.1.2' gem 'autotest-fsevent', '0.2.4' gem 'autotest-growl', '0.2.9' - gem 'factory_girl_rails', '1.0' + gem 'factory_girl_rails', '1.0.1' end group :production do @@ -40,12 +40,12 @@ gem 'rack-ssl', :require => 'rack/ssl' # Gems used only for assets and not required # in production environments by default. group :assets do - gem 'sass-rails', '~> 3.1.4' - gem 'coffee-rails', '~> 3.1.1' + gem 'sass-rails', '~> 5.0.8' + gem 'coffee-rails', '~> 4.2.2' gem 'uglifier', '>= 1.0.3' end -gem 'jquery-rails' +gem 'jquery-rails', '>= 4.0.1' # To use ActiveModel has_secure_password # gem 'bcrypt-ruby', '~> 3.0.0'