From 3cb258b2c78924f0eec8fe782e4cde3fd73d78a7 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 20 Jul 2020 07:07:47 +0000 Subject: [PATCH] fix: Gemfile & Gemfile.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-KRAMDOWN-585939 --- Gemfile | 2 +- Gemfile.lock | 50 +++++++++++++++++++++++++++++--------------------- 2 files changed, 30 insertions(+), 22 deletions(-) diff --git a/Gemfile b/Gemfile index 78453939..bbbe6871 100644 --- a/Gemfile +++ b/Gemfile @@ -1,3 +1,3 @@ source 'https://rubygems.org' -gem 'danger', '~> 5.0' +gem 'danger', '~> 6.0', '>= 6.0.0' diff --git a/Gemfile.lock b/Gemfile.lock index 3cf77264..521b4071 100644 --- a/Gemfile.lock +++ b/Gemfile.lock @@ -1,9 +1,9 @@ GEM remote: https://rubygems.org/ specs: - addressable (2.5.2) - public_suffix (>= 2.0.2, < 4.0) - claide (1.0.2) + addressable (2.7.0) + public_suffix (>= 2.0.2, < 5.0) + claide (1.0.3) claide-plugins (0.9.2) cork nap @@ -11,43 +11,51 @@ GEM colored2 (3.1.2) cork (0.3.0) colored2 (~> 3.1) - danger (5.5.10) + danger (6.3.2) claide (~> 1.0) claide-plugins (>= 0.9.2) colored2 (~> 3.1) cork (~> 0.1) faraday (~> 0.9) - faraday-http-cache (~> 1.0) - git (~> 1) - kramdown (~> 1.5) + faraday-http-cache (~> 2.0) + git (~> 1.6) + kramdown (~> 2.0) + kramdown-parser-gfm (~> 1.0) no_proxy_fix octokit (~> 4.7) terminal-table (~> 1) - faraday (0.14.0) + faraday (0.17.3) multipart-post (>= 1.2, < 3) - faraday-http-cache (1.3.1) - faraday (~> 0.8) - git (1.3.0) - kramdown (1.16.2) - multipart-post (2.0.0) + faraday-http-cache (2.2.0) + faraday (>= 0.8) + git (1.7.0) + rchardet (~> 1.8) + kramdown (2.3.0) + rexml + kramdown-parser-gfm (1.1.0) + kramdown (~> 2.0) + multipart-post (2.1.1) nap (1.1.0) no_proxy_fix (0.1.2) - octokit (4.8.0) + octokit (4.18.0) + faraday (>= 0.9) sawyer (~> 0.8.0, >= 0.5.3) open4 (1.3.4) - public_suffix (3.0.2) - sawyer (0.8.1) - addressable (>= 2.3.5, < 2.6) - faraday (~> 0.8, < 1.0) + public_suffix (4.0.5) + rchardet (1.8.0) + rexml (3.2.4) + sawyer (0.8.2) + addressable (>= 2.3.5) + faraday (> 0.8, < 2.0) terminal-table (1.8.0) unicode-display_width (~> 1.1, >= 1.1.1) - unicode-display_width (1.3.0) + unicode-display_width (1.7.0) PLATFORMS ruby DEPENDENCIES - danger (~> 5.0) + danger (~> 6.0, >= 6.0.0) BUNDLED WITH - 1.16.2 + 1.17.3