From 96f5a4f3e1851fd02d5e81c3c494a394b7ff21b8 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 8 May 2025 18:28:39 +0000 Subject: [PATCH] fix: builders/testdata/ruby/version_specified_gemfile_27/Gemfile & builders/testdata/ruby/version_specified_gemfile_27/Gemfile.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-RACK-10074188 --- .../ruby/version_specified_gemfile_27/Gemfile | 2 +- .../version_specified_gemfile_27/Gemfile.lock | 33 ++++++++++++------- 2 files changed, 22 insertions(+), 13 deletions(-) diff --git a/builders/testdata/ruby/version_specified_gemfile_27/Gemfile b/builders/testdata/ruby/version_specified_gemfile_27/Gemfile index 085a2922e..1dbf48d97 100644 --- a/builders/testdata/ruby/version_specified_gemfile_27/Gemfile +++ b/builders/testdata/ruby/version_specified_gemfile_27/Gemfile @@ -13,5 +13,5 @@ # limitations under the License. source "https://rubygems.org" -gem "sinatra", "~> 2.0" +gem "sinatra", "~> 4.0", ">= 4.0.0" ruby '~> 2.7.0' diff --git a/builders/testdata/ruby/version_specified_gemfile_27/Gemfile.lock b/builders/testdata/ruby/version_specified_gemfile_27/Gemfile.lock index dec9fb311..50fd589fb 100644 --- a/builders/testdata/ruby/version_specified_gemfile_27/Gemfile.lock +++ b/builders/testdata/ruby/version_specified_gemfile_27/Gemfile.lock @@ -1,27 +1,36 @@ GEM remote: https://rubygems.org/ specs: - mustermann (1.1.1) + base64 (0.2.0) + logger (1.7.0) + mustermann (3.0.3) ruby2_keywords (~> 0.0.1) - rack (2.2.2) - rack-protection (2.0.8.1) - rack - ruby2_keywords (0.0.2) - sinatra (2.0.8.1) - mustermann (~> 1.0) - rack (~> 2.0) - rack-protection (= 2.0.8.1) + rack (3.1.14) + rack-protection (4.1.1) + base64 (>= 0.1.0) + logger (>= 1.6.0) + rack (>= 3.0.0, < 4) + rack-session (2.1.1) + base64 (>= 0.1.0) + rack (>= 3.0.0) + ruby2_keywords (0.0.5) + sinatra (4.1.1) + logger (>= 1.6.0) + mustermann (~> 3.0) + rack (>= 3.0.0, < 4) + rack-protection (= 4.1.1) + rack-session (>= 2.0.0, < 3) tilt (~> 2.0) - tilt (2.0.10) + tilt (2.6.0) PLATFORMS ruby DEPENDENCIES - sinatra (~> 2.0) + sinatra (~> 4.0, >= 4.0.0) RUBY VERSION ruby 2.7.0p0 BUNDLED WITH - 1.17.3 \ No newline at end of file + 2.1.4