Skip to content

Security: bump rexml, yard#27

Closed
technicalpickles wants to merge 1 commit into
mainfrom
security/dep-sweep
Closed

Security: bump rexml, yard#27
technicalpickles wants to merge 1 commit into
mainfrom
security/dep-sweep

Conversation

@technicalpickles

Copy link
Copy Markdown

Security Dependency Bumps

Gem Version GHSA Severity
rexml 3.4.1 → 3.4.4 GHSA-c2f4-jgmc-q2r5 High
yard 0.9.37 → 0.9.44 GHSA-3jfp-46x4-xgfj Medium

Test Results: rspec (19 examples, 0 failures), rubocop passed.

No major version bumps in this update.

@github-project-automation github-project-automation Bot moved this to Triage in Modularity Jun 18, 2026
@technicalpickles technicalpickles marked this pull request as ready for review June 24, 2026 18:55
@technicalpickles technicalpickles requested a review from a team as a code owner June 24, 2026 18:55
@technicalpickles technicalpickles enabled auto-merge (squash) June 24, 2026 19:57
@dduugg

dduugg commented Jul 1, 2026

Copy link
Copy Markdown
Contributor

rexml is at 3.4.4 now, and yard is no longer a dependency

@dduugg dduugg closed this Jul 1, 2026
auto-merge was automatically disabled July 1, 2026 19:41

Pull request was closed

@github-project-automation github-project-automation Bot moved this from Triage to Done in Modularity Jul 1, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

Status: Done

Development

Successfully merging this pull request may close these issues.

2 participants