From 27b0b3a56b641a8582453277fbcdee429951e766 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 4 Apr 2023 16:07:51 +0000 Subject: [PATCH] fix: Gemfile & Gemfile.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-PUMA-1291014 - https://snyk.io/vuln/SNYK-RUBY-PUMA-1730572 - https://snyk.io/vuln/SNYK-RUBY-PUMA-2400629 - https://snyk.io/vuln/SNYK-RUBY-PUMA-2437090 - https://snyk.io/vuln/SNYK-RUBY-PUMA-536835 - https://snyk.io/vuln/SNYK-RUBY-PUMA-559020 - https://snyk.io/vuln/SNYK-RUBY-PUMA-559100 - https://snyk.io/vuln/SNYK-RUBY-PUMA-570205 - https://snyk.io/vuln/SNYK-RUBY-PUMA-570206 - https://snyk.io/vuln/SNYK-RUBY-RACK-1061917 - https://snyk.io/vuln/SNYK-RUBY-RACK-2848599 - https://snyk.io/vuln/SNYK-RUBY-RACK-2848600 - https://snyk.io/vuln/SNYK-RUBY-RACK-3237240 - https://snyk.io/vuln/SNYK-RUBY-RACK-3356639 - https://snyk.io/vuln/SNYK-RUBY-RACK-538324 - https://snyk.io/vuln/SNYK-RUBY-RACK-569066 - https://snyk.io/vuln/SNYK-RUBY-RACK-572377 - https://snyk.io/vuln/SNYK-RUBY-RACK-72567 --- Gemfile | 4 ++-- Gemfile.lock | 12 +++++++----- 2 files changed, 9 insertions(+), 7 deletions(-) diff --git a/Gemfile b/Gemfile index 8e06a0c7..8d708d31 100644 --- a/Gemfile +++ b/Gemfile @@ -1,3 +1,3 @@ source 'https://rubygems.org' -gem 'rack' -gem 'puma' +gem 'rack', '>= 3.0.0' +gem 'puma', '>= 4.3.12' diff --git a/Gemfile.lock b/Gemfile.lock index 7bc119c5..efabbdeb 100644 --- a/Gemfile.lock +++ b/Gemfile.lock @@ -1,15 +1,17 @@ GEM remote: https://rubygems.org/ specs: - puma (3.4.0) - rack (1.6.4) + nio4r (2.5.9) + puma (6.2.1) + nio4r (~> 2.0) + rack (3.0.7) PLATFORMS ruby DEPENDENCIES - puma - rack + puma (>= 4.3.12) + rack (>= 3.0.0) BUNDLED WITH - 1.11.2 + 1.17.3