From eed38ecdac5a693ad37003d9893513a9bf60e019 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Mon, 6 Oct 2025 07:00:05 +0000 Subject: [PATCH] fix: site/Gemfile & site/Gemfile.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-REXML-12878608 --- site/Gemfile | 2 +- site/Gemfile.lock | 45 ++++++++++++++++++++++++++++----------------- 2 files changed, 29 insertions(+), 18 deletions(-) diff --git a/site/Gemfile b/site/Gemfile index e291daa..fa34160 100644 --- a/site/Gemfile +++ b/site/Gemfile @@ -1,6 +1,6 @@ source 'https://rubygems.org' -gem "jekyll", ">= 4.3.0" +gem "jekyll", ">= 4.4.0" gem "jekyll-paginate" gem "support-for" gem "http_parser" diff --git a/site/Gemfile.lock b/site/Gemfile.lock index e25157c..5a4c73f 100644 --- a/site/Gemfile.lock +++ b/site/Gemfile.lock @@ -3,43 +3,53 @@ GEM specs: addressable (2.8.7) public_suffix (>= 2.0.2, < 7.0) - bigdecimal (3.1.9) + base64 (0.3.0) + bigdecimal (3.2.3) colorator (1.1.0) - concurrent-ruby (1.3.4) + concurrent-ruby (1.3.5) + csv (3.3.5) em-websocket (0.5.3) eventmachine (>= 0.12.9) http_parser.rb (~> 0) eventmachine (1.2.7) - ffi (1.17.1-x86_64-linux-musl) + ffi (1.17.2-x86_64-linux-gnu) + ffi (1.17.2-x86_64-linux-musl) forwardable-extended (2.6.0) - google-protobuf (4.29.2-x86_64-linux) + google-protobuf (4.32.1-x86_64-linux-gnu) + bigdecimal + rake (>= 13) + google-protobuf (4.32.1-x86_64-linux-musl) bigdecimal rake (>= 13) http_parser (0.1.3) http_parser.rb (0.8.0) - i18n (1.14.6) + i18n (1.14.7) concurrent-ruby (~> 1.0) - jekyll (4.3.4) + jekyll (4.4.1) addressable (~> 2.4) + base64 (~> 0.2) colorator (~> 1.0) + csv (~> 3.0) em-websocket (~> 0.5) i18n (~> 1.0) jekyll-sass-converter (>= 2.0, < 4.0) jekyll-watch (~> 2.0) + json (~> 2.6) kramdown (~> 2.3, >= 2.3.1) kramdown-parser-gfm (~> 1.0) liquid (~> 4.0) - mercenary (>= 0.3.6, < 0.5) + mercenary (~> 0.3, >= 0.3.6) pathutil (~> 0.9) rouge (>= 3.0, < 5.0) safe_yaml (~> 1.0) terminal-table (>= 1.8, < 4.0) webrick (~> 1.7) jekyll-paginate (1.1.0) - jekyll-sass-converter (3.0.0) - sass-embedded (~> 1.54) + jekyll-sass-converter (3.1.0) + sass-embedded (~> 1.75) jekyll-watch (2.2.1) listen (~> 3.0) + json (2.15.0) kramdown (2.5.1) rexml (>= 3.3.9) kramdown-parser-gfm (1.1.0) @@ -51,18 +61,18 @@ GEM mercenary (0.4.0) pathutil (0.16.2) forwardable-extended (~> 2.6) - public_suffix (6.0.1) - rake (13.2.1) + public_suffix (6.0.2) + rake (13.3.0) rb-fsevent (0.11.2) rb-inotify (0.11.1) ffi (~> 1.0) - rexml (3.4.0) - rouge (4.5.1) + rexml (3.4.4) + rouge (4.6.1) safe_yaml (1.0.5) sass (3.7.4) sass-listen (~> 4.0.0) - sass-embedded (1.83.1) - google-protobuf (~> 4.29) + sass-embedded (1.93.2) + google-protobuf (~> 4.31) rake (>= 13) sass-listen (4.0.0) rb-fsevent (~> 0.9, >= 0.9.4) @@ -75,14 +85,15 @@ GEM webrick (1.9.1) PLATFORMS + x86_64-linux x86_64-linux-musl DEPENDENCIES http_parser - jekyll (>= 4.3.0) + jekyll (>= 4.4.0) jekyll-paginate support-for webrick (>= 1.8.2) BUNDLED WITH - 2.3.25 + 2.3.27