From b2113d6854348c10fff123b65b9464f155d3a917 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sun, 23 Oct 2022 20:38:16 -0700 Subject: [PATCH 1/2] fix: Gemfile & Gemfile.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-RACK-1061917 --- Gemfile | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/Gemfile b/Gemfile index f9452d7..d03de3a 100644 --- a/Gemfile +++ b/Gemfile @@ -7,5 +7,5 @@ git_source(:github) {|repo_name| "https://github.com/#{repo_name}" } gem "sinatra" gem "twilio-ruby" gem "mime-types" -gem "rack-test" +gem "rack-test", ">= 2.0.0" gem "rspec" From d33eb7562c01d72fb57df166bf66dd317fa151ff Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sun, 23 Oct 2022 20:38:16 -0700 Subject: [PATCH 2/2] fix: Gemfile & Gemfile.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-RACK-1061917 --- Gemfile.lock | 26 ++++++++++++++------------ 1 file changed, 14 insertions(+), 12 deletions(-) diff --git a/Gemfile.lock b/Gemfile.lock index 8505b39..6542ede 100644 --- a/Gemfile.lock +++ b/Gemfile.lock @@ -10,14 +10,15 @@ GEM mime-types-data (3.2019.0331) mini_portile2 (2.4.0) multipart-post (2.1.1) - mustermann (1.0.3) + mustermann (3.0.0) + ruby2_keywords (~> 0.0.1) nokogiri (1.10.3) mini_portile2 (~> 2.4.0) - rack (2.0.7) - rack-protection (2.0.5) + rack (2.2.4) + rack-protection (3.0.2) rack - rack-test (1.1.0) - rack (>= 1.0, < 3) + rack-test (2.0.2) + rack (>= 1.3) rspec (3.8.0) rspec-core (~> 3.8.0) rspec-expectations (~> 3.8.0) @@ -31,12 +32,13 @@ GEM diff-lcs (>= 1.2.0, < 2.0) rspec-support (~> 3.8.0) rspec-support (3.8.2) - sinatra (2.0.5) - mustermann (~> 1.0) - rack (~> 2.0) - rack-protection (= 2.0.5) + ruby2_keywords (0.0.5) + sinatra (3.0.2) + mustermann (~> 3.0) + rack (~> 2.2, >= 2.2.4) + rack-protection (= 3.0.2) tilt (~> 2.0) - tilt (2.0.9) + tilt (2.0.11) twilio-ruby (5.25.1) faraday (~> 0.9) jwt (>= 1.5, <= 2.5) @@ -47,10 +49,10 @@ PLATFORMS DEPENDENCIES mime-types - rack-test + rack-test (>= 2.0.0) rspec sinatra twilio-ruby BUNDLED WITH - 1.17.2 + 1.17.3