From 2d57101a0614fa8c0ba17c96c83890c8a6a31648 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Thu, 9 Mar 2023 08:37:22 +0000 Subject: [PATCH] fix: Gemfile to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-RACK-3356639 --- Gemfile | 14 +++++++------- 1 file changed, 7 insertions(+), 7 deletions(-) diff --git a/Gemfile b/Gemfile index 1735c78..6a46187 100644 --- a/Gemfile +++ b/Gemfile @@ -1,6 +1,6 @@ source 'https://rubygems.org/' -gem 'rails' +gem 'rails', '>= 5.0.0' gem 'redis' # gem 'hiredis', :git => 'git://github.com/nviennot/hiredis-rb.git' gem 'sidekiq' @@ -27,12 +27,12 @@ gem 's3', :require => false gem 'unicorn', :require => false gem 'slim' gem 'will_paginate' -gem 'haml-rails' -gem 'jquery-rails' +gem 'haml-rails', '>= 0.5.3' +gem 'jquery-rails', '>= 4.0.1' gem 'therubyracer' gem 'less-rails' gem 'twitter-bootstrap-rails', git: 'https://github.com/seyhunak/twitter-bootstrap-rails.git' -gem 'sinatra', :require => false +gem 'sinatra', '>= 2.0.0', :require => false gem 'coderay' # Front end only @@ -46,13 +46,13 @@ group :development do # token validation gem 'oauth', :require => false - gem 'oauth2', :require => false + gem 'oauth2', '>= 1.1.0', :require => false gem 'signet', :require => false gem 'aws-sdk', :require => false end group :assets do - gem 'sass-rails', '~> 3.2.3', :require => false - gem 'coffee-rails', '~> 3.2.1', :require => false + gem 'sass-rails', '~> 5.0.5', :require => false + gem 'coffee-rails', '~> 4.1.1', :require => false gem 'uglifier', '>= 1.0.3', :require => false end