From 76f596f4a18ad16d20f6ffbe5b0e1f448d5ff6a6 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 10 Mar 2023 02:10:32 +0000 Subject: [PATCH] fix: Gemfile to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-3357692 - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-3357693 - https://snyk.io/vuln/SNYK-RUBY-RACK-3356639 --- Gemfile | 20 ++++++++++---------- 1 file changed, 10 insertions(+), 10 deletions(-) diff --git a/Gemfile b/Gemfile index 0aa2b3a..a749cee 100644 --- a/Gemfile +++ b/Gemfile @@ -1,6 +1,6 @@ source 'https://rubygems.org' -gem 'rails', '3.2.14' +gem 'rails', '5.0.0' # Bundle edge Rails instead: # gem 'rails', :git => 'git://github.com/rails/rails.git' @@ -9,8 +9,8 @@ gem 'rails', '3.2.14' # Gems used only for assets and not required # in production environments by default. group :assets do - gem 'sass-rails', '~> 3.2.3' - gem 'coffee-rails', '~> 3.2.1' + gem 'sass-rails', '~> 5.0.5' + gem 'coffee-rails', '~> 4.1.1' # See https://github.com/sstephenson/execjs#readme for more supported runtimes # gem 'therubyracer', :platforms => :ruby @@ -18,20 +18,20 @@ group :assets do gem 'uglifier', '>= 1.0.3' end -gem 'jquery-rails' +gem 'jquery-rails', '>= 4.0.1' gem 'jquery-ui-rails' # Refinery CMS -gem 'refinerycms', '~> 2.1.0' -gem 'refinerycms-nested_models' +gem 'refinerycms', '~> 4.0.0' +gem 'refinerycms-nested_models', '>= 0.1.0' gem 'refinerycms-copywriting' # Optionally, specify additional Refinery CMS Extensions here: -gem 'refinerycms-acts-as-indexed', '~> 1.0.0' +gem 'refinerycms-acts-as-indexed', '~> 3.0.0' gem 'mysql2' gem 'rack-rewrite' -gem 'rack' +gem 'rack', '>= 2.0.9.3' gem 'rack-mini-profiler' gem 'unicorn' gem 'awesome_nested_set' @@ -53,7 +53,7 @@ end group :test, :development do gem 'spork-rails' - gem 'rspec-rails' + gem 'rspec-rails', '>= 3.5.0' # gem 'rb-fsevent', :require => false if RUBY_PLATFORM =~ /darwin/i gem 'guard' gem 'guard-rails' @@ -68,7 +68,7 @@ end group :assets do gem 'autoprefixer-rails' - gem 'compass-rails', '~> 2.0.0' + gem 'compass-rails', '~> 3.0.0' gem 'compass', '~> 1.0.0.alpha.21' gem 'susy' gem 'breakpoint'