-
Notifications
You must be signed in to change notification settings - Fork 0
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Bump the bundler group across 8 directories with 7 updates #320
base: master
Are you sure you want to change the base?
Conversation
Updates the requirements on [rexml](https://github.com/ruby/rexml), [nokogiri](https://github.com/sparklemotion/nokogiri), [rack](https://github.com/rack/rack), [activesupport](https://github.com/rails/rails), [actionpack](https://github.com/rails/rails), [actiontext](https://github.com/rails/rails) and [activestorage](https://github.com/rails/rails) to permit the latest version. Updates `rexml` from 3.2.6 to 3.2.7 - [Release notes](https://github.com/ruby/rexml/releases) - [Changelog](https://github.com/ruby/rexml/blob/master/NEWS.md) - [Commits](ruby/rexml@v3.2.6...v3.2.7) Updates `nokogiri` from 1.16.0 to 1.16.5 - [Release notes](https://github.com/sparklemotion/nokogiri/releases) - [Changelog](https://github.com/sparklemotion/nokogiri/blob/main/CHANGELOG.md) - [Commits](sparklemotion/nokogiri@v1.16.0...v1.16.5) Updates `rack` from 2.2.8.1 to 2.2.9 - [Release notes](https://github.com/rack/rack/releases) - [Changelog](https://github.com/rack/rack/blob/main/CHANGELOG.md) - [Commits](rack/rack@v2.2.8.1...v2.2.9) Updates `activesupport` from 7.0.8.1 to 7.1.3.4 - [Release notes](https://github.com/rails/rails/releases) - [Changelog](https://github.com/rails/rails/blob/v7.1.3.4/activesupport/CHANGELOG.md) - [Commits](rails/rails@v7.0.8.1...v7.1.3.4) Updates `rack` from 3.0.10 to 3.1.4 - [Release notes](https://github.com/rack/rack/releases) - [Changelog](https://github.com/rack/rack/blob/main/CHANGELOG.md) - [Commits](rack/rack@v2.2.8.1...v2.2.9) Updates `activesupport` from 7.1.3.2 to 7.1.3.4 - [Release notes](https://github.com/rails/rails/releases) - [Changelog](https://github.com/rails/rails/blob/v7.1.3.4/activesupport/CHANGELOG.md) - [Commits](rails/rails@v7.0.8.1...v7.1.3.4) Updates `activesupport` from 7.0.8 to 7.0.8.4 - [Release notes](https://github.com/rails/rails/releases) - [Changelog](https://github.com/rails/rails/blob/v7.1.3.4/activesupport/CHANGELOG.md) - [Commits](rails/rails@v7.0.8.1...v7.1.3.4) Updates `actionpack` from 7.0.8 to 7.0.8.4 - [Release notes](https://github.com/rails/rails/releases) - [Changelog](https://github.com/rails/rails/blob/v7.1.3.4/actionpack/CHANGELOG.md) - [Commits](rails/rails@v7.0.8...v7.0.8.4) Updates `actiontext` from 7.0.8 to 7.0.8.4 - [Release notes](https://github.com/rails/rails/releases) - [Changelog](https://github.com/rails/rails/blob/v7.1.3.4/actiontext/CHANGELOG.md) - [Commits](rails/rails@v7.0.8...v7.0.8.4) Updates `activestorage` from 7.0.8 to 7.0.8.4 - [Release notes](https://github.com/rails/rails/releases) - [Changelog](https://github.com/rails/rails/blob/v7.1.3.4/activestorage/CHANGELOG.md) - [Commits](rails/rails@v7.0.8...v7.0.8.4) Updates `activesupport` from 7.1.2 to 7.1.3.4 - [Release notes](https://github.com/rails/rails/releases) - [Changelog](https://github.com/rails/rails/blob/v7.1.3.4/activesupport/CHANGELOG.md) - [Commits](rails/rails@v7.0.8.1...v7.1.3.4) Updates `activesupport` from 7.0.8 to 7.1.3.4 - [Release notes](https://github.com/rails/rails/releases) - [Changelog](https://github.com/rails/rails/blob/v7.1.3.4/activesupport/CHANGELOG.md) - [Commits](rails/rails@v7.0.8.1...v7.1.3.4) Updates `activesupport` from 7.1.1 to 7.1.3.4 - [Release notes](https://github.com/rails/rails/releases) - [Changelog](https://github.com/rails/rails/blob/v7.1.3.4/activesupport/CHANGELOG.md) - [Commits](rails/rails@v7.0.8.1...v7.1.3.4) Updates `activesupport` from 7.1.2 to 7.1.3.4 - [Release notes](https://github.com/rails/rails/releases) - [Changelog](https://github.com/rails/rails/blob/v7.1.3.4/activesupport/CHANGELOG.md) - [Commits](rails/rails@v7.0.8.1...v7.1.3.4) --- updated-dependencies: - dependency-name: rexml dependency-type: direct:production dependency-group: bundler - dependency-name: nokogiri dependency-type: direct:production dependency-group: bundler - dependency-name: rack dependency-type: direct:production dependency-group: bundler - dependency-name: activesupport dependency-type: direct:production dependency-group: bundler - dependency-name: rack dependency-type: indirect dependency-group: bundler - dependency-name: activesupport dependency-type: direct:production dependency-group: bundler - dependency-name: activesupport dependency-type: direct:production dependency-group: bundler - dependency-name: actionpack dependency-type: indirect dependency-group: bundler - dependency-name: actiontext dependency-type: indirect dependency-group: bundler - dependency-name: activestorage dependency-type: indirect dependency-group: bundler - dependency-name: activesupport dependency-type: indirect dependency-group: bundler - dependency-name: activesupport dependency-type: direct:production dependency-group: bundler - dependency-name: activesupport dependency-type: direct:production dependency-group: bundler - dependency-name: activesupport dependency-type: indirect dependency-group: bundler ... Signed-off-by: dependabot[bot] <[email protected]>
Dependabot couldn't find any dependency files in the directory. Because of this, Dependabot cannot update this pull request. |
10 similar comments
Dependabot couldn't find any dependency files in the directory. Because of this, Dependabot cannot update this pull request. |
Dependabot couldn't find any dependency files in the directory. Because of this, Dependabot cannot update this pull request. |
Dependabot couldn't find any dependency files in the directory. Because of this, Dependabot cannot update this pull request. |
Dependabot couldn't find any dependency files in the directory. Because of this, Dependabot cannot update this pull request. |
Dependabot couldn't find any dependency files in the directory. Because of this, Dependabot cannot update this pull request. |
Dependabot couldn't find any dependency files in the directory. Because of this, Dependabot cannot update this pull request. |
Dependabot couldn't find any dependency files in the directory. Because of this, Dependabot cannot update this pull request. |
Dependabot couldn't find any dependency files in the directory. Because of this, Dependabot cannot update this pull request. |
Dependabot couldn't find any dependency files in the directory. Because of this, Dependabot cannot update this pull request. |
Dependabot couldn't find any dependency files in the directory. Because of this, Dependabot cannot update this pull request. |
Updates the requirements on rexml, nokogiri, rack, activesupport, actionpack, actiontext and activestorage to permit the latest version.
Updates
rexml
from 3.2.6 to 3.2.7Release notes
Sourced from rexml's releases.
... (truncated)
Changelog
Sourced from rexml's changelog.
... (truncated)
Commits
085def0
Add 3.2.7 entry4325835
Read quoted attributes in chunks (#126)e77365e
Exclude older than 2.6 on macos-14bf2c8ed
Move development dependencies to Gemfile (#124)d78118d
Fix a problem that parse exception message can't be generated for invalid enc...06be5cf
xpath: Fix wrong position with nested path (#122)030bfb4
Changeattribute.has_key?(name)
toattributes[name]
. (#121)0496940
Optimize the parse_attributes method to useSource#match
to parse XML. (#119)d4e79f2
Make the test suite compatible with--enable-frozen-string-literal
(#120)77cb0dc
SeparateIOSource#ensure_buffer
fromIOSource#match
. (#118)Updates
nokogiri
from 1.16.0 to 1.16.5Release notes
Sourced from nokogiri's releases.
... (truncated)
Changelog
Sourced from nokogiri's changelog.
... (truncated)
Commits
cd70bd3
version bump to v1.16.5afc36de
dep: update vendored libxml2 to v2.12.7 (#3191)41b4f08
ci: add arm64-darwin coverage using macos-1467b9e86
dep: update libxml2 to v2.12.717c0362
version bump to v1.16.41c329e9
dep: update to zlib 1.3.1 (v1.16.x) (#3175)edeac07
dep: update to zlib 1.3.180fb608
version bump to v1.16.3710bd96
dep: update libxml 2.12.6 (branch v1.16.x) (#3151)461a96e
fix: Reader#read sets@encoding
if it is unsetUpdates
rack
from 2.2.8.1 to 2.2.9Commits
b1deebd
Bump patch version.f7d40f9
Merge branch '2-2-sec' into 2-2-stablefdb12cb
backport #2104 (#2121)99057e6
Update CHANGELOG for 2.2.8 (#2107)3314622
Adds missing 2.2.8 to CHANGELOG.md (#2106)Updates
activesupport
from 7.0.8.1 to 7.1.3.4Release notes
Sourced from activesupport's releases.
... (truncated)
Changelog
Sourced from activesupport's changelog.
... (truncated)
Commits
19eebf6
Preparing for 7.1.3.4 releasebd7c28a
update changelog747a03b
Preparing for 7.1.3.3 release6f0d1ad
Preparing for 7.1.3.2 releasec25f0fc
Respect raise_on_missing_ in controllerd73ed95
Preparing for 7.1.3.1 release43037d8
update changelog36c1591
Preparing for 7.1.3 releasea84622f
Sync changelog894f933
Merge pull request #50764 from eugeneius/syntax_error_proxy_nil_backtrace_loc...Updates
rack
from 3.0.10 to 3.1.4Commits
b1deebd
Bump patch version.f7d40f9
Merge branch '2-2-sec' into 2-2-stablefdb12cb
backport #2104 (#2121)99057e6
Update CHANGELOG for 2.2.8 (#2107)3314622
Adds missing 2.2.8 to CHANGELOG.md (#2106)Updates
activesupport
from 7.1.3.2 to 7.1.3.4Release notes
Sourced from activesupport's releases.
... (truncated)
Changelog
Sourced from activesupport's changelog.
... (truncated)
Commits
19eebf6
Preparing for 7.1.3.4 releasebd7c28a
update changelog747a03b
Preparing for 7.1.3.3 release6f0d1ad
Preparing for 7.1.3.2 releasec25f0fc
Respect raise_on_missing_ in controllerd73ed95
Preparing for 7.1.3.1 release43037d8
update changelog36c1591
Preparing for 7.1.3 releasea84622f
Sync changelog894f933
Merge pull request #50764 from eugeneius/syntax_error_proxy_nil_backtrace_loc...Updates
activesupport
from 7.0.8 to 7.0.8.4Release notes
Sourced from activesupport's releases.
... (truncated)
Changelog
Sourced from activesupport's changelog.
... (truncated)
Commits
19eebf6
Preparing for 7.1.3.4 releasebd7c28a
update changelog747a03b
Preparing for 7.1.3.3 release6f0d1ad
Preparing for 7.1.3.2 releasec25f0fc
Respect raise_on_missing_ in controllerd73ed95
Preparing for 7.1.3.1 release43037d8
update changelog36c1591
Preparing for 7.1.3 releasea84622f
Sync changelog894f933
Merge pull request #50764 from eugeneius/syntax_error_proxy_nil_backtrace_loc...Updates
actionpack
from 7.0.8 to 7.0.8.4Release notes
Sourced from actionpack's releases.
... (truncated)
Commits
ec7f253
Preparing for 7.0.8.4 releasef12d5ae
update changelogb84cbec
include the HTTP Permissions-Policy on non-HTML Content-Types08bc3ce
Preparing for 7.0.8.3 release7c8d2a1
Preparing for 7.0.8.2 release506462a
Preparing for 7.0.8.1 release030cd01
update changelog4c83b33
fix XSS vulnerability when using translationUpdates
actiontext
from 7.0.8 to 7.0.8.4Release notes
Sourced from actiontext's releases.
... (truncated)
Commits
ec7f253
Preparing for 7.0.8.4 releasef12d5ae
update changelog08bc3ce
Preparing for 7.0.8.3 release73fac32
Keep actiontext depending on trix 1.3.183e6a75
Merge pull request #51851 from skipkayhil/hm-fix-7-0-trix7c8d2a1
Preparing for 7.0.8.2 release07e6c88
Upgrade Trix to 1.3.2 to fix [CVE-2024-34341][1]506462a
Preparing for 7.0.8.1 release030cd01
update changelogUpdates
activestorage
from 7.0.8 to 7.0.8.4Release notes
Sourced from activestorage's releases.
... (truncated)
Commits
ec7f253
Preparing for 7.0.8.4 releasef12d5ae
update changelog08bc3ce
Preparing for 7.0.8.3 release7c8d2a1
Preparing for 7.0.8.2 release506462a
Preparing for 7.0.8.1 release030cd01
update changelog723f545
Merge pull request #48869 from brunoprietog/disable-session-active-storage-pr...Updates
activesupport
from 7.1.2 to 7.1.3.4Release notes
Sourced from activesupport's releases.
... (truncated)
Changelog
Sourced from activesupport's changelog.
... (truncated)
Commits
19eebf6
Preparing for 7.1.3.4 releasebd7c28a
update changelog747a03b
Preparing for 7.1.3.3 release6f0d1ad
Preparing for 7.1.3.2 releasec25f0fc
Respect raise_on_missing_ in controllerd73ed95
Preparing for 7.1.3.1 release43037d8
update changelog36c1591
Preparing for 7.1.3 releasea84622f
Sync changelog894f933
Merge pull request #50764 from eugeneius/syntax_error_proxy_nil_backtrace_loc...Updates
activesupport
from 7.0.8 to 7.1.3.4Release notes
Sourced from activesupport's releases.
... (truncated)
Changelog
Sourced from activesupport's changelog.
... (truncated)
Commits
19eebf6
Preparing for 7.1.3.4 releasebd7c28a
update changelog747a03b
Preparing for 7.1.3.3 release6f0d1ad
Preparing for 7.1.3.2 releasec25f0fc
Respect raise_on_missing_ in controllerd73ed95
Preparing for 7.1.3.1 release43037d8
update changelog36c1591
Preparing for 7.1.3 releasea84622f
Sync changelog894f933
Merge pull request #50764 from eugeneius/syntax_error_proxy_nil_backtrace_loc...Updates
activesupport
from 7.1.1 to 7.1.3.4Release notes
Sourced from activesupport's releases.
... (truncated)
Changelog
Sourced from activesupport's changelog.
... (truncated)
Commits
19eebf6
Preparing for 7.1.3.4 releasebd7c28a
update changelog747a03b
Preparing for 7.1.3.3 release6f0d1ad
Preparing for 7.1.3.2 releasec25f0fc
Respect raise_on_missing_ in controllerd73ed95
Preparing for 7.1.3.1 release43037d8
update changelog36c1591
Preparing for 7.1.3 releasea84622f
Sync changelog894f933
Merge pull request #50764 from eugeneius/syntax_error_proxy_nil_backtrace_loc...Updates
activesupport
from 7.1.2 to 7.1.3.4Release notes
Sourced from activesupport's releases.
... (truncated)
Changelog
Sourced from activesupport's changelog.
... (truncated)
Commits
19eebf6
Preparing for 7.1.3.4 releasebd7c28a
update changelog747a03b
Preparing for 7.1.3.3 release6f0d1ad
Preparing for 7.1.3.2 releasec25f0fc
Respect raise_on_missing_ in controllerd73ed95
Preparing for 7.1.3.1 release43037d8
update changelog36c1591
Preparing for 7.1.3 releasea84622f
Sync changelog894f933
Merge pull request #50764 from eugeneius/syntax_error_proxy_nil_backtrace_loc...You can trigger a rebase of this PR by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditionsYou can disable automated security fix PRs for this repo from the Security Alerts page.