From e9d39ac1af2790dfa3234f65f18722a589036894 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sat, 23 Jul 2022 06:44:31 +0000 Subject: [PATCH] fix: docs-v2/Gemfile & docs-v2/Gemfile.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-TZINFO-2958048 --- docs-v2/Gemfile | 8 ++-- docs-v2/Gemfile.lock | 100 +++++++++++++++++++++++-------------------- 2 files changed, 57 insertions(+), 51 deletions(-) diff --git a/docs-v2/Gemfile b/docs-v2/Gemfile index a10cfaf3..6af27553 100644 --- a/docs-v2/Gemfile +++ b/docs-v2/Gemfile @@ -2,10 +2,10 @@ ruby '~> 2.5' source 'https://rubygems.org' # Middleman -gem 'middleman', '~>4.3' -gem 'middleman-syntax', '~> 3.2' -gem 'middleman-autoprefixer', '~> 2.7' -gem 'middleman-sprockets', '~> 4.1' +gem 'middleman', '~> 4.3', '>= 4.3.11' +gem 'middleman-syntax', '~> 3.2', '>= 3.2.0' +gem 'middleman-autoprefixer', '~> 2.10', '>= 2.10.1' +gem 'middleman-sprockets', '~> 4.1', '>= 4.1.1' gem 'rouge', '~> 3.21' gem 'redcarpet', '~> 3.5.0' gem 'nokogiri', '~> 1.11.0' diff --git a/docs-v2/Gemfile.lock b/docs-v2/Gemfile.lock index 5b7dd0ad..d9785023 100644 --- a/docs-v2/Gemfile.lock +++ b/docs-v2/Gemfile.lock @@ -1,58 +1,59 @@ GEM remote: https://rubygems.org/ specs: - activesupport (5.2.4.4) + activesupport (6.1.6.1) concurrent-ruby (~> 1.0, >= 1.0.2) - i18n (>= 0.7, < 2) - minitest (~> 5.1) - tzinfo (~> 1.1) - addressable (2.7.0) + i18n (>= 1.6, < 2) + minitest (>= 5.1) + tzinfo (~> 2.0) + zeitwerk (~> 2.3) + addressable (2.8.0) public_suffix (>= 2.0.2, < 5.0) - autoprefixer-rails (9.5.1.1) + autoprefixer-rails (9.8.6.5) execjs - backports (3.18.2) + backports (3.23.0) coffee-script (2.4.1) coffee-script-source execjs coffee-script-source (1.12.2) - concurrent-ruby (1.1.7) + concurrent-ruby (1.1.10) contracts (0.13.0) dotenv (2.7.6) erubis (2.7.0) - execjs (2.7.0) - fast_blank (1.0.0) - fastimage (2.2.0) - ffi (1.13.1) - haml (5.1.2) + execjs (2.8.1) + fast_blank (1.0.1) + fastimage (2.2.6) + ffi (1.15.5) + haml (5.2.2) temple (>= 0.8.0) tilt hamster (3.0.0) concurrent-ruby (~> 1.0) hashie (3.6.0) - i18n (0.9.5) + i18n (1.6.0) concurrent-ruby (~> 1.0) - kramdown (2.3.0) + kramdown (2.4.0) rexml listen (3.0.8) rb-fsevent (~> 0.9, >= 0.9.4) rb-inotify (~> 0.9, >= 0.9.7) memoist (0.16.2) - middleman (4.3.11) + middleman (4.4.2) coffee-script (~> 2.2) haml (>= 4.0.5) kramdown (>= 2.3.0) - middleman-cli (= 4.3.11) - middleman-core (= 4.3.11) + middleman-cli (= 4.4.2) + middleman-core (= 4.4.2) middleman-autoprefixer (2.10.1) autoprefixer-rails (~> 9.1) middleman-core (>= 3.3.3) - middleman-cli (4.3.11) + middleman-cli (4.4.2) thor (>= 0.17.0, < 2.0) - middleman-core (4.3.11) - activesupport (>= 4.2, < 6.0) - addressable (~> 2.3) + middleman-core (4.4.2) + activesupport (>= 6.1, < 7.0) + addressable (~> 2.4) backports (~> 3.6) - bundler + bundler (~> 2.0) contracts (~> 0.13.0) dotenv erubis @@ -61,16 +62,18 @@ GEM fastimage (~> 2.0) hamster (~> 3.0) hashie (~> 3.4) - i18n (~> 0.9.0) + i18n (~> 1.6.0) listen (~> 3.0.0) memoist (~> 0.14) - padrino-helpers (~> 0.13.0) + padrino-helpers (~> 0.15.0) parallel rack (>= 1.4.5, < 3) sassc (~> 2.0) servolux tilt (~> 2.0.9) + toml uglifier (~> 3.0) + webrick middleman-sprockets (4.1.1) middleman-core (~> 4.0) sprockets (>= 3.0) @@ -78,26 +81,26 @@ GEM middleman-core (>= 3.2) rouge (~> 3.2) mini_portile2 (2.5.0) - minitest (5.14.2) + minitest (5.16.2) nokogiri (1.11.1) mini_portile2 (~> 2.5.0) racc (~> 1.4) - padrino-helpers (0.13.3.4) - i18n (~> 0.6, >= 0.6.7) - padrino-support (= 0.13.3.4) + padrino-helpers (0.15.1) + i18n (>= 0.6.7, < 2) + padrino-support (= 0.15.1) tilt (>= 1.4.1, < 3) - padrino-support (0.13.3.4) - activesupport (>= 3.1) - parallel (1.19.2) - public_suffix (4.0.6) + padrino-support (0.15.1) + parallel (1.22.1) + parslet (2.0.0) + public_suffix (4.0.7) racc (1.5.2) - rack (2.2.3) - rb-fsevent (0.10.4) + rack (2.2.4) + rb-fsevent (0.11.1) rb-inotify (0.10.1) ffi (~> 1.0) redcarpet (3.5.1) - rexml (3.2.4) - rouge (3.26.0) + rexml (3.2.5) + rouge (3.29.0) sass (3.7.4) sass-listen (~> 4.0.0) sass-listen (4.0.0) @@ -106,26 +109,29 @@ GEM sassc (2.4.0) ffi (~> 1.9) servolux (0.13.0) - sprockets (3.7.2) + sprockets (4.1.1) concurrent-ruby (~> 1.0) rack (> 1, < 3) temple (0.8.2) - thor (1.0.1) - thread_safe (0.3.6) - tilt (2.0.10) - tzinfo (1.2.7) - thread_safe (~> 0.1) + thor (1.2.1) + tilt (2.0.11) + toml (0.3.0) + parslet (>= 1.8.0, < 3.0.0) + tzinfo (2.0.5) + concurrent-ruby (~> 1.0) uglifier (3.2.0) execjs (>= 0.3.0, < 3) + webrick (1.7.0) + zeitwerk (2.6.0) PLATFORMS ruby DEPENDENCIES - middleman (~> 4.3) - middleman-autoprefixer (~> 2.7) - middleman-sprockets (~> 4.1) - middleman-syntax (~> 3.2) + middleman (~> 4.3, >= 4.3.11) + middleman-autoprefixer (~> 2.10, >= 2.10.1) + middleman-sprockets (~> 4.1, >= 4.1.1) + middleman-syntax (~> 3.2, >= 3.2.0) nokogiri (~> 1.11.0) redcarpet (~> 3.5.0) rouge (~> 3.21)