[Snyk] Fix for 4 vulnerabilities - #54
Conversation
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-NOKOGIRI-10674184 - https://snyk.io/vuln/SNYK-RUBY-RACK-13378930 - https://snyk.io/vuln/SNYK-RUBY-RACK-15878260 - https://snyk.io/vuln/SNYK-RUBY-FARADAY-17400242
|
This upgrade includes a major version bump for Top Impacts
Other Upgrades
|
| # automatically include factories from spec/factories | ||
| gem 'test-prof' | ||
| gem 'factory_bot_rails' | ||
| gem 'factory_bot_rails', '>= 6.5.0' |
There was a problem hiding this comment.
Bundler/OrderedGems: Gems should be sorted in an alphabetical order within their section of the Gemfile. Gem factory_bot_rails should appear before test-prof.
Snyk has created this PR to fix 4 vulnerabilities in the rubygems dependencies of this project.
Snyk changed the following file(s):
GemfileVulnerabilities that will be fixed with an upgrade:
SNYK-RUBY-NOKOGIRI-10674184
SNYK-RUBY-RACK-13378930
SNYK-RUBY-RACK-15878260
SNYK-RUBY-FARADAY-17400242
Breaking Change Risk
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Uncontrolled Recursion
🦉 Allocation of Resources Without Limits or Throttling
🦉 Denial of Service (DoS)