Skip to content

[Snyk] Fix for 1 vulnerabilities - #9

Open
snyk-bot wants to merge 1 commit into
masterfrom
snyk-fix-195345837d2e0e3e5d5afe83dfd93448
Open

[Snyk] Fix for 1 vulnerabilities#9
snyk-bot wants to merge 1 commit into
masterfrom
snyk-fix-195345837d2e0e3e5d5afe83dfd93448

Conversation

@snyk-bot

Copy link
Copy Markdown
Contributor

Snyk has created this PR to fix one or more vulnerable packages in the `rubygems` dependencies of this project.

Changes included in this PR

  • Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
    • Gemfile
    • Gemfile.lock

Vulnerabilities that will be fixed

With an upgrade:
SeverityPriority Score (*)IssueBreaking ChangeExploit Maturity
high severity661/1000
Why? Recently disclosed, Has a fix available, CVSS 7.5
Regular Expression Denial of Service (ReDoS)
SNYK-RUBY-ADDRESSABLE-1316242
NoNo Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Check the changes in this PR to ensure they won't cause issues with your project.


Note:You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:
🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic

@shellscape
shellscapeforce-pushed the master branch 4 times, most recently from 2f3ee9f to 3a06d50CompareJanuary 25, 2022 18:22
@shellscape
shellscapeforce-pushed the master branch 2 times, most recently from a0a2ea5 to f8ac31eCompareJanuary 16, 2023 02:11
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant

@snyk-bot