Skip to content

Update CVE gems preventing SDR CVE update#16

Merged
spilth merged 2 commits intomainfrom
cve-gem-updates
Feb 13, 2026
Merged

Update CVE gems preventing SDR CVE update#16
spilth merged 2 commits intomainfrom
cve-gem-updates

Conversation

@spilth
Copy link
Copy Markdown
Collaborator

@spilth spilth commented Feb 13, 2026

There is a Faraday CVE affecting SDR but sdr-cli is preventing that gem from being updated.

This PR updates the Faraday version but also adds bundler-audit to check for future CVEs. It also updates nokogiri and rexml which also had a number of CVEs.

@spilth spilth requested a review from mnyrop February 13, 2026 14:06
@spilth spilth merged commit 93086b4 into main Feb 13, 2026
1 check passed
@spilth spilth deleted the cve-gem-updates branch February 13, 2026 14:32
@spilth spilth restored the cve-gem-updates branch February 13, 2026 14:33
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants