From 064d31d6a0a83c714f96e2ea57bf2e3aa60eafb7 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 13 May 2020 15:01:55 -0700 Subject: [PATCH 1/2] fix: docs/v3/Gemfile & docs/v3/Gemfile.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-RACK-569066 --- docs/v3/Gemfile | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/docs/v3/Gemfile b/docs/v3/Gemfile index 1a81fc08064..a05d6f1687e 100644 --- a/docs/v3/Gemfile +++ b/docs/v3/Gemfile @@ -1,11 +1,11 @@ source 'http://rubygems.org' gem 'json', '>= 2.3.0' -gem 'middleman', '>= 3.4.1' -gem 'middleman-autoprefixer', '>= 2.6.1' +gem 'middleman', '>= 4.1.11' +gem 'middleman-autoprefixer', '>= 2.10.1' gem 'middleman-gh-pages', '>= 0.0.3' gem 'middleman-livereload', '>= 3.4.6' -gem 'middleman-syntax', '>= 2.0.0' +gem 'middleman-syntax', '>= 2.1.0' gem 'mini_racer' gem 'nokogiri' gem 'rake', '>= 12.3.3' From 6ca8fd9396d9bb2a8574f7a7e4a148d1f4c8679c Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 13 May 2020 15:01:56 -0700 Subject: [PATCH 2/2] fix: docs/v3/Gemfile & docs/v3/Gemfile.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-RACK-569066 --- docs/v3/Gemfile.lock | 154 +++++++++++++++++++------------------------ 1 file changed, 66 insertions(+), 88 deletions(-) diff --git a/docs/v3/Gemfile.lock b/docs/v3/Gemfile.lock index 581fe1a7a49..bff112af2ac 100644 --- a/docs/v3/Gemfile.lock +++ b/docs/v3/Gemfile.lock @@ -1,158 +1,136 @@ GEM remote: http://rubygems.org/ specs: - activesupport (4.2.11.1) - i18n (~> 0.7) + activesupport (5.0.7.2) + concurrent-ruby (~> 1.0, >= 1.0.2) + i18n (>= 0.7, < 2) minitest (~> 5.1) - thread_safe (~> 0.3, >= 0.3.4) tzinfo (~> 1.1) - autoprefixer-rails (9.7.4) + addressable (2.7.0) + public_suffix (>= 2.0.2, < 5.0) + autoprefixer-rails (9.7.6) execjs - capybara (2.4.4) - mime-types (>= 1.16) - nokogiri (>= 1.3.3) - rack (>= 1.0.0) - rack-test (>= 0.5.4) - xpath (~> 2.0) - chunky_png (1.3.11) + backports (3.17.1) coffee-script (2.4.1) coffee-script-source execjs coffee-script-source (1.12.2) - compass (1.0.3) - chunky_png (~> 1.2) - compass-core (~> 1.0.2) - compass-import-once (~> 1.0.5) - rb-fsevent (>= 0.9.3) - rb-inotify (>= 0.9) - sass (>= 3.3.13, < 3.5) - compass-core (1.0.3) - multi_json (~> 1.0) - sass (>= 3.3.0, < 3.5) - compass-import-once (1.0.5) - sass (>= 3.2, < 3.5) + concurrent-ruby (1.1.6) + contracts (0.13.0) + dotenv (2.7.5) em-websocket (0.5.1) eventmachine (>= 0.12.9) http_parser.rb (~> 0.6.0) erubis (2.7.0) eventmachine (1.2.7) execjs (2.7.0) + fast_blank (1.0.0) + fastimage (2.1.7) ffi (1.12.2) haml (5.1.2) temple (>= 0.8.0) tilt - hike (1.2.3) - hooks (0.4.1) - uber (~> 0.0.14) + hamster (3.0.0) + concurrent-ruby (~> 1.0) + hashie (3.6.0) http_parser.rb (0.6.0) - i18n (0.7.0) + i18n (0.9.5) + concurrent-ruby (~> 1.0) json (2.3.0) kramdown (1.17.0) libv8 (7.3.492.27.1) listen (3.0.8) rb-fsevent (~> 0.9, >= 0.9.4) rb-inotify (~> 0.9, >= 0.9.7) - middleman (3.4.1) + memoist (0.16.2) + middleman (4.3.6) coffee-script (~> 2.2) - compass (>= 1.0.0, < 2.0.0) - compass-import-once (= 1.0.5) - execjs (~> 2.0) haml (>= 4.0.5) kramdown (~> 1.2) - middleman-core (= 3.4.1) - middleman-sprockets (>= 3.1.2) - sass (>= 3.4.0, < 4.0) - uglifier (~> 2.5) + middleman-cli (= 4.3.6) + middleman-core (= 4.3.6) middleman-autoprefixer (2.10.1) autoprefixer-rails (~> 9.1) middleman-core (>= 3.3.3) - middleman-core (3.4.1) - activesupport (~> 4.1) - bundler (~> 1.1) - capybara (~> 2.4.4) + middleman-cli (4.3.6) + thor (>= 0.17.0, < 2.0) + middleman-core (4.3.6) + activesupport (>= 4.2, < 5.1) + addressable (~> 2.3) + backports (~> 3.6) + bundler + contracts (~> 0.13.0) + dotenv erubis - hooks (~> 0.3) - i18n (~> 0.7.0) - listen (~> 3.0.3) - padrino-helpers (~> 0.12.3) - rack (>= 1.4.5, < 2.0) - thor (>= 0.15.2, < 2.0) - tilt (~> 1.4.1, < 2.0) + execjs (~> 2.0) + fast_blank + fastimage (~> 2.0) + hamster (~> 3.0) + hashie (~> 3.4) + i18n (~> 0.9.0) + listen (~> 3.0.0) + memoist (~> 0.14) + padrino-helpers (~> 0.13.0) + parallel + rack (>= 1.4.5, < 3) + sassc (~> 2.0) + servolux + tilt (~> 2.0.9) + uglifier (~> 3.0) middleman-gh-pages (0.4.1) rake (> 0.9.3) middleman-livereload (3.4.6) em-websocket (~> 0.5.1) middleman-core (>= 3.3) rack-livereload (~> 0.3.15) - middleman-sprockets (3.5.0) - middleman-core (>= 3.3) - sprockets (~> 2.12.1) - sprockets-helpers (~> 1.1.0) - sprockets-sass (~> 1.3.0) - middleman-syntax (2.0.0) - middleman-core (~> 3.2) - rouge (~> 1.0) - mime-types (3.3.1) - mime-types-data (~> 3.2015) - mime-types-data (3.2019.1009) + middleman-syntax (3.2.0) + middleman-core (>= 3.2) + rouge (~> 3.2) mini_portile2 (2.4.0) mini_racer (0.2.9) libv8 (>= 6.9.411) minitest (5.14.0) - multi_json (1.14.1) nokogiri (1.10.9) mini_portile2 (~> 2.4.0) - padrino-helpers (0.12.9) + padrino-helpers (0.13.3.4) i18n (~> 0.6, >= 0.6.7) - padrino-support (= 0.12.9) + padrino-support (= 0.13.3.4) tilt (>= 1.4.1, < 3) - padrino-support (0.12.9) + padrino-support (0.13.3.4) activesupport (>= 3.1) - rack (1.6.13) + parallel (1.19.1) + public_suffix (4.0.5) + rack (2.2.2) rack-livereload (0.3.17) rack - rack-test (1.1.0) - rack (>= 1.0, < 3) rake (13.0.1) - rb-fsevent (0.10.3) + rb-fsevent (0.10.4) rb-inotify (0.10.1) ffi (~> 1.0) redcarpet (3.3.3) - rouge (1.10.1) - sass (3.4.25) - sprockets (2.12.5) - hike (~> 1.2) - multi_json (~> 1.0) - rack (~> 1.0) - tilt (~> 1.1, != 1.3.0) - sprockets-helpers (1.1.0) - sprockets (~> 2.0) - sprockets-sass (1.3.1) - sprockets (~> 2.0) - tilt (~> 1.1) + rouge (3.19.0) + sassc (2.3.0) + ffi (~> 1.9) + servolux (0.13.0) temple (0.8.2) thor (1.0.1) thread_safe (0.3.6) - tilt (1.4.1) - tzinfo (1.2.6) + tilt (2.0.10) + tzinfo (1.2.7) thread_safe (~> 0.1) - uber (0.0.15) - uglifier (2.7.2) - execjs (>= 0.3.0) - json (>= 1.8.0) - xpath (2.1.0) - nokogiri (~> 1.3) + uglifier (3.2.0) + execjs (>= 0.3.0, < 3) PLATFORMS ruby DEPENDENCIES json (>= 2.3.0) - middleman (>= 3.4.1) - middleman-autoprefixer (>= 2.6.1) + middleman (>= 4.1.11) + middleman-autoprefixer (>= 2.10.1) middleman-gh-pages (>= 0.0.3) middleman-livereload (>= 3.4.6) - middleman-syntax (>= 2.0.0) + middleman-syntax (>= 2.1.0) mini_racer nokogiri rake (>= 12.3.3)