fix: Gemfile & Gemfile.lock to reduce vulnerabilities

The following vulnerabilities are fixed with an upgrade:
- https://snyk.io/vuln/SNYK-RUBY-JMESPATH-2859799
This commit is contained in:
snyk-bot 2022-06-07 16:51:43 +00:00
parent 849a696148
commit 445e2c7c81
No known key found for this signature in database
GPG Key ID: 09541BBFF0C4C795
2 changed files with 12 additions and 10 deletions

View File

@ -11,7 +11,7 @@ gem 'validate_url'
gem 'slim'
gem 'aws-sdk', '~> 2'
gem 'aws-sdk', '~> 2', '>= 2.10.53'
gem 'dotenv'
gem 'bigdecimal'

View File

@ -15,14 +15,16 @@ GEM
addressable (2.5.2)
public_suffix (>= 2.0.2, < 4.0)
arel (8.0.0)
aws-sdk (2.10.53)
aws-sdk-resources (= 2.10.53)
aws-sdk-core (2.10.53)
aws-eventstream (1.2.0)
aws-sdk (2.11.632)
aws-sdk-resources (= 2.11.632)
aws-sdk-core (2.11.632)
aws-sigv4 (~> 1.0)
jmespath (~> 1.0)
aws-sdk-resources (2.10.53)
aws-sdk-core (= 2.10.53)
aws-sigv4 (1.0.2)
aws-sdk-resources (2.11.632)
aws-sdk-core (= 2.11.632)
aws-sigv4 (1.5.0)
aws-eventstream (~> 1, >= 1.0.2)
backports (3.8.0)
bigdecimal (1.3.2)
capybara (2.15.1)
@ -42,7 +44,7 @@ GEM
activesupport (>= 3.0.0)
ffi (1.9.18)
i18n (0.8.6)
jmespath (1.3.1)
jmespath (1.6.1)
launchy (2.4.3)
addressable (~> 2.3)
listen (3.1.5)
@ -132,7 +134,7 @@ PLATFORMS
DEPENDENCIES
activerecord
aws-sdk (~> 2)
aws-sdk (~> 2, >= 2.10.53)
bigdecimal
database_cleaner
dotenv
@ -153,4 +155,4 @@ DEPENDENCIES
validate_url
BUNDLED WITH
1.15.3
1.17.3