From 874361a3d7a0e3d6264f7eacc02fbb974f934f3b Mon Sep 17 00:00:00 2001 From: Carlos Eduardo Cabral da Cunha Date: Tue, 22 Jan 2019 11:27:42 -0200 Subject: [PATCH] #280 adding nokogiri >= 1.8.5 to Gemfile to avoid security vulnerability with lower versions --- Gemfile | 1 + Gemfile.lock | 1 + 2 files changed, 2 insertions(+) diff --git a/Gemfile b/Gemfile index 5e7ee5b4..053a04b5 100644 --- a/Gemfile +++ b/Gemfile @@ -12,6 +12,7 @@ gem 'loofah', '~> 2.2.3' gem 'rails-html-sanitizer', '~> 1.0.4' gem 'rack', '>= 2.0.6' gem 'ffi', '>= 1.9.24' +gem "nokogiri", ">= 1.8.5" gem 'rspec-collection_matchers' diff --git a/Gemfile.lock b/Gemfile.lock index 0086d331..7c0c22b8 100644 --- a/Gemfile.lock +++ b/Gemfile.lock @@ -336,6 +336,7 @@ DEPENDENCIES kaminari loofah (~> 2.2.3) mysql2 + nokogiri (>= 1.8.5) odf-report paper_trail prawn