Bumped rails to 5.2.4.6 (CVE-2021-22904).

This commit is contained in:
Thorsten Eckel 2021-05-06 08:38:42 +02:00
parent 5e7399d7b4
commit bd10f8d134
2 changed files with 47 additions and 46 deletions

View file

@ -2,7 +2,7 @@ source 'https://rubygems.org'
# core - base # core - base
ruby '2.6.6' ruby '2.6.6'
gem 'rails', '5.2.4.5' gem 'rails', '5.2.4.6'
# core - rails additions # core - rails additions
gem 'activerecord-import' gem 'activerecord-import'

View file

@ -49,37 +49,37 @@ GEM
specs: specs:
aasm (5.0.0) aasm (5.0.0)
concurrent-ruby (~> 1.0) concurrent-ruby (~> 1.0)
actioncable (5.2.4.5) actioncable (5.2.4.6)
actionpack (= 5.2.4.5) actionpack (= 5.2.4.6)
nio4r (~> 2.0) nio4r (~> 2.0)
websocket-driver (>= 0.6.1) websocket-driver (>= 0.6.1)
actionmailer (5.2.4.5) actionmailer (5.2.4.6)
actionpack (= 5.2.4.5) actionpack (= 5.2.4.6)
actionview (= 5.2.4.5) actionview (= 5.2.4.6)
activejob (= 5.2.4.5) activejob (= 5.2.4.6)
mail (~> 2.5, >= 2.5.4) mail (~> 2.5, >= 2.5.4)
rails-dom-testing (~> 2.0) rails-dom-testing (~> 2.0)
actionpack (5.2.4.5) actionpack (5.2.4.6)
actionview (= 5.2.4.5) actionview (= 5.2.4.6)
activesupport (= 5.2.4.5) activesupport (= 5.2.4.6)
rack (~> 2.0, >= 2.0.8) rack (~> 2.0, >= 2.0.8)
rack-test (>= 0.6.3) rack-test (>= 0.6.3)
rails-dom-testing (~> 2.0) rails-dom-testing (~> 2.0)
rails-html-sanitizer (~> 1.0, >= 1.0.2) rails-html-sanitizer (~> 1.0, >= 1.0.2)
actionview (5.2.4.5) actionview (5.2.4.6)
activesupport (= 5.2.4.5) activesupport (= 5.2.4.6)
builder (~> 3.1) builder (~> 3.1)
erubi (~> 1.4) erubi (~> 1.4)
rails-dom-testing (~> 2.0) rails-dom-testing (~> 2.0)
rails-html-sanitizer (~> 1.0, >= 1.0.3) rails-html-sanitizer (~> 1.0, >= 1.0.3)
activejob (5.2.4.5) activejob (5.2.4.6)
activesupport (= 5.2.4.5) activesupport (= 5.2.4.6)
globalid (>= 0.3.6) globalid (>= 0.3.6)
activemodel (5.2.4.5) activemodel (5.2.4.6)
activesupport (= 5.2.4.5) activesupport (= 5.2.4.6)
activerecord (5.2.4.5) activerecord (5.2.4.6)
activemodel (= 5.2.4.5) activemodel (= 5.2.4.6)
activesupport (= 5.2.4.5) activesupport (= 5.2.4.6)
arel (>= 9.0) arel (>= 9.0)
activerecord-import (1.0.2) activerecord-import (1.0.2)
activerecord (>= 3.2) activerecord (>= 3.2)
@ -91,11 +91,11 @@ GEM
multi_json (~> 1.11, >= 1.11.2) multi_json (~> 1.11, >= 1.11.2)
rack (>= 2.0.8, < 3) rack (>= 2.0.8, < 3)
railties (>= 5.2.4.1) railties (>= 5.2.4.1)
activestorage (5.2.4.5) activestorage (5.2.4.6)
actionpack (= 5.2.4.5) actionpack (= 5.2.4.6)
activerecord (= 5.2.4.5) activerecord (= 5.2.4.6)
marcel (~> 0.3.1) marcel (~> 0.3.1)
activesupport (5.2.4.5) activesupport (5.2.4.6)
concurrent-ruby (~> 1.0, >= 1.0.2) concurrent-ruby (~> 1.0, >= 1.0.2)
i18n (>= 0.7, < 2) i18n (>= 0.7, < 2)
minitest (~> 5.1) minitest (~> 5.1)
@ -249,7 +249,7 @@ GEM
http-form_data (2.1.1) http-form_data (2.1.1)
http_parser.rb (0.6.0) http_parser.rb (0.6.0)
httpclient (2.8.3) httpclient (2.8.3)
i18n (1.8.9) i18n (1.8.10)
concurrent-ruby (~> 1.0) concurrent-ruby (~> 1.0)
icalendar (2.5.3) icalendar (2.5.3)
ice_cube (~> 0.16) ice_cube (~> 0.16)
@ -275,7 +275,7 @@ GEM
logging (2.2.2) logging (2.2.2)
little-plugger (~> 1.1) little-plugger (~> 1.1)
multi_json (~> 1.10) multi_json (~> 1.10)
loofah (2.9.0) loofah (2.9.1)
crass (~> 1.0.2) crass (~> 1.0.2)
nokogiri (>= 1.5.9) nokogiri (>= 1.5.9)
lumberjack (1.0.13) lumberjack (1.0.13)
@ -287,10 +287,11 @@ GEM
mime-types (3.2.2) mime-types (3.2.2)
mime-types-data (~> 3.2015) mime-types-data (~> 3.2015)
mime-types-data (3.2019.0331) mime-types-data (3.2019.0331)
mimemagic (0.3.7) mimemagic (0.3.10)
nokogiri (~> 1.11.2) nokogiri (~> 1)
mini_mime (1.0.2) rake
mini_portile2 (2.5.0) mini_mime (1.1.0)
mini_portile2 (2.5.1)
mini_racer (0.2.9) mini_racer (0.2.9)
libv8 (>= 6.9.411) libv8 (>= 6.9.411)
minitest (5.14.4) minitest (5.14.4)
@ -304,8 +305,8 @@ GEM
nestful (1.1.3) nestful (1.1.3)
net-ldap (0.16.1) net-ldap (0.16.1)
netrc (0.11.0) netrc (0.11.0)
nio4r (2.5.5) nio4r (2.5.7)
nokogiri (1.11.2) nokogiri (1.11.3)
mini_portile2 (~> 2.5.0) mini_portile2 (~> 2.5.0)
racc (~> 1.4) racc (~> 1.4)
nori (2.6.0) nori (2.6.0)
@ -394,18 +395,18 @@ GEM
rack rack
rack-test (1.1.0) rack-test (1.1.0)
rack (>= 1.0, < 3) rack (>= 1.0, < 3)
rails (5.2.4.5) rails (5.2.4.6)
actioncable (= 5.2.4.5) actioncable (= 5.2.4.6)
actionmailer (= 5.2.4.5) actionmailer (= 5.2.4.6)
actionpack (= 5.2.4.5) actionpack (= 5.2.4.6)
actionview (= 5.2.4.5) actionview (= 5.2.4.6)
activejob (= 5.2.4.5) activejob (= 5.2.4.6)
activemodel (= 5.2.4.5) activemodel (= 5.2.4.6)
activerecord (= 5.2.4.5) activerecord (= 5.2.4.6)
activestorage (= 5.2.4.5) activestorage (= 5.2.4.6)
activesupport (= 5.2.4.5) activesupport (= 5.2.4.6)
bundler (>= 1.3.0) bundler (>= 1.3.0)
railties (= 5.2.4.5) railties (= 5.2.4.6)
sprockets-rails (>= 2.0.0) sprockets-rails (>= 2.0.0)
rails-controller-testing (1.0.4) rails-controller-testing (1.0.4)
actionpack (>= 5.0.1.x) actionpack (>= 5.0.1.x)
@ -418,9 +419,9 @@ GEM
loofah (~> 2.3) loofah (~> 2.3)
rails-observers (0.1.5) rails-observers (0.1.5)
activemodel (>= 4.0) activemodel (>= 4.0)
railties (5.2.4.5) railties (5.2.4.6)
actionpack (= 5.2.4.5) actionpack (= 5.2.4.6)
activesupport (= 5.2.4.5) activesupport (= 5.2.4.6)
method_source method_source
rake (>= 0.8.7) rake (>= 0.8.7)
thor (>= 0.19.0, < 2.0) thor (>= 0.19.0, < 2.0)
@ -650,7 +651,7 @@ DEPENDENCIES
pundit pundit
pundit-matchers pundit-matchers
rack-livereload rack-livereload
rails (= 5.2.4.5) rails (= 5.2.4.6)
rails-controller-testing rails-controller-testing
rails-observers rails-observers
rb-fsevent rb-fsevent