Update all gems and rails to 6.0.3.4

Fixes most vulns.
This commit is contained in:
Ari Timonen 2020-11-15 05:41:21 +02:00
parent b2d5f1dec8
commit 1ab89b7ba3
3 changed files with 139 additions and 134 deletions

View file

@ -1,10 +1,13 @@
# frozen_string_literal: true
# Policy here is to not to save version data unless its needed (eg. problems with new version)
# Version data is in Gemfile.lock, running bundle update will fix it.
source 'http://rubygems.org'
ruby '2.6.5'
# Rails core
gem 'rails', '~> 6.0.2.2'
gem 'rails', '~> 6.0.3.4'
gem 'rake'
# Dotenv
@ -66,7 +69,7 @@ gem 'uglifier'
# CSS
gem 'sass-rails', '~> 5.0.3' # This it outdated by sassc
gem 'bourbon','~> 3.1.8'
gem 'bourbon','~> 3.1.8' # Upgrading will cause issues
gem 'neat', '~> 1.6.0' # Upgrading will cause issues
gem 'font-awesome-sass', '~> 4.1.0.0' # Fix icons before updating

View file

@ -8,14 +8,14 @@ GIT
GIT
remote: https://github.com/rspec/rspec-core
revision: dd3b2abe63b0dbd4c5c4131275a858d63cddab0e
revision: e7c5d030966a7e8dad3e0a67c61920c4f2437c15
specs:
rspec-core (3.10.0.pre)
rspec-support (= 3.10.0.pre)
GIT
remote: https://github.com/rspec/rspec-expectations
revision: 9f224eaeb5c6d7eaaab0f7f6e355efd9329328f8
revision: e63ff4765e1cd2798b02ddddad259f1104ef87a5
specs:
rspec-expectations (3.10.0.pre)
diff-lcs (>= 1.2.0, < 2.0)
@ -23,7 +23,7 @@ GIT
GIT
remote: https://github.com/rspec/rspec-mocks
revision: 81c17e89b2722cb225d602e08b600e4a4f6148a4
revision: 0a52e0a86b126b4bab94d277b2ad99a7492dc37d
specs:
rspec-mocks (3.10.0.pre)
diff-lcs (>= 1.2.0, < 2.0)
@ -31,7 +31,7 @@ GIT
GIT
remote: https://github.com/rspec/rspec-rails
revision: b2e51f96e659535c435eec25408f89c316aacb76
revision: 01704c50c146f720db914724c25681781ecefb23
specs:
rspec-rails (4.1.0.pre)
actionpack (>= 4.2)
@ -44,45 +44,45 @@ GIT
GIT
remote: https://github.com/rspec/rspec-support
revision: 63c03e5e6f0ac858398933f820d37087f57c315a
revision: 6447b0c2c9d1cd3e1504784fb85675ca9ae7b7c3
specs:
rspec-support (3.10.0.pre)
GEM
remote: http://rubygems.org/
specs:
actioncable (6.0.2.2)
actionpack (= 6.0.2.2)
actioncable (6.0.3.4)
actionpack (= 6.0.3.4)
nio4r (~> 2.0)
websocket-driver (>= 0.6.1)
actionmailbox (6.0.2.2)
actionpack (= 6.0.2.2)
activejob (= 6.0.2.2)
activerecord (= 6.0.2.2)
activestorage (= 6.0.2.2)
activesupport (= 6.0.2.2)
actionmailbox (6.0.3.4)
actionpack (= 6.0.3.4)
activejob (= 6.0.3.4)
activerecord (= 6.0.3.4)
activestorage (= 6.0.3.4)
activesupport (= 6.0.3.4)
mail (>= 2.7.1)
actionmailer (6.0.2.2)
actionpack (= 6.0.2.2)
actionview (= 6.0.2.2)
activejob (= 6.0.2.2)
actionmailer (6.0.3.4)
actionpack (= 6.0.3.4)
actionview (= 6.0.3.4)
activejob (= 6.0.3.4)
mail (~> 2.5, >= 2.5.4)
rails-dom-testing (~> 2.0)
actionpack (6.0.2.2)
actionview (= 6.0.2.2)
activesupport (= 6.0.2.2)
actionpack (6.0.3.4)
actionview (= 6.0.3.4)
activesupport (= 6.0.3.4)
rack (~> 2.0, >= 2.0.8)
rack-test (>= 0.6.3)
rails-dom-testing (~> 2.0)
rails-html-sanitizer (~> 1.0, >= 1.2.0)
actiontext (6.0.2.2)
actionpack (= 6.0.2.2)
activerecord (= 6.0.2.2)
activestorage (= 6.0.2.2)
activesupport (= 6.0.2.2)
actiontext (6.0.3.4)
actionpack (= 6.0.3.4)
activerecord (= 6.0.3.4)
activestorage (= 6.0.3.4)
activesupport (= 6.0.3.4)
nokogiri (>= 1.8.5)
actionview (6.0.2.2)
activesupport (= 6.0.2.2)
actionview (6.0.3.4)
activesupport (= 6.0.3.4)
builder (~> 3.1)
erubi (~> 1.4)
rails-dom-testing (~> 2.0)
@ -94,25 +94,25 @@ GEM
addressable
active_record_union (1.3.0)
activerecord (>= 4.0)
activejob (6.0.2.2)
activesupport (= 6.0.2.2)
activejob (6.0.3.4)
activesupport (= 6.0.3.4)
globalid (>= 0.3.6)
activemodel (6.0.2.2)
activesupport (= 6.0.2.2)
activerecord (6.0.2.2)
activemodel (= 6.0.2.2)
activesupport (= 6.0.2.2)
activestorage (6.0.2.2)
actionpack (= 6.0.2.2)
activejob (= 6.0.2.2)
activerecord (= 6.0.2.2)
activemodel (6.0.3.4)
activesupport (= 6.0.3.4)
activerecord (6.0.3.4)
activemodel (= 6.0.3.4)
activesupport (= 6.0.3.4)
activestorage (6.0.3.4)
actionpack (= 6.0.3.4)
activejob (= 6.0.3.4)
activerecord (= 6.0.3.4)
marcel (~> 0.3.1)
activesupport (6.0.2.2)
activesupport (6.0.3.4)
concurrent-ruby (~> 1.0, >= 1.0.2)
i18n (>= 0.7, < 2)
minitest (~> 5.1)
tzinfo (~> 1.1)
zeitwerk (~> 2.2)
zeitwerk (~> 2.2, >= 2.2.2)
addressable (2.7.0)
public_suffix (>= 2.0.2, < 5.0)
annotate (3.1.1)
@ -120,10 +120,10 @@ GEM
rake (>= 10.4, < 14.0)
archive-zip (0.12.0)
io-like (~> 0.3.0)
ast (2.4.0)
ast (2.4.1)
awesome_print (1.8.0)
bbcoder (1.1.1)
better_errors (2.6.0)
better_errors (2.9.1)
coderay (>= 1.0.0)
erubi (>= 1.0.0)
rack (>= 0.9.0)
@ -140,8 +140,8 @@ GEM
bundler-audit (0.7.0.1)
bundler (>= 1.2.0, < 3)
thor (>= 0.18, < 2)
byebug (11.1.1)
capybara (3.31.0)
byebug (11.1.3)
capybara (3.33.0)
addressable
mini_mime (>= 0.1.3)
nokogiri (~> 1.8)
@ -158,11 +158,11 @@ GEM
mini_mime (>= 0.1.3)
childprocess (3.0.0)
cliver (0.3.2)
code_analyzer (0.5.1)
code_analyzer (0.5.2)
sexp_processor
codeclimate-test-reporter (1.0.7)
simplecov
coderay (1.1.2)
coderay (1.1.3)
coffee-rails (5.0.0)
coffee-script (>= 2.2.0)
railties (>= 5.2.0)
@ -170,8 +170,8 @@ GEM
coffee-script-source
execjs
coffee-script-source (1.12.2)
concurrent-ruby (1.1.6)
connection_pool (2.2.2)
concurrent-ruby (1.1.7)
connection_pool (2.2.3)
countries (3.0.1)
i18n_data (~> 0.10.0)
sixarm_ruby_unaccent (~> 1.1)
@ -180,8 +180,8 @@ GEM
countries (~> 3.0)
sort_alphabetical (~> 1.0)
crass (1.0.6)
dalli (2.7.10)
database_cleaner (1.8.3)
dalli (2.7.11)
database_cleaner (1.8.5)
database_cleaner-active_record (1.8.0)
activerecord
database_cleaner (~> 1.8.0)
@ -189,16 +189,16 @@ GEM
database_cleaner (~> 1.8.0)
redis
debug_inspector (0.0.3)
declarative (0.0.10)
declarative (0.0.20)
declarative-option (0.1.0)
diff-lcs (1.3)
diff-lcs (1.4.4)
docile (1.3.2)
dotenv (2.7.5)
dotenv-rails (2.7.5)
dotenv (= 2.7.5)
railties (>= 3.2, < 6.1)
dotenv (2.7.6)
dotenv-rails (2.7.6)
dotenv (= 2.7.6)
railties (>= 3.2)
dynamic_form (1.1.4)
erubi (1.9.0)
erubi (1.10.0)
erubis (2.7.0)
execjs (2.7.0)
factory_bot (4.10.0)
@ -208,7 +208,7 @@ GEM
railties (>= 3.0.0)
faraday (0.17.3)
multipart-post (>= 1.2, < 3)
ffi (1.12.2)
ffi (1.13.1)
ffi-compiler (1.0.1)
ffi (>= 1.0.0)
rake
@ -216,7 +216,7 @@ GEM
sass (~> 3.2)
geckodriver-helper (0.24.0)
archive-zip (~> 0.7)
get_process_mem (0.2.5)
get_process_mem (0.2.7)
ffi (~> 1.0)
globalid (0.4.2)
activesupport (>= 4.2.0)
@ -236,7 +236,7 @@ GEM
multi_json (~> 1.11)
os (>= 0.9, < 2.0)
signet (~> 0.7)
haml (5.1.2)
haml (5.2.0)
temple (>= 0.8.0)
tilt
hashie (4.1.0)
@ -247,25 +247,24 @@ GEM
i18n-country-translations (1.4.1)
i18n (>= 0.9.3, < 2)
railties (>= 5.0)
i18n-js (3.6.0)
i18n-js (3.8.0)
i18n (>= 0.6.6)
i18n_country_select (1.2.1)
i18n (~> 0.9.3)
i18n-country-translations (~> 1.0, >= 1.3.0)
unicode_utils (~> 1.0, >= 1.0.0)
i18n_data (0.10.0)
image_processing (1.10.3)
image_processing (1.12.1)
mini_magick (>= 4.9.5, < 5)
ruby-vips (>= 2.0.17, < 3)
io-like (0.3.1)
jaro_winkler (1.5.4)
jquery-rails (4.3.5)
jquery-rails (4.4.0)
rails-dom-testing (>= 1, < 3)
railties (>= 4.2.0)
thor (>= 0.14, < 2.0)
json (2.3.0)
jwt (2.2.1)
loofah (2.4.0)
json (2.3.1)
jwt (2.2.2)
loofah (2.7.0)
crass (~> 1.0.2)
nokogiri (>= 1.5.9)
mail (2.7.1)
@ -276,22 +275,22 @@ GEM
method_source (1.0.0)
mime-types (3.3.1)
mime-types-data (~> 3.2015)
mime-types-data (3.2019.1009)
mimemagic (0.3.4)
mini_magick (4.10.1)
mime-types-data (3.2020.1104)
mimemagic (0.3.5)
mini_magick (4.11.0)
mini_mime (1.0.2)
mini_portile2 (2.4.0)
minitest (5.14.0)
multi_json (1.14.1)
minitest (5.14.2)
multi_json (1.15.0)
multi_xml (0.6.0)
multipart-post (2.1.1)
mysql2 (0.5.3)
neat (1.6.0)
bourbon (>= 3.1)
sass (>= 3.3)
newrelic_rpm (6.9.0.363)
nio4r (2.5.2)
nokogiri (1.10.9)
newrelic_rpm (6.13.1)
nio4r (2.5.4)
nokogiri (1.10.10)
mini_portile2 (~> 2.4.0)
nokogumbo (2.0.2)
nokogiri (~> 1.8, >= 1.8.4)
@ -307,17 +306,17 @@ GEM
omniauth-steam (1.0.6)
multi_json
omniauth-openid
os (1.0.1)
parallel (1.19.1)
parser (2.7.0.5)
ast (~> 2.4.0)
os (1.1.1)
parallel (1.20.0)
parser (2.7.2.0)
ast (~> 2.4.1)
phantomjs (2.1.1.0)
poltergeist (1.18.1)
capybara (>= 2.1, < 4)
cliver (~> 0.3.1)
websocket-driver (>= 0.2.0)
power_assert (1.1.7)
pry (0.13.0)
power_assert (1.2.0)
pry (0.13.1)
coderay (~> 1.1)
method_source (~> 1.0)
pry-byebug (3.9.0)
@ -325,37 +324,37 @@ GEM
pry (~> 0.13.0)
pry-rails (0.3.9)
pry (>= 0.10.4)
public_suffix (4.0.3)
puma (4.3.3)
public_suffix (4.0.6)
puma (5.0.4)
nio4r (~> 2.0)
puma_worker_killer (0.1.1)
puma_worker_killer (0.3.1)
get_process_mem (~> 0.2)
puma (>= 2.7, < 5)
rack (2.2.2)
puma (>= 2.7)
rack (2.2.3)
rack-openid (1.3.1)
rack (>= 1.1.0)
ruby-openid (>= 2.1.8)
rack-test (1.1.0)
rack (>= 1.0, < 3)
rails (6.0.2.2)
actioncable (= 6.0.2.2)
actionmailbox (= 6.0.2.2)
actionmailer (= 6.0.2.2)
actionpack (= 6.0.2.2)
actiontext (= 6.0.2.2)
actionview (= 6.0.2.2)
activejob (= 6.0.2.2)
activemodel (= 6.0.2.2)
activerecord (= 6.0.2.2)
activestorage (= 6.0.2.2)
activesupport (= 6.0.2.2)
rails (6.0.3.4)
actioncable (= 6.0.3.4)
actionmailbox (= 6.0.3.4)
actionmailer (= 6.0.3.4)
actionpack (= 6.0.3.4)
actiontext (= 6.0.3.4)
actionview (= 6.0.3.4)
activejob (= 6.0.3.4)
activemodel (= 6.0.3.4)
activerecord (= 6.0.3.4)
activestorage (= 6.0.3.4)
activesupport (= 6.0.3.4)
bundler (>= 1.3.0)
railties (= 6.0.2.2)
railties (= 6.0.3.4)
sprockets-rails (>= 2.0.0)
rails-controller-testing (1.0.4)
actionpack (>= 5.0.1.x)
actionview (>= 5.0.1.x)
activesupport (>= 5.0.1.x)
rails-controller-testing (1.0.5)
actionpack (>= 5.0.1.rc1)
actionview (>= 5.0.1.rc1)
activesupport (>= 5.0.1.rc1)
rails-dom-testing (2.0.3)
activesupport (>= 4.2.0)
nokogiri (>= 1.6)
@ -371,46 +370,49 @@ GEM
json
require_all (~> 3.0)
ruby-progressbar
railties (6.0.2.2)
actionpack (= 6.0.2.2)
activesupport (= 6.0.2.2)
railties (6.0.3.4)
actionpack (= 6.0.3.4)
activesupport (= 6.0.3.4)
method_source
rake (>= 0.8.7)
thor (>= 0.20.3, < 2.0)
rainbow (3.0.0)
rake (13.0.1)
rb-fsevent (0.10.3)
rb-fsevent (0.10.4)
rb-inotify (0.10.1)
ffi (~> 1.0)
redis (4.1.3)
regexp_parser (1.7.0)
redis (4.2.2)
regexp_parser (1.8.2)
representable (3.0.4)
declarative (< 0.1.0)
declarative-option (< 0.2.0)
uber (< 0.2.0)
require_all (3.0.0)
responders (3.0.0)
responders (3.0.1)
actionpack (>= 5.0)
railties (>= 5.0)
retriable (3.1.2)
rexml (3.2.4)
rmagick (4.1.1)
rmagick (4.1.2)
rspec_junit_formatter (0.4.1)
rspec-core (>= 2, < 4, != 2.12.0)
rubocop (0.80.1)
jaro_winkler (~> 1.5.1)
rubocop (1.3.0)
parallel (~> 1.10)
parser (>= 2.7.0.1)
parser (>= 2.7.1.5)
rainbow (>= 2.2.2, < 4.0)
regexp_parser (>= 1.8)
rexml
rubocop-ast (>= 1.1.1)
ruby-progressbar (~> 1.7)
unicode-display_width (>= 1.4.0, < 1.7)
unicode-display_width (>= 1.4.0, < 2.0)
rubocop-ast (1.1.1)
parser (>= 2.7.1.5)
ruby-openid (2.9.2)
ruby-progressbar (1.10.1)
ruby-vips (2.0.17)
ffi (~> 1.9)
rubyzip (2.3.0)
sanitize (5.1.0)
sanitize (5.2.1)
crass (~> 1.0.2)
nokogiri (>= 1.8.0)
nokogumbo (~> 2.0)
@ -430,59 +432,59 @@ GEM
selenium-webdriver (3.142.7)
childprocess (>= 0.5, < 4.0)
rubyzip (>= 1.2.2)
sexp_processor (4.14.1)
sexp_processor (4.15.1)
signet (0.11.0)
addressable (~> 2.3)
faraday (~> 0.9)
jwt (>= 1.5, < 3.0)
multi_json (~> 1.10)
simplecov (0.18.5)
simplecov (0.19.1)
docile (~> 1.1)
simplecov-html (~> 0.11)
simplecov-html (0.12.2)
simplecov-html (0.12.3)
sixarm_ruby_unaccent (1.2.0)
sort_alphabetical (1.1.0)
unicode_utils (>= 1.2.2)
spring (2.1.0)
spring (2.1.1)
sprockets (3.7.2)
concurrent-ruby (~> 1.0)
rack (> 1, < 3)
sprockets-rails (3.2.1)
sprockets-rails (3.2.2)
actionpack (>= 4.0)
activesupport (>= 4.0)
sprockets (>= 3.0.0)
temple (0.8.2)
test-unit (3.3.5)
test-unit (3.3.6)
power_assert
thor (1.0.1)
thread_safe (0.3.6)
tilt (2.0.10)
time_difference (0.5.0)
activesupport
timecop (0.9.1)
tinymce-rails (5.2.1)
timecop (0.9.2)
tinymce-rails (5.5.1)
railties (>= 3.1.1)
tzinfo (1.2.6)
tzinfo (1.2.8)
thread_safe (~> 0.1)
uber (0.1.0)
uglifier (4.2.0)
execjs (>= 0.3.0, < 3)
unicode-display_width (1.6.1)
unicode-display_width (1.7.0)
unicode_utils (1.4.0)
unread (0.11.0)
activerecord (>= 3)
web-console (4.0.1)
web-console (4.1.0)
actionview (>= 6.0.0)
activemodel (>= 6.0.0)
bindex (>= 0.4.0)
railties (>= 6.0.0)
websocket-driver (0.7.1)
websocket-driver (0.7.3)
websocket-extensions (>= 0.1.0)
websocket-extensions (0.1.4)
websocket-extensions (0.1.5)
will_paginate (3.3.0)
xpath (3.2.0)
nokogiri (~> 1.8)
zeitwerk (2.3.0)
zeitwerk (2.4.1)
PLATFORMS
ruby
@ -534,7 +536,7 @@ DEPENDENCIES
public_suffix
puma
puma_worker_killer
rails (~> 6.0.2.2)
rails (~> 6.0.3.4)
rails-controller-testing
rails_autolink
rails_best_practices

View file

@ -8,7 +8,7 @@ tag 'ENSL'
preload_app!
# Start in foreground mode
daemonize false
# daemonize false
# Rack up?
rackup DefaultRackup