From 60e44c52855deec30a8f898ac10023e9f8cc341d Mon Sep 17 00:00:00 2001 From: "dependabot-preview[bot]" <27856297+dependabot-preview[bot]@users.noreply.github.com> Date: Mon, 12 Jul 2021 17:23:29 +0000 Subject: [PATCH] [Security] Bump addressable from 2.5.2 to 2.8.0 Bumps [addressable](https://github.com/sporkmonger/addressable) from 2.5.2 to 2.8.0. **This update includes a security fix.** - [Release notes](https://github.com/sporkmonger/addressable/releases) - [Changelog](https://github.com/sporkmonger/addressable/blob/main/CHANGELOG.md) - [Commits](https://github.com/sporkmonger/addressable/compare/addressable-2.5.2...addressable-2.8.0) Signed-off-by: dependabot-preview[bot] --- Gemfile.lock | 19 ++++++++++--------- 1 file changed, 10 insertions(+), 9 deletions(-) diff --git a/Gemfile.lock b/Gemfile.lock index 113e776..01a8a4e 100644 --- a/Gemfile.lock +++ b/Gemfile.lock @@ -6,8 +6,8 @@ GEM i18n (>= 0.7, < 2) minitest (~> 5.1) tzinfo (~> 1.1) - addressable (2.5.2) - public_suffix (>= 2.0.2, < 4.0) + addressable (2.8.0) + public_suffix (>= 2.0.2, < 5.0) ast (2.4.0) aws-eventstream (1.0.3) aws-partitions (1.182.0) @@ -111,7 +111,7 @@ GEM diff-lcs (1.3) erubis (2.7.0) excon (0.64.0) - faraday (0.15.2) + faraday (0.17.4) multipart-post (>= 1.2, < 3) faraday-http-cache (2.0.0) faraday (~> 0.8) @@ -221,7 +221,7 @@ GEM mixlib-versioning (1.2.7) molinillo (0.6.6) multi_json (1.13.1) - multipart-post (2.0.0) + multipart-post (2.1.1) nenv (0.3.0) net-scp (1.2.1) net-ssh (>= 2.6.5) @@ -241,7 +241,8 @@ GEM notiffany (0.1.1) nenv (~> 0.1) shellany (~> 0.0) - octokit (4.11.0) + octokit (4.21.0) + faraday (>= 0.9) sawyer (~> 0.8.0, >= 0.5.3) ohai (8.26.1) chef-config (>= 12.5.0.alpha.1, < 14) @@ -264,7 +265,7 @@ GEM pry (0.12.2) coderay (~> 1.1.0) method_source (~> 0.9.0) - public_suffix (3.0.3) + public_suffix (4.0.6) rack (2.0.7) rainbow (3.0.0) rake (12.3.2) @@ -323,9 +324,9 @@ GEM rubyntlm (0.6.2) rubyzip (1.2.3) rufus-lru (1.1.0) - sawyer (0.8.1) - addressable (>= 2.3.5, < 2.6) - faraday (~> 0.8, < 1.0) + sawyer (0.8.2) + addressable (>= 2.3.5) + faraday (> 0.8, < 2.0) semverse (2.0.0) serverspec (2.41.3) multi_json