From 58a760045fc3b6406b7e1c3d377e267c59de747d Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 29 Apr 2020 19:32:37 -0700 Subject: [PATCH 1/2] fix: package_links/Gemfile & package_links/Gemfile.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-JSON-567822 --- package_links/Gemfile | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/package_links/Gemfile b/package_links/Gemfile index 0c820036d..7c0b6a2b8 100644 --- a/package_links/Gemfile +++ b/package_links/Gemfile @@ -1,5 +1,5 @@ source 'https://rubygems.org' -gem 'aws-sdk', "= 1.8.5" +gem 'aws-sdk', '= 1.52.0' gem 'erubis' gem 'bitly', "~> 0.9.0" From 7990d30bfb15c8174db9ed49d0c37777dae50428 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 29 Apr 2020 19:32:38 -0700 Subject: [PATCH 2/2] fix: package_links/Gemfile & package_links/Gemfile.lock to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-RUBY-JSON-567822 --- package_links/Gemfile.lock | 19 ++++++++++++------- 1 file changed, 12 insertions(+), 7 deletions(-) diff --git a/package_links/Gemfile.lock b/package_links/Gemfile.lock index 4ee50eb9b..c51ca278b 100644 --- a/package_links/Gemfile.lock +++ b/package_links/Gemfile.lock @@ -1,10 +1,11 @@ GEM remote: https://rubygems.org/ specs: - aws-sdk (1.8.5) + aws-sdk (1.52.0) + aws-sdk-v1 (= 1.52.0) + aws-sdk-v1 (1.52.0) json (~> 1.4) - nokogiri (< 1.6.0) - uuidtools (~> 2.1) + nokogiri (>= 1.4.4) bitly (0.9.0) httparty (>= 0.7.6) multi_json (~> 1.3) @@ -16,13 +17,15 @@ GEM multi_json (~> 1.0) multi_xml (>= 0.5.2) httpauth (0.2.0) - json (1.8.0) + json (1.8.6) jwt (0.1.8) multi_json (>= 1.5) + mini_portile2 (2.4.0) multi_json (1.8.0) multi_xml (0.5.5) multipart-post (1.2.0) - nokogiri (1.5.10) + nokogiri (1.10.9) + mini_portile2 (~> 2.4.0) oauth2 (0.8.1) faraday (~> 0.8) httpauth (~> 0.1) @@ -30,12 +33,14 @@ GEM multi_json (~> 1.0) rack (~> 1.2) rack (1.5.2) - uuidtools (2.1.4) PLATFORMS ruby DEPENDENCIES - aws-sdk (= 1.8.5) + aws-sdk (= 1.52.0) bitly (~> 0.9.0) erubis + +BUNDLED WITH + 1.17.3