From 41236b840d05069f328dfadd751e95cc7b3eae00 Mon Sep 17 00:00:00 2001 From: Elia Schito Date: Wed, 9 Aug 2023 15:14:29 +0200 Subject: [PATCH] Bump the minimum required Psych version The existing code already breaks with older versions and this just reflects the minimum version that works in the gemspec. Psych v4.0.1 is the one introducing `YAML.safe_dump` which we're using to store LogEntry serialized details. Fixes #5320. (cherry picked from commit 7d150dbf01b1fed1fa26242b525ff6e702ea2896) --- core/solidus_core.gemspec | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/core/solidus_core.gemspec b/core/solidus_core.gemspec index e21eb2bef5e..89ba92abd05 100644 --- a/core/solidus_core.gemspec +++ b/core/solidus_core.gemspec @@ -42,7 +42,7 @@ Gem::Specification.new do |s| s.add_dependency 'mini_magick', '~> 4.10' s.add_dependency 'monetize', '~> 1.8' s.add_dependency 'kt-paperclip', ['>= 6.3', '< 8'] - s.add_dependency 'psych', ['>= 3.1.0', '< 5.0'] + s.add_dependency 'psych', ['>= 4.0.1', '< 5.0'] s.add_dependency 'ransack', '~> 2.0' s.add_dependency 'sprockets-rails' s.add_dependency 'state_machines-activerecord', '~> 0.6'