Commit 244f19b
fix(deps): bump nokogiri to >= 1.19.1 to fix GHSA-wx95-c6cv-8532
Nokogiri < 1.19.1 does not check the return value from xmlC14NExecute,
which is a medium-severity vulnerability. Updates the version constraint
from ~> 1.18.9 (capped below 1.19.0) to >= 1.19.1 to resolve
Dependabot alert #53.
Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>1 parent 2b0e7f2 commit 244f19b
2 files changed
Lines changed: 9 additions & 9 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
15 | 15 | | |
16 | 16 | | |
17 | 17 | | |
18 | | - | |
| 18 | + | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
58 | 58 | | |
59 | 59 | | |
60 | 60 | | |
61 | | - | |
| 61 | + | |
62 | 62 | | |
63 | 63 | | |
64 | | - | |
| 64 | + | |
65 | 65 | | |
66 | | - | |
| 66 | + | |
67 | 67 | | |
68 | | - | |
| 68 | + | |
69 | 69 | | |
70 | | - | |
| 70 | + | |
71 | 71 | | |
72 | | - | |
| 72 | + | |
73 | 73 | | |
74 | 74 | | |
75 | 75 | | |
| |||
128 | 128 | | |
129 | 129 | | |
130 | 130 | | |
131 | | - | |
| 131 | + | |
132 | 132 | | |
133 | 133 | | |
134 | 134 | | |
| |||
140 | 140 | | |
141 | 141 | | |
142 | 142 | | |
143 | | - | |
| 143 | + | |
0 commit comments