Bump sinatra, rack, rails, rack-livereload, dotenv-rails, standard and selenium-webdriver #2809
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps sinatra, rack, rails, rack-livereload, dotenv-rails, standard and selenium-webdriver. These dependencies needed to be updated together.
Updates
sinatrafrom 3.2.0 to 4.2.1Changelog
Sourced from sinatra's changelog.
... (truncated)
Commits
599a0074.2.1 release (#2125)2c7f8dbRevert "PATH_INFOcan never be empty." (#2124)f2ad45f4.2.0 release (#2122)3fe8c38Fix regex inetag_matches?to prevent ReDoS (#2121)fa99a21PATH_INFOcan never be empty. (#2114)ea0d3faSkip broken tests. (#2115)5e15985Sync changelog for v4.0.191cfb54Add :static_headers setting for custom headers in static file responses (#2089)c918134Setrubygems_mfa_requiredfor thesinatragem (#2087)ac3ff23README: Remove duplicate mention of installing puma (#2091)Updates
rackfrom 2.2.17 to 3.1.18Release notes
Sourced from rack's releases.
Changelog
Sourced from rack's changelog.
... (truncated)
Commits
96cf078Bump patch version.cbd541eUnbounded read inRack::Requestform parsing can lead to memory exhaustion.7e69f65Improper handling of proxy headers inRack::Sendfilemay allow proxy bypass.db6bc0fNormalize adivsories links.ad81f80Fix handling ofErrno::EPIPEin multipart tests.8d141b3Bump patch version.f224f93Limit amount of retained data when parsing multipart requestse08f78cFix denial of service vulnerbilties in multipart parsing02ffd94Add changelog for v3.1.16df2f3f2Bump patch version.Updates
railsfrom 7.0.8.7 to 8.0.3Release notes
Sourced from rails's releases.
... (truncated)
Commits
529f933Preparing for 8.0.3 release6409b24Merge pull request #55719 from skipkayhil/hm-fix-label-for-namespace030f68cRemove lock for rdoc gem in Gemfile0160f42Sync CHANGELOGs6394bfbMerge pull request #55725 from byroot/js-include-type-module-sym0ff0d09Merge pull request #55724 from fatkodima/preserve-locale-eml-preview74038d7Merge pull request #55722 from kozy4324/fix-lease-sticky-flag-timing78fe965Merge pull request #55710 from Shopify/grodowski/file-update-checker-time-tra...4fc9618Merge pull request #55703 from byroot/hly-fix-query-cache-system-tests-2847072cFix TransitionTable#as_json compatibility with json 2.14.0Updates
rack-livereloadfrom 0.5.2 to 0.6.1Commits
Updates
dotenv-railsfrom 3.1.7 to 3.1.8Release notes
Sourced from dotenv-rails's releases.
Commits
91d98f0Prepare for v3.1.8 release2840d9cFix lint errorc70fe0cMerge branch 'Roupiye/main'134c867Add specs for loading a directory53920cdThanks to@kmatthews812for sponsoring dotenvb5d4983Merge pull request #524 from mark-young-atg/add_changelog_link_to_gemspec0a41ca6Merge pull request #529 from webrails/readme-f-configuration-files4bdf65dFix lint error844edf5Add funding.yml640ebd0Clarify order of configuration files for flag -fUpdates
standardfrom 1.43.0 to 1.51.1Changelog
Sourced from standard's changelog.
Commits
04fd041v1.51.110a9bbaMerge pull request #751 from standardrb/empty-line-guard-clause2e6ea9bTurns EmptyLineAfterGuardClause04ec853Merge pull request #743 from standardrb/gemfile-specs9561268Merge branch 'main' into gemfile-specs4e46a7d🧸 v1.51.0b7e15cfMerge pull request #748 from standardrb/dependabot/bundler/rubocop-1.80.22976e77Whoops my gemfile57e6849Updates configuration for rubocop up to 1.81.0ced68cbUpdate rubocop requirement from ~> 1.75.5 to >= 1.75.5, < 1.81.0Updates
selenium-webdriverfrom 4.29.1 to 4.36.0Release notes
Sourced from selenium-webdriver's releases.
... (truncated)
Changelog
Sourced from selenium-webdriver's changelog.
... (truncated)
Commits
You can trigger a rebase of this PR by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)You can disable automated security fix PRs for this repo from the Security Alerts page.