This is an automated email from the ASF dual-hosted git repository.
ctubbsii pushed a commit to branch main
in repository https://gitbox.apache.org/repos/asf/thrift-website.git
The following commit(s) were added to refs/heads/main by this push:
new f4d48af Update gems to fix rexml vulnerabilities
f4d48af is described below
commit f4d48afb3e5657548afbea3a584b9e1b6d0ca0b0
Author: Christopher Tubbs <[email protected]>
AuthorDate: Thu Jul 25 01:25:35 2024 -0400
Update gems to fix rexml vulnerabilities
This closes #5
---
Gemfile | 4 +-
Gemfile.lock | 164 ++++++++++++++++++++++++++++++++++++++++++++++++-----------
2 files changed, 135 insertions(+), 33 deletions(-)
diff --git a/Gemfile b/Gemfile
index 81e5c1d..264e97d 100644
--- a/Gemfile
+++ b/Gemfile
@@ -1,3 +1,3 @@
-ruby '>=2.5.1'
+ruby '>=2.7'
source 'https://rubygems.org'
-gem 'jekyll', '>= 3.7.4'
+gem 'jekyll', '>= 4.2.0'
diff --git a/Gemfile.lock b/Gemfile.lock
index c6e4058..0a6ebfd 100644
--- a/Gemfile.lock
+++ b/Gemfile.lock
@@ -1,70 +1,172 @@
GEM
remote: https://rubygems.org/
specs:
- addressable (2.8.1)
- public_suffix (>= 2.0.2, < 6.0)
+ addressable (2.8.7)
+ public_suffix (>= 2.0.2, < 7.0)
+ bigdecimal (3.1.8)
colorator (1.1.0)
- concurrent-ruby (1.1.7)
- em-websocket (0.5.2)
+ concurrent-ruby (1.3.3)
+ em-websocket (0.5.3)
eventmachine (>= 0.12.9)
- http_parser.rb (~> 0.6.0)
+ http_parser.rb (~> 0)
eventmachine (1.2.7)
- ffi (1.13.1)
+ ffi (1.17.0)
+ ffi (1.17.0-aarch64-linux-gnu)
+ ffi (1.17.0-aarch64-linux-musl)
+ ffi (1.17.0-arm-linux-gnu)
+ ffi (1.17.0-arm-linux-musl)
+ ffi (1.17.0-arm64-darwin)
+ ffi (1.17.0-x86-linux-gnu)
+ ffi (1.17.0-x86-linux-musl)
+ ffi (1.17.0-x86_64-darwin)
+ ffi (1.17.0-x86_64-linux-gnu)
+ ffi (1.17.0-x86_64-linux-musl)
forwardable-extended (2.6.0)
- http_parser.rb (0.6.0)
- i18n (1.8.5)
+ google-protobuf (4.27.2)
+ bigdecimal
+ rake (>= 13)
+ google-protobuf (4.27.2-aarch64-linux)
+ bigdecimal
+ rake (>= 13)
+ google-protobuf (4.27.2-arm64-darwin)
+ bigdecimal
+ rake (>= 13)
+ google-protobuf (4.27.2-x86-linux)
+ bigdecimal
+ rake (>= 13)
+ google-protobuf (4.27.2-x86_64-darwin)
+ bigdecimal
+ rake (>= 13)
+ google-protobuf (4.27.2-x86_64-linux)
+ bigdecimal
+ rake (>= 13)
+ http_parser.rb (0.8.0)
+ i18n (1.14.5)
concurrent-ruby (~> 1.0)
- jekyll (4.1.1)
+ jekyll (4.3.3)
addressable (~> 2.4)
colorator (~> 1.0)
em-websocket (~> 0.5)
i18n (~> 1.0)
- jekyll-sass-converter (~> 2.0)
+ jekyll-sass-converter (>= 2.0, < 4.0)
jekyll-watch (~> 2.0)
- kramdown (~> 2.1)
+ kramdown (~> 2.3, >= 2.3.1)
kramdown-parser-gfm (~> 1.0)
liquid (~> 4.0)
- mercenary (~> 0.4.0)
+ mercenary (>= 0.3.6, < 0.5)
pathutil (~> 0.9)
- rouge (~> 3.0)
+ rouge (>= 3.0, < 5.0)
safe_yaml (~> 1.0)
- terminal-table (~> 1.8)
- jekyll-sass-converter (2.1.0)
- sassc (> 2.0.1, < 3.0)
+ terminal-table (>= 1.8, < 4.0)
+ webrick (~> 1.7)
+ jekyll-sass-converter (3.0.0)
+ sass-embedded (~> 1.54)
jekyll-watch (2.2.1)
listen (~> 3.0)
kramdown (2.4.0)
rexml
kramdown-parser-gfm (1.1.0)
kramdown (~> 2.0)
- liquid (4.0.3)
- listen (3.2.1)
+ liquid (4.0.4)
+ listen (3.9.0)
rb-fsevent (~> 0.10, >= 0.10.3)
rb-inotify (~> 0.9, >= 0.9.10)
mercenary (0.4.0)
pathutil (0.16.2)
forwardable-extended (~> 2.6)
- public_suffix (5.0.0)
- rb-fsevent (0.10.4)
- rb-inotify (0.10.1)
+ public_suffix (6.0.1)
+ rake (13.2.1)
+ rb-fsevent (0.11.2)
+ rb-inotify (0.11.1)
ffi (~> 1.0)
- rexml (3.2.5)
- rouge (3.24.0)
+ rexml (3.3.2)
+ strscan
+ rouge (4.3.0)
safe_yaml (1.0.5)
- sassc (2.4.0)
- ffi (~> 1.9)
- terminal-table (1.8.0)
- unicode-display_width (~> 1.1, >= 1.1.1)
- unicode-display_width (1.7.0)
+ sass-embedded (1.77.8)
+ google-protobuf (~> 4.26)
+ rake (>= 13)
+ sass-embedded (1.77.8-aarch64-linux-android)
+ google-protobuf (~> 4.26)
+ sass-embedded (1.77.8-aarch64-linux-gnu)
+ google-protobuf (~> 4.26)
+ sass-embedded (1.77.8-aarch64-linux-musl)
+ google-protobuf (~> 4.26)
+ sass-embedded (1.77.8-aarch64-mingw-ucrt)
+ google-protobuf (~> 4.26)
+ sass-embedded (1.77.8-arm-linux-androideabi)
+ google-protobuf (~> 4.26)
+ sass-embedded (1.77.8-arm-linux-gnueabihf)
+ google-protobuf (~> 4.26)
+ sass-embedded (1.77.8-arm-linux-musleabihf)
+ google-protobuf (~> 4.26)
+ sass-embedded (1.77.8-arm64-darwin)
+ google-protobuf (~> 4.26)
+ sass-embedded (1.77.8-riscv64-linux-android)
+ google-protobuf (~> 4.26)
+ sass-embedded (1.77.8-riscv64-linux-gnu)
+ google-protobuf (~> 4.26)
+ sass-embedded (1.77.8-riscv64-linux-musl)
+ google-protobuf (~> 4.26)
+ sass-embedded (1.77.8-x86-cygwin)
+ google-protobuf (~> 4.26)
+ sass-embedded (1.77.8-x86-linux-android)
+ google-protobuf (~> 4.26)
+ sass-embedded (1.77.8-x86-linux-gnu)
+ google-protobuf (~> 4.26)
+ sass-embedded (1.77.8-x86-linux-musl)
+ google-protobuf (~> 4.26)
+ sass-embedded (1.77.8-x86-mingw-ucrt)
+ google-protobuf (~> 4.26)
+ sass-embedded (1.77.8-x86_64-cygwin)
+ google-protobuf (~> 4.26)
+ sass-embedded (1.77.8-x86_64-darwin)
+ google-protobuf (~> 4.26)
+ sass-embedded (1.77.8-x86_64-linux-android)
+ google-protobuf (~> 4.26)
+ sass-embedded (1.77.8-x86_64-linux-gnu)
+ google-protobuf (~> 4.26)
+ sass-embedded (1.77.8-x86_64-linux-musl)
+ google-protobuf (~> 4.26)
+ strscan (3.1.0)
+ terminal-table (3.0.2)
+ unicode-display_width (>= 1.1.1, < 3)
+ unicode-display_width (2.5.0)
+ webrick (1.8.1)
PLATFORMS
+ aarch64-linux
+ aarch64-linux-android
+ aarch64-linux-gnu
+ aarch64-linux-musl
+ aarch64-mingw-ucrt
+ arm-linux-androideabi
+ arm-linux-gnu
+ arm-linux-gnueabihf
+ arm-linux-musl
+ arm-linux-musleabihf
+ arm64-darwin
+ riscv64-linux-android
+ riscv64-linux-gnu
+ riscv64-linux-musl
ruby
+ x86-cygwin
+ x86-linux
+ x86-linux-android
+ x86-linux-gnu
+ x86-linux-musl
+ x86-mingw-ucrt
+ x86_64-cygwin
+ x86_64-darwin
+ x86_64-linux-android
+ x86_64-linux-gnu
+ x86_64-linux-musl
DEPENDENCIES
- jekyll (>= 3.7.4)
+ jekyll (>= 4.2.0)
RUBY VERSION
- ruby 2.7.2p137
+ ruby 3.3.4p94
BUNDLED WITH
- 2.1.4
+ 2.5.11