Skip to content

Ignore security advisory for excon gem#2852

Merged
stephencdaly merged 1 commit into
mainfrom
ignore-excon-security-advisory
Jun 19, 2026
Merged

Ignore security advisory for excon gem#2852
stephencdaly merged 1 commit into
mainfrom
ignore-excon-security-advisory

Conversation

@stephencdaly

Copy link
Copy Markdown
Contributor

Add a .bundler-audit.yml file to ignore the security advisory for the excon gem.

The excon gem is only used by the MailchimpMarketing gem, which does not use the affected RedirectFollower middleware.

We cannot currently upgrade the excon gem as MailchimpMarketing pins the gem to a lower version and is not actively being maintained.

Add a .bundler-audit.yml file to ignore the security advisory for the
excon gem.

The excon gem is only used by the MailchimpMarketing gem, which does
not use the affected RedirectFollower middleware.

We cannot currently upgrade the excon gem as MailchimpMarketing pins
the gem to a lower version and is not actively being maintained.
@github-actions

Copy link
Copy Markdown

🎉 A review copy of this PR has been deployed! You can reach it at: https://pr-2852.admin.review.forms.service.gov.uk/

It may take 5 minutes or so for the application to be fully deployed and working. If it still isn't ready
after 5 minutes, there may be something wrong with the ECS task. You will need to go to the integration AWS account
to debug, or otherwise ask an infrastructure person.

For the sign in details and more information, see the review apps wiki page.

@stephencdaly stephencdaly added this pull request to the merge queue Jun 19, 2026
Merged via the queue into main with commit 828d357 Jun 19, 2026
4 checks passed
@stephencdaly stephencdaly deleted the ignore-excon-security-advisory branch June 19, 2026 09:18
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants