Skip to content

Commit 2ff84ff

Browse files
Upgrade nokogiri to 1.19.3 to fix Dependabot security alerts (#68)
This upgrade addresses CVE-2025-32414 and CVE-2025-32415 by updating nokogiri to version 1.19.3 which uses libxml2 v2.13.8.
1 parent 2741dc4 commit 2ff84ff

1 file changed

Lines changed: 6 additions & 11 deletions

File tree

Gemfile.lock

Lines changed: 6 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -142,26 +142,22 @@ GEM
142142
crass (~> 1.0.2)
143143
nokogiri (>= 1.12.0)
144144
method_source (1.1.0)
145-
mini_portile2 (2.8.8)
146145
minitest (5.25.5)
147146
nap (1.1.0)
148147
net-http (0.6.0)
149148
uri
150149
netrc (0.11.0)
151-
nokogiri (1.18.5)
152-
mini_portile2 (~> 2.8.2)
150+
nokogiri (1.19.3-aarch64-linux-gnu)
153151
racc (~> 1.4)
154-
nokogiri (1.18.5-aarch64-linux-gnu)
152+
nokogiri (1.19.3-aarch64-linux-musl)
155153
racc (~> 1.4)
156-
nokogiri (1.18.5-aarch64-linux-musl)
154+
nokogiri (1.19.3-arm64-darwin)
157155
racc (~> 1.4)
158-
nokogiri (1.18.5-arm64-darwin)
156+
nokogiri (1.19.3-x86_64-darwin)
159157
racc (~> 1.4)
160-
nokogiri (1.18.5-x86_64-darwin)
158+
nokogiri (1.19.3-x86_64-linux-gnu)
161159
racc (~> 1.4)
162-
nokogiri (1.18.5-x86_64-linux-gnu)
163-
racc (~> 1.4)
164-
nokogiri (1.18.5-x86_64-linux-musl)
160+
nokogiri (1.19.3-x86_64-linux-musl)
165161
racc (~> 1.4)
166162
octokit (9.2.0)
167163
faraday (>= 1, < 3)
@@ -334,7 +330,6 @@ PLATFORMS
334330
aarch64-linux-gnu
335331
aarch64-linux-musl
336332
arm64-darwin
337-
ruby
338333
universal-darwin
339334
x86_64-darwin
340335
x86_64-linux

0 commit comments

Comments
 (0)