touchpoints icon indicating copy to clipboard operation
touchpoints copied to clipboard

[Snyk] Fix for 4 vulnerabilities

Open JJediny opened this issue 3 months ago • 0 comments

snyk-top-banner

Snyk has created this PR to fix 4 vulnerabilities in the rubygems dependencies of this project.

Snyk changed the following file(s):

  • Gemfile
  • Gemfile.lock

Vulnerabilities that will be fixed with an upgrade:

Issue Score
high severity Allocation of Resources Without Limits or Throttling
SNYK-RUBY-RACK-13378928
  721  
high severity Allocation of Resources Without Limits or Throttling
SNYK-RUBY-RACK-13378930
  721  
high severity Allocation of Resources Without Limits or Throttling
SNYK-RUBY-RACK-13378932
  721  
medium severity Improper Removal of Sensitive Information Before Storage or Transfer
SNYK-RUBY-URI-13506785
  541  

[!IMPORTANT]

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report 📜 Customise PR templates 🛠 Adjust project settings 📚 Read about Snyk's upgrade logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Allocation of Resources Without Limits or Throttling

[//]: # 'snyk:metadata:{"breakingChangeRiskLevel":null,"FF_showPullRequestBreakingChanges":null,"FF_showPullRequestBreakingChangesWebSearch":null,"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"factory_bot_rails","from":"6.5.0","to":"6.5.1"},{"name":"rails","from":"8.0.2.1","to":"8.0.3"},{"name":"rubocop-rails","from":"2.33.3","to":"2.33.4"},{"name":"sidekiq","from":"8.0.7","to":"8.0.8"},{"name":"turbo-rails","from":"2.0.16","to":"2.0.17"}],"env":"prod","issuesToFix":["SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785","SNYK-RUBY-URI-13506785"],"prId":"706ffc82-a071-422c-b5fd-35bc01e1f5d4","prPublicId":"706ffc82-a071-422c-b5fd-35bc01e1f5d4","packageManager":"rubygems","priorityScoreList":[721,721,721,541],"projectPublicId":"f36bfec6-99d2-4991-b16b-e270ec760a0b","projectUrl":"https://app.snyk.io/org/tts/project/f36bfec6-99d2-4991-b16b-e270ec760a0b?utm_source=github&utm_medium=referral&page=fix-pr","prType":"fix","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":["priorityScore"],"type":"auto","upgrade":["SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-URI-13506785"],"vulns":["SNYK-RUBY-RACK-13378928","SNYK-RUBY-RACK-13378930","SNYK-RUBY-RACK-13378932","SNYK-RUBY-URI-13506785"],"patch":[],"isBreakingChange":false,"remediationStrategy":"vuln"}'

JJediny avatar Oct 09 '25 22:10 JJediny