Skip to content

Update Puma to resolve security advisory#9038

Merged
aduth merged 1 commit intomainfrom
aduth-puma-advisory
Aug 18, 2023
Merged

Update Puma to resolve security advisory#9038
aduth merged 1 commit intomainfrom
aduth-puma-advisory

Conversation

@aduth
Copy link
Contributor

@aduth aduth commented Aug 18, 2023

🛠 Summary of changes

Updates puma to resolve security advisory on main:

GHSA-68xg-gqqm-vgj8

Technically we could update to 6.x, but this is the path of least resistance, since I'm not sure what other complications might exist with a major upgrade (cc @stephencshelton re: #8598).

📜 Testing Plan

bundle exec bundler-audit check --update

changelog: Internal, Dependencies, Update dependencies to resolve security advisories
@stephencshelton
Copy link
Contributor

If the review app is up and functional (which it looks like it is) that should be fine as that is all we are using puma for

@aduth aduth merged commit b6ca714 into main Aug 18, 2023
@aduth aduth deleted the aduth-puma-advisory branch August 18, 2023 16:31
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants