Bump actionpack, activesupport, rails and audited #137
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps actionpack, activesupport, rails and audited. These dependencies needed to be updated together.
Updates
actionpackfrom 6.1.7 to 7.0.4.1Release notes
Sourced from actionpack's releases.
... (truncated)
Changelog
Sourced from actionpack's changelog.
... (truncated)
Commits
23e0345Version 7.0.4.18d82687Avoid regex backtracking on If-None-Match headercd46b0eUse string#split instead of regex for domain partse50e26dFix sec issue with _url_host_allowed?8015c2cVersion 7.0.4f3c345eMerge pull request #45964 from jhawthorn/server_timing_safety4d25c64Merge pull request #45221 from jhawthorn/ac_params_eql_fix47cff40Format inline code [ci-skip]c5a407dLinkify code references [ci-skip]e874cf5Fix typos [ci-skip]Updates
activesupportfrom 6.1.7 to 7.0.4.1Release notes
Sourced from activesupport's releases.
... (truncated)
Changelog
Sourced from activesupport's changelog.
... (truncated)
Commits
23e0345Version 7.0.4.12164d4fAvoid regex backtracking in Inflector.underscore8015c2cVersion 7.0.4ff27758Revert "Merge pull request #44695 from Edouard-chin/ec-tagger-logger-broadcast"4a1f224Merge pull request #45882 from rails/short-inspect-on-test-casea3bd3b5Backport Redis 5.0 compatibility67f37acFix flaky tests for RedisCacheStorec520e38Document AS::Cache::MemCacheStore#write options [ci-skip]a74b650Document AS::Cache::Store#initialize options [ci-skip]f7a82bfDocument AS::Cache::Store#read options [ci-skip]Updates
railsfrom 6.1.7 to 7.0.4.1Release notes
Sourced from rails's releases.
... (truncated)
Commits
23e0345Version 7.0.4.1d7aba06Make sanitize_as_sql_comment more strict8d82687Avoid regex backtracking on If-None-Match header2164d4fAvoid regex backtracking in Inflector.underscorecd46b0eUse string#split instead of regex for domain partse50e26dFix sec issue with _url_host_allowed?82bcdc0Added integer width check to PostgreSQL::Quoting8015c2cVersion 7.0.4f3c345eMerge pull request #45964 from jhawthorn/server_timing_safetyff27758Revert "Merge pull request #44695 from Edouard-chin/ec-tagger-logger-broadcast"Updates
auditedfrom 4.10.0 to 5.1.0Changelog
Sourced from audited's changelog.
... (truncated)
Commits
16769b3Bump version503a689Run standardrb --fix729a35fFix old Rubies2b605cbImprove readme example for conditional auditing:a9dde82Remove https://hakiri.io link in README2f09bb8Update CHANGELOG9232a75Merge pull request #605 from jess/patch-171c52bcMerge pull request #621 from Crammaman/ignore_audit_combine_deadlock68c2413Merge pull request #630 from vlad-psh/filter-encrypted-attributes-automatically1bbc099Filter encrypted attributes automaticallyDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)@dependabot use these labelswill set the current labels as the default for future PRs for this repo and language@dependabot use these reviewerswill set the current reviewers as the default for future PRs for this repo and language@dependabot use these assigneeswill set the current assignees as the default for future PRs for this repo and language@dependabot use this milestonewill set the current milestone as the default for future PRs for this repo and languageYou can disable automated security fix PRs for this repo from the Security Alerts page.