Skip to content

Conversation

@Widcket
Copy link
Contributor

@Widcket Widcket commented Aug 23, 2021

Changes

This PR updates the gems, so that Addressable is bumped to v2.8.0 because of this vulnerability: https://nvd.nist.gov/vuln/detail/CVE-2021-32740

Testing

[ ] This change adds unit test coverage (or why not)
[ ] This change has been tested on the latest version of the platform/language or why not

Checklist

[ ] I have read the Auth0 general contribution guidelines
[ ] I have read the Auth0 Code of Conduct
[ ] All existing and new tests complete without errors

@Widcket Widcket requested a review from a team as a code owner August 23, 2021 15:06
@Widcket Widcket added dependencies One or more dependencies are being bumped review:tiny Tiny review and removed review:tiny Tiny review labels Aug 23, 2021
@Widcket Widcket added this to the 0.12.4 milestone Aug 23, 2021
@Widcket Widcket merged commit af9177a into master Aug 23, 2021
@Widcket Widcket deleted the chore/update-gems branch August 23, 2021 16:02
@Widcket Widcket mentioned this pull request Aug 24, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

CH: Security dependencies One or more dependencies are being bumped

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants