From 3023408c7f2a537744ba5b9c78c1d81fd8820130 Mon Sep 17 00:00:00 2001 From: Beth Skurrie Date: Tue, 12 Jun 2018 10:29:54 +1000 Subject: [PATCH] fix: update sintra to >= 2.0.2 to fix css vulnerability https://hakiri.io/projects/7cb1959309195a/stacks/11e2bc54355a52/builds/386e9c456fa596/warnings?name=Cross-Site+Scripting https://github.com/sinatra/sinatra/issues/1428 --- pact_broker.gemspec | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/pact_broker.gemspec b/pact_broker.gemspec index 6ff10c97f..e6429d142 100644 --- a/pact_broker.gemspec +++ b/pact_broker.gemspec @@ -33,7 +33,7 @@ Gem::Specification.new do |gem| gem.add_runtime_dependency 'redcarpet', '>=3.3.2', '~>3.3' gem.add_runtime_dependency 'pact-support' gem.add_runtime_dependency 'padrino-core', '>= 0.14.3', '~> 0.14' - gem.add_runtime_dependency 'sinatra', '>= 2.0.1' + gem.add_runtime_dependency 'sinatra', '>= 2.0.2' gem.add_runtime_dependency 'haml', '~>5.0' gem.add_runtime_dependency 'sucker_punch', '~>2.0' gem.add_runtime_dependency 'rack-protection', '~>2.0'