summaryrefslogtreecommitdiff
path: root/Gemfile
diff options
context:
space:
mode:
authorAlessio Caiazza <acaiazza@gitlab.com>2018-06-25 16:13:53 +0000
committerAlessio Caiazza <acaiazza@gitlab.com>2018-06-25 16:13:53 +0000
commit70c02bf3bce18d39a4fae85bb927334391cd2a5e (patch)
tree0b0f3426976856f18fb5a9dc0c371b2447178cc8 /Gemfile
parent4605d27d341d7840cba3453f2b2f23fb992c44b3 (diff)
parent039b0c0dbd956e458000fb4f3f7cf0a638098912 (diff)
downloadgitlab-ce-70c02bf3bce18d39a4fae85bb927334391cd2a5e.tar.gz
Merge branch 'security-fj-bumping-sanitize-gem' into 'master'
[master] Update sanitize gem to 4.6.5 to fix HTML injection vulnerability See merge request gitlab/gitlabhq!2399
Diffstat (limited to 'Gemfile')
-rw-r--r--Gemfile2
1 files changed, 1 insertions, 1 deletions
diff --git a/Gemfile b/Gemfile
index 945b5486437..93c6115eeec 100644
--- a/Gemfile
+++ b/Gemfile
@@ -230,7 +230,7 @@ gem 'ruby-fogbugz', '~> 0.2.1'
gem 'kubeclient', '~> 3.1.0'
# Sanitize user input
-gem 'sanitize', '~> 2.0'
+gem 'sanitize', '~> 4.6.5'
gem 'babosa', '~> 1.0.2'
# Sanitizes SVG input