summaryrefslogtreecommitdiff
path: root/changelogs/unreleased
diff options
context:
space:
mode:
authorStan Hu <stanhu@gmail.com>2018-11-19 12:20:44 -0800
committerDouglas Barbosa Alexandre <dbalexandre@gmail.com>2018-11-19 20:21:18 -0200
commiteded08152273cf3eacac1002d41463d97de2e8de (patch)
treea8ea3b8cbfcc02efe1f601e6a409b102068850c6 /changelogs/unreleased
parentb1321dedaad5415de151480eb2a76c131437d29e (diff)
downloadgitlab-ce-eded08152273cf3eacac1002d41463d97de2e8de.tar.gz
Bump nokogiri, loofah, and rack gems for security updates
loofah: CVE-2018-16468: https://github.com/flavorjones/loofah/issues/154 nokogiri: CVE-2018-14404 and CVE-2018-14567 https://github.com/sparklemotion/nokogiri/blob/master/CHANGELOG.md rack: CVE-2018-16471 https://github.com/rack/rack/commit/e5d58031b766e49687157b45edab1b8457d972bd i18n: https://github.com/svenfuchs/i18n/releases concurrent-ruby: https://github.com/ruby-concurrency/concurrent-ruby/blob/master/CHANGELOG.md
Diffstat (limited to 'changelogs/unreleased')
-rw-r--r--changelogs/unreleased/sh-bump-gems-security.yml5
1 files changed, 5 insertions, 0 deletions
diff --git a/changelogs/unreleased/sh-bump-gems-security.yml b/changelogs/unreleased/sh-bump-gems-security.yml
new file mode 100644
index 00000000000..06489f6f979
--- /dev/null
+++ b/changelogs/unreleased/sh-bump-gems-security.yml
@@ -0,0 +1,5 @@
+---
+title: Bump nokogiri, loofah, and rack gems for security updates
+merge_request: 23204
+author:
+type: security