Skip to content

Commit

Permalink
Update nokogiri to v1.13.4
Browse files Browse the repository at this point in the history
This fixes a number of CVEs and drops the need for nokogumbo:
sparklemotion/nokogiri#2205
  • Loading branch information
stanhu committed May 3, 2022
1 parent d17f1ee commit 9f18f1b
Show file tree
Hide file tree
Showing 3 changed files with 11 additions and 13 deletions.
19 changes: 10 additions & 9 deletions Gemfile.lock
Expand Up @@ -33,13 +33,13 @@ GEM
maxitest (4.1.0)
minitest (>= 5.0.0, < 5.15.0)
method_source (1.0.0)
mini_portile2 (2.3.0)
mini_portile2 (2.8.0)
minitest (5.14.4)
nokogiri (1.8.5)
mini_portile2 (~> 2.3.0)
nokogiri (1.8.5-java)
nokogumbo (2.0.5)
nokogiri (~> 1.8, >= 1.8.4)
nokogiri (1.13.4)
mini_portile2 (~> 2.8.0)
racc (~> 1.4)
nokogiri (1.13.4-java)
racc (~> 1.4)
pry (0.14.1)
coderay (~> 1.1)
method_source (~> 1.0)
Expand All @@ -48,6 +48,8 @@ GEM
method_source (~> 1.0)
spoon (~> 0.0)
public_suffix (4.0.6)
racc (1.6.0)
racc (1.6.0-java)
rake (13.0.6)
redcarpet (3.5.1)
rexml (3.2.5)
Expand Down Expand Up @@ -79,13 +81,12 @@ DEPENDENCIES
coveralls
jruby-openssl
maxitest
nokogiri (~> 1.8.2)
nokogumbo
nokogiri (~> 1.13)
premailer!
pry
rake (> 0.8, != 0.9.0)
redcarpet (~> 3.0)
webmock

BUNDLED WITH
2.2.0.rc.2
2.3.6
2 changes: 0 additions & 2 deletions lib/premailer/adapter/nokogumbo.rb
@@ -1,5 +1,3 @@
require 'nokogumbo'

class Premailer
module Adapter
# Nokogiri adapter
Expand Down
3 changes: 1 addition & 2 deletions premailer.gemspec
Expand Up @@ -17,12 +17,11 @@ Gem::Specification.new "premailer", Premailer::VERSION do |s|
s.add_runtime_dependency 'addressable'
s.add_development_dependency "bundler", ">= 1.3"
s.add_development_dependency 'rake', ['> 0.8', '!= 0.9.0']
s.add_development_dependency 'nokogiri', '~> 1.8.2'
s.add_development_dependency 'nokogiri', '~> 1.13'
s.add_development_dependency 'redcarpet', '~> 3.0'
s.add_development_dependency 'maxitest'
s.add_development_dependency 'coveralls'
s.add_development_dependency 'webmock'
s.add_development_dependency 'nokogumbo'
s.add_development_dependency 'bump'
end

0 comments on commit 9f18f1b

Please sign in to comment.