Closed dependabot[bot] closed 3 weeks ago
there are a bunch of deprecation warnings, but I think this will build now
Still has this deprecation warning:
DEPRECATION WARNING: Calling silence on ActiveSupport::Deprecation is deprecated and will be removed from Rails (use Rails.application.deprecators.silence instead) (called from block (4 levels) in <top (required)> at /Users/andrew/projects/prx/feeder.prx.org/test/controllers/api/podcasts_controller_test.rb:85)
That will be fixed by upgrading hal_api-rails once this merges https://github.com/PRX/hal_api-rails/pull/32
also, fixes #1039
Bumps rails from 7.0.8.3 to 7.1.3.4.
Release notes
Sourced from rails's releases.
... (truncated)
Commits
19eebf6
Preparing for 7.1.3.4 releasebd7c28a
update changelog1ac6d40
Sanitize ActionText HTML ContentAttachment in Trix edit viewc7b9e0c
include the HTTP Permissions-Policy on non-HTML Content-Types747a03b
Preparing for 7.1.3.3 release260cb39
Upgrade Trix to 2.1.1 to fix [CVE-2024-34341][1]6f0d1ad
Preparing for 7.1.3.2 releasec25f0fc
Respect raise_on_missing_ in controllerd73ed95
Preparing for 7.1.3.1 release43037d8
update changelogYou can trigger a rebase of this PR by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show