lukebrogan-mend / railsgoat

A vulnerable version of Rails that follows the OWASP Top 10
railsgoat.cktricky.com
MIT License
0 stars 0 forks source link

Update dependency rails to v6.0.3.5 - abandoned #61

Open mend-for-github-com[bot] opened 2 years ago

mend-for-github-com[bot] commented 2 years ago

This PR contains the following updates:

Package Update Change
rails patch "6.0.0" -> "6.0.3.5"

By merging this PR, the issue #82 will be automatically resolved and closed:

Severity CVSS Score CVE
High High 7.5 CVE-2021-22880
Medium Medium 6.5 CVE-2020-8167
Medium Medium 6.1 CVE-2021-22881

mend-for-github-com[bot] commented 2 years ago

⚠ Artifact update problem

Renovate failed to update an artifact related to this branch. You probably do not want to merge this PR as-is.

♻ Renovate will retry this branch, including artifacts, only when one of the following happens:

The artifact failure details are included below:

File name: Gemfile.lock

/usr/local/ruby/3.0.2/lib/ruby/3.0.0/rubygems.rb:281:in `find_spec_for_exe': Could not find 'bundler' (1.17.3) required by your /tmp/renovate/github/lukebroganws/railsgoat/Gemfile.lock. (Gem::GemNotFoundException)
To update to the latest version installed on your system, run `bundle update --bundler`.
To install the missing version, run `gem install bundler:1.17.3`
    from /usr/local/ruby/3.0.2/lib/ruby/3.0.0/rubygems.rb:300:in `activate_bin_path'
    from /usr/local/ruby/3.0.2/bin/bundle:23:in `<main>'
mend-for-github-com[bot] commented 1 year ago

Autoclosing Skipped

This PR has been flagged for autoclosing. However, it is being skipped due to the branch being already modified. Please close/delete it manually or report a bug if you think this is in error.

mend-for-github-com[bot] commented 1 year ago

Edited/Blocked Notification

Renovate will not automatically rebase this PR, because it does not recognize the last commit author and assumes somebody else may have edited the PR.

You can manually request rebase by checking the rebase/retry box above.

Warning: custom changes will be lost.