[CRuby] Vendored libxml2 is updated to v2.12.9, which the upstream release notes state is a security release to address CVE-2024-40896. Nokogiri's maintainers believe this vulnerability does not affect users of Nokogiri, but we advise upgrading at your earliest convenience anyway.
Depfu will automatically keep this PR conflict-free, as long as you don't add any commits to this branch yourself. You can also trigger a rebase manually by commenting with @depfu rebase.
All Depfu comment commands
@depfu rebase
Rebases against your default branch and redoes this update
@depfu recreate
Recreates this PR, overwriting any edits that you've made to it
@depfu merge
Merges this PR once your tests are passing and conflicts are resolved
@depfu cancel merge
Cancels automatic merging of this PR
@depfu close
Closes this PR and deletes the branch
@depfu reopen
Restores the branch and reopens this PR (if it's closed)
@depfu pause
Ignores all future updates for this dependency and closes this PR
@depfu pause [minor|major]
Ignores all future minor/major updates for this dependency and closes this PR
@depfu resume
Future versions of this dependency will create PRs again (leaves this PR as is)
Here is everything you need to know about this update. Please take a good look at what changed and the test results before merging this pull request.
What changed?
✳️ rspec-rails (6.1.3 → 6.1.4) · Repo · Changelog
Release Notes
6.1.4 (from changelog)
Does any of this look wrong? Please let us know.
Commits
See the full diff on Github. The new version differs by 6 commits:
6.1.4
Extract `cell_selector` method in scaffold index view spec generator (#2777)
Changelog for #2771
Merge pull request #2771 from cbliard/support-rack-mock-response-with-have-http-status
Create SECURITY.md
Merge pull request #2770 from toshimaru/use-perform_enqueued_jobs
↗️ concurrent-ruby (indirect, 1.3.3 → 1.3.4) · Repo · Changelog
Release Notes
1.3.4
Does any of this look wrong? Please let us know.
Commits
See the full diff on Github. The new version differs by 10 commits:
Avoid requiring files of the gem in Rakefile to avoid redefined method warnings
Avoid require in Gemfile & Rakefile to avoid redefined constant warnings
Avoid require in *.gemspec files to avoid redefined constant warnings
Update docs-source/signpost.md
1.3.4
Check early that $CONCURRENT_JRUBY_HOME is set
Fix the return value of `Concurrent.available_processor_count` when `cpu.cfs_quota_us` is -1
Fix the doc of `Concurrent.available_processor_count`
Add `Concurrent.cpu_shares` that is cgroups aware.
Update comment for JRuby variant of processor_count to reality
↗️ minitest (indirect, 5.24.1 → 5.25.1) · Repo · Changelog
Release Notes
5.25.0 (from changelog)
Does any of this look wrong? Please let us know.
Commits
See the full diff on Github. The new version differs by 24 commits:
prepped for release
- Fix incompatibility caused by minitest-hooks & rails invading minitest internals.
- Revert change from =~ to match? to allow for nil if $TERM undefined.
prepped for release
+ Refactored siginfo handler to reduce runtime costs. Saved ~30%!
normalized all actual/expected var names for assert_equal tests
Accept colon style Hash#inspect in test. (tompng)
- Improve description of test:slow task. (stomar)
- Cleaning up ancient code checking for defined?(Encoding) and the like.
Minor fix to make deprecation tests pass when using rake testW0
oops
+ Fixed some inefficiencies filtering and matching (mostly backtraces).
More foolish consistency...
More foolish consistency... "So many parens!" edition
More foolish consistency...
"A foolish consistency is the hobgoblin of little minds, adored by little statesmen and philosophers and divines"—Emerson
- Disambiguated some shadowed variables in minitest/compress.
Got rid of ANCIENT pre-Integer-merge tests
Got rid of ANCIENT RUBY18 conditioned tests
- Fixed an ironic bug if using string-literals AND Werror.
Finally removed all clean + heredoc for squiggly heredocs in test.
- Added missing rdoc to get back to 100% coverage.
Double quoted some (ancient) string literals.
Fixed 3 tests when using minitest-gcstats.
↗️ nokogiri (indirect, 1.16.6 → 1.16.7) · Repo · Changelog
Release Notes
1.16.7
Does any of this look wrong? Please let us know.
Commits
See the full diff on Github. The new version differs by 3 commits:
version bump to v1.16.7
dep: update libxml2 to v2.12.9 (branch v1.16.x) (#3297)
dep: update packaged libxml2 to v2.12.9
↗️ zeitwerk (indirect, 2.6.16 → 2.6.17) · Repo · Changelog
Release Notes
2.6.17 (from changelog)
Does any of this look wrong? Please let us know.
Commits
See the full diff on Github. The new version differs by 2 commits:
Ready for 2.6.17
Fix log message when eager loading a directory ends
Depfu will automatically keep this PR conflict-free, as long as you don't add any commits to this branch yourself. You can also trigger a rebase manually by commenting with
@depfu rebase
.All Depfu comment commands