Fix known security vunerabilities in required gems #182
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
The rails app had potential security vulnerabilities in its dependencies. This updates the following gems to patch those CVEs:
rack
loofah
I also updated
mini_racer
gem because I couldn't get the dependency tree to build on macOS. I was able to still build with Docker after the update.Note: I still have a failing spec, but according to @mirandawang on slack that looks like a defunct test case. I left it in place to keep the changes in the PR small.