Update actionview requirement from ~> 7.1.5.1 to ~> 7.2.2.1
Merged
Number: #289
Type: Pull Request
State: Merged
Type: Pull Request
State: Merged
Author:
dependabot[bot]
Association: Contributor
Comments: 0
Association: Contributor
Comments: 0
Created:
April 28, 2025 at 08:38 PM UTC
(about 1 year ago)
(about 1 year ago)
Updated:
May 12, 2025 at 03:18 PM UTC
(about 1 year ago)
(about 1 year ago)
Merged:
May 12, 2025 at 03:18 PM UTC
(about 1 year ago)
by issyl0
(about 1 year ago)
by issyl0
Time to Close:
14 days
Labels:
dependencies ruby
dependencies ruby
Description:
Updates the requirements on actionview to permit the latest version.
Release notes
Sourced from actionview's releases.
7.2.2.1
Active Support
- No changes.
Active Model
- No changes.
Active Record
- No changes.
Action View
- No changes.
Action Pack
Add validation to content security policies to disallow spaces and semicolons. Developers should use multiple arguments, and different directive methods instead.
[CVE-2024-54133]
Gannon McGibbon
Active Job
- No changes.
Action Mailer
- No changes.
Action Cable
- No changes.
Active Storage
- No changes.
... (truncated)
Commits
33beb0aPreparing for 7.2.2.1 released0dcb8fPreparing for 7.2.2 release2975a88Merge remote-tracking branch 'origin/7-2-sec' into 7-2-stable7750d64Preparing for 7.2.1.2 release4c45fc1Fix invalid syntax in TextHelper#highlight API docs example [ci skip]5f5349fMerge remote-tracking branch 'origin/7-2-sec' into 7-2-stablea1f6a13Preparing for 7.2.1.1 released7ab27bMerge pull request #52962 from rails/rm-releserc177acaSupport Prism for ActionView::Template.spotc82f864Revert "Skip Action View error mapping tests on 3.4+"- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Pull Request Statistics
Commits:
1
1
Files Changed:
2
2
Additions:
+10
+10
Deletions:
-12
-12
Package Dependencies
Technical Details
| ID: | 995114 |
| UUID: | 2486906316 |
| Node ID: | PR_kwDOBIkbMc6UOy3M |
| Host: | GitHub |
| Repository: | github/rubocop-github |
| Merge State: | Unknown |