Commit Graph

9284 Commits

Author SHA1 Message Date
Daniel O'Connor
10bbad3aa1 Merge pull request #2903 from Growstuff/dependabot/bundler/webdrivers-4.6.1
Bump webdrivers from 4.6.0 to 4.6.1
2021-10-06 12:52:22 +10:30
dependabot[bot]
3cbc3e5ec0 Bump webdrivers from 4.6.0 to 4.6.1
Bumps [webdrivers](https://github.com/titusfortner/webdrivers) from 4.6.0 to 4.6.1.
- [Release notes](https://github.com/titusfortner/webdrivers/releases)
- [Changelog](https://github.com/titusfortner/webdrivers/blob/master/CHANGELOG.md)
- [Commits](https://github.com/titusfortner/webdrivers/compare/v4.6.0...v4.6.1)

---
updated-dependencies:
- dependency-name: webdrivers
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 14:09:37 +00:00
Daniel O'Connor
4ec9216ee9 Merge pull request #2900 from Growstuff/dependabot/bundler/active_utils-3.3.18
Bump active_utils from 3.3.17 to 3.3.18
2021-10-06 00:38:27 +10:30
dependabot[bot]
8577ad697b Bump active_utils from 3.3.17 to 3.3.18
Bumps [active_utils](https://github.com/shopify/active_utils) from 3.3.17 to 3.3.18.
- [Release notes](https://github.com/shopify/active_utils/releases)
- [Changelog](https://github.com/Shopify/active_utils/blob/master/CHANGELOG.md)
- [Commits](https://github.com/shopify/active_utils/compare/v3.3.17...v3.3.18)

---
updated-dependencies:
- dependency-name: active_utils
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 13:39:24 +00:00
Daniel O'Connor
52e3801716 Merge pull request #2833 from Growstuff/dependabot/github_actions/actions/cache-2.1.6
Bump actions/cache from 2.1.5 to 2.1.6
2021-10-06 00:08:11 +10:30
dependabot[bot]
9dec52f4ae Bump actions/cache from 2.1.5 to 2.1.6
Bumps [actions/cache](https://github.com/actions/cache) from 2.1.5 to 2.1.6.
- [Release notes](https://github.com/actions/cache/releases)
- [Commits](https://github.com/actions/cache/compare/v2.1.5...v2.1.6)

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 13:37:06 +00:00
Daniel O'Connor
71cfd4a740 Merge pull request #2905 from Growstuff/dependabot/bundler/faker-2.19.0
Bump faker from 2.18.0 to 2.19.0
2021-10-06 00:06:52 +10:30
Daniel O'Connor
39aa65c4bb Merge pull request #2902 from Growstuff/dependabot/bundler/sidekiq-6.2.2
Bump sidekiq from 6.2.1 to 6.2.2
2021-10-06 00:06:27 +10:30
dependabot[bot]
f6e2c3469c Bump faker from 2.18.0 to 2.19.0
Bumps [faker](https://github.com/faker-ruby/faker) from 2.18.0 to 2.19.0.
- [Release notes](https://github.com/faker-ruby/faker/releases)
- [Changelog](https://github.com/faker-ruby/faker/blob/master/CHANGELOG.md)
- [Commits](https://github.com/faker-ruby/faker/compare/v2.18.0...v2.19.0)

---
updated-dependencies:
- dependency-name: faker
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 13:35:40 +00:00
dependabot[bot]
7da0c6ba2a Bump sidekiq from 6.2.1 to 6.2.2
Bumps [sidekiq](https://github.com/mperham/sidekiq) from 6.2.1 to 6.2.2.
- [Release notes](https://github.com/mperham/sidekiq/releases)
- [Changelog](https://github.com/mperham/sidekiq/blob/main/Changes.md)
- [Commits](https://github.com/mperham/sidekiq/compare/v6.2.1...v6.2.2)

---
updated-dependencies:
- dependency-name: sidekiq
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 13:35:24 +00:00
Daniel O'Connor
568d76a3e3 Merge pull request #2879 from Growstuff/snyk-fix-fc75124a418fb996ab551d820ae768f6
[Snyk] Fix for 1 vulnerabilities
2021-10-06 00:04:21 +10:30
Daniel O'Connor
a93af8b0ca Merge pull request #2860 from Growstuff/dependabot/bundler/chartkick-4.0.5
Bump chartkick from 4.0.4 to 4.0.5
2021-10-06 00:03:38 +10:30
Daniel O'Connor
3581cf0af7 Merge pull request #2891 from Growstuff/dependabot/bundler/searchkick-4.6.1
Bump searchkick from 4.4.4 to 4.6.1
2021-10-06 00:03:28 +10:30
Daniel O'Connor
dbe6bc0db5 Merge pull request #2899 from Growstuff/dependabot/bundler/rspec-rails-5.0.2
Bump rspec-rails from 5.0.1 to 5.0.2
2021-10-06 00:03:17 +10:30
Daniel O'Connor
956a3823f4 Merge branch 'dev' into snyk-fix-fc75124a418fb996ab551d820ae768f6 2021-10-05 23:42:54 +10:30
dependabot[bot]
4f3a29cfc4 Bump chartkick from 4.0.4 to 4.0.5
Bumps [chartkick](https://github.com/ankane/chartkick) from 4.0.4 to 4.0.5.
- [Release notes](https://github.com/ankane/chartkick/releases)
- [Changelog](https://github.com/ankane/chartkick/blob/master/CHANGELOG.md)
- [Commits](https://github.com/ankane/chartkick/compare/v4.0.4...v4.0.5)

---
updated-dependencies:
- dependency-name: chartkick
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 13:11:38 +00:00
dependabot[bot]
366ccb8f1d Bump rspec-rails from 5.0.1 to 5.0.2
Bumps [rspec-rails](https://github.com/rspec/rspec-rails) from 5.0.1 to 5.0.2.
- [Release notes](https://github.com/rspec/rspec-rails/releases)
- [Changelog](https://github.com/rspec/rspec-rails/blob/main/Changelog.md)
- [Commits](https://github.com/rspec/rspec-rails/compare/v5.0.1...v5.0.2)

---
updated-dependencies:
- dependency-name: rspec-rails
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 13:10:39 +00:00
dependabot[bot]
6d9751afd4 Bump searchkick from 4.4.4 to 4.6.1
Bumps [searchkick](https://github.com/ankane/searchkick) from 4.4.4 to 4.6.1.
- [Release notes](https://github.com/ankane/searchkick/releases)
- [Changelog](https://github.com/ankane/searchkick/blob/master/CHANGELOG.md)
- [Commits](https://github.com/ankane/searchkick/compare/v4.4.4...v4.6.1)

---
updated-dependencies:
- dependency-name: searchkick
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 13:10:21 +00:00
Daniel O'Connor
988158352f Merge pull request #2848 from Growstuff/dependabot/bundler/cancancan-3.3.0
Bump cancancan from 3.2.1 to 3.3.0
2021-10-05 23:39:03 +10:30
Daniel O'Connor
29d6111ac2 Merge pull request #2876 from Growstuff/dependabot/bundler/loofah-2.12.0
Bump loofah from 2.9.1 to 2.12.0
2021-10-05 23:38:42 +10:30
Daniel O'Connor
6a97e6b002 Merge pull request #2882 from Growstuff/dependabot/bundler/scout_apm-4.1.2
Bump scout_apm from 4.0.4 to 4.1.2
2021-10-05 23:38:21 +10:30
Daniel O'Connor
fa10e88c0b Merge pull request #2898 from Growstuff/dependabot/bundler/bullet-6.1.5
Bump bullet from 6.1.4 to 6.1.5
2021-10-05 23:37:46 +10:30
Daniel O'Connor
362228e1f5 Merge branch 'dev' into snyk-fix-fc75124a418fb996ab551d820ae768f6 2021-10-05 23:22:41 +10:30
Daniel O'Connor
d7a16034f9 Bump rails 2021-10-05 23:17:55 +10:30
dependabot[bot]
e20a8f5586 Bump bullet from 6.1.4 to 6.1.5
Bumps [bullet](https://github.com/flyerhzm/bullet) from 6.1.4 to 6.1.5.
- [Release notes](https://github.com/flyerhzm/bullet/releases)
- [Changelog](https://github.com/flyerhzm/bullet/blob/master/CHANGELOG.md)
- [Commits](https://github.com/flyerhzm/bullet/compare/6.1.4...6.1.5)

---
updated-dependencies:
- dependency-name: bullet
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 12:44:23 +00:00
dependabot[bot]
339db701d7 Bump loofah from 2.9.1 to 2.12.0
Bumps [loofah](https://github.com/flavorjones/loofah) from 2.9.1 to 2.12.0.
- [Release notes](https://github.com/flavorjones/loofah/releases)
- [Changelog](https://github.com/flavorjones/loofah/blob/main/CHANGELOG.md)
- [Commits](https://github.com/flavorjones/loofah/compare/v2.9.1...v2.12.0)

---
updated-dependencies:
- dependency-name: loofah
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 12:44:22 +00:00
dependabot[bot]
78291ef12d Bump scout_apm from 4.0.4 to 4.1.2
Bumps [scout_apm](https://github.com/scoutapp/scout_apm_ruby) from 4.0.4 to 4.1.2.
- [Release notes](https://github.com/scoutapp/scout_apm_ruby/releases)
- [Changelog](https://github.com/scoutapp/scout_apm_ruby/blob/master/CHANGELOG.markdown)
- [Commits](https://github.com/scoutapp/scout_apm_ruby/compare/v4.0.4...v4.1.2)

---
updated-dependencies:
- dependency-name: scout_apm
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 12:44:22 +00:00
dependabot[bot]
44b12900dd Bump cancancan from 3.2.1 to 3.3.0
Bumps [cancancan](https://github.com/CanCanCommunity/cancancan) from 3.2.1 to 3.3.0.
- [Release notes](https://github.com/CanCanCommunity/cancancan/releases)
- [Changelog](https://github.com/CanCanCommunity/cancancan/blob/develop/CHANGELOG.md)
- [Commits](https://github.com/CanCanCommunity/cancancan/compare/3.2.1...3.3.0)

---
updated-dependencies:
- dependency-name: cancancan
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 12:44:19 +00:00
Daniel O'Connor
583d394181 Merge pull request #2861 from Growstuff/dependabot/bundler/rake-13.0.6
Bump rake from 13.0.3 to 13.0.6
2021-10-05 23:13:02 +10:30
Daniel O'Connor
3dcdf9d9b7 Merge pull request #2893 from Growstuff/dependabot/github_actions/actions/setup-node-2.4.1
Bump actions/setup-node from 2.4.0 to 2.4.1
2021-10-05 23:06:21 +10:30
Daniel O'Connor
e35af823ce Merge pull request #2895 from Growstuff/dependabot/bundler/oj-3.13.8
Bump oj from 3.12.1 to 3.13.8
2021-10-05 23:06:00 +10:30
Daniel O'Connor
1e48ae8c7e Merge pull request #2885 from Growstuff/snyk-fix-ba9162e09c21a7dd37df12fd631634b0
[Snyk] Security upgrade @percy/agent from 0.3.1 to 0.28.6
2021-10-05 23:05:12 +10:30
Daniel O'Connor
0734d17af9 Merge pull request #2892 from Growstuff/dependabot/bundler/nokogiri-1.12.5
Bump nokogiri from 1.11.7 to 1.12.5
2021-10-05 23:04:37 +10:30
Daniel O'Connor
a8411a4b12 Merge branch 'dev' into snyk-fix-ba9162e09c21a7dd37df12fd631634b0 2021-10-05 22:15:48 +10:30
Daniel O'Connor
9d31c9a492 Merge branch 'dev' into dependabot/github_actions/actions/setup-node-2.4.1 2021-10-05 22:12:14 +10:30
Daniel O'Connor
dfcf608e4b Merge branch 'dev' into dependabot/bundler/oj-3.13.8 2021-10-05 22:04:41 +10:30
Daniel O'Connor
63a2027ba7 Merge branch 'dev' into dependabot/bundler/rake-13.0.6 2021-10-05 22:04:05 +10:30
Daniel O'Connor
0caa95384c Merge branch 'dev' into dependabot/bundler/nokogiri-1.12.5 2021-10-05 22:03:48 +10:30
Daniel O'Connor
667647f7cd Merge pull request #2897 from Growstuff/revert-2872-accessibilityIssues
Revert "Accessibility: Nav bar’s icon links"
2021-10-05 22:03:17 +10:30
Daniel O'Connor
e23a274ce7 Revert "Accessibility: Nav bar’s icon links" 2021-10-05 21:32:33 +10:30
dependabot[bot]
3d9e1ffab3 Bump oj from 3.12.1 to 3.13.8
Bumps [oj](https://github.com/ohler55/oj) from 3.12.1 to 3.13.8.
- [Release notes](https://github.com/ohler55/oj/releases)
- [Changelog](https://github.com/ohler55/oj/blob/develop/CHANGELOG.md)
- [Commits](https://github.com/ohler55/oj/compare/v3.12.1...v3.13.8)

---
updated-dependencies:
- dependency-name: oj
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-09-29 07:29:13 +00:00
dependabot[bot]
9e4cee9c4e Bump actions/setup-node from 2.4.0 to 2.4.1
Bumps [actions/setup-node](https://github.com/actions/setup-node) from 2.4.0 to 2.4.1.
- [Release notes](https://github.com/actions/setup-node/releases)
- [Commits](https://github.com/actions/setup-node/compare/v2.4.0...v2.4.1)

---
updated-dependencies:
- dependency-name: actions/setup-node
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-09-28 07:12:01 +00:00
dependabot[bot]
dd49b4eb7f Bump nokogiri from 1.11.7 to 1.12.5
Bumps [nokogiri](https://github.com/sparklemotion/nokogiri) from 1.11.7 to 1.12.5.
- [Release notes](https://github.com/sparklemotion/nokogiri/releases)
- [Changelog](https://github.com/sparklemotion/nokogiri/blob/main/CHANGELOG.md)
- [Commits](https://github.com/sparklemotion/nokogiri/compare/v1.11.7...v1.12.5)

---
updated-dependencies:
- dependency-name: nokogiri
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-09-27 20:32:36 +00:00
snyk-bot
e49e70d2f3 fix: package.json & yarn.lock to reduce vulnerabilities
The following vulnerabilities are fixed with an upgrade:
- https://snyk.io/vuln/SNYK-JS-AXIOS-1579269
2021-09-06 05:50:46 +00:00
snyk-bot
4053ec6d62 fix: Gemfile to reduce vulnerabilities
The following vulnerabilities are fixed with an upgrade:
- https://snyk.io/vuln/SNYK-RUBY-RAILS-1567785
2021-08-20 22:52:04 +00:00
dependabot[bot]
0f7e3738b6 Bump rake from 13.0.3 to 13.0.6
Bumps [rake](https://github.com/ruby/rake) from 13.0.3 to 13.0.6.
- [Release notes](https://github.com/ruby/rake/releases)
- [Changelog](https://github.com/ruby/rake/blob/master/History.rdoc)
- [Commits](https://github.com/ruby/rake/compare/v13.0.3...v13.0.6)

---
updated-dependencies:
- dependency-name: rake
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-08-09 08:24:00 +00:00
Brenda Wallace
c8b547050d Merge pull request #2827 from Growstuff/dependabot/bundler/jsonapi-resources-0.10.5
Bump jsonapi-resources from 0.10.4 to 0.10.5
2021-08-09 19:29:46 +12:00
Brenda Wallace
e36de8afe5 Merge pull request #2870 from Growstuff/dependabot/github_actions/actions/setup-node-2.4.0
Bump actions/setup-node from 2.2.0 to 2.4.0
2021-08-09 19:29:19 +12:00
Brenda Wallace
d8601a6682 Merge pull request #2872 from le-jun/accessibilityIssues
Accessibility: Nav bar’s icon links
2021-08-09 19:28:54 +12:00
LeJun
afbde883d7 Created alt text
Missing alt text for nav bar icons
2021-08-06 19:18:21 +02:00