Commit Graph

9300 Commits

Author SHA1 Message Date
snyk-bot
579e8683ec fix: upgrade mdbootstrap from 4.19.2 to 4.20.0
Snyk has created this PR to upgrade mdbootstrap from 4.19.2 to 4.20.0.

See this package in npm:


See this project in Snyk:
https://app.snyk.io/org/br3nda/project/ef7d5298-540a-4e7a-8b3c-ffa7aebff03c?utm_source=github&utm_medium=referral&page=upgrade-pr
2021-10-07 06:46:23 +00:00
Daniel O'Connor
2ac3605173 Merge pull request #2837 from Growstuff/snyk-upgrade-c69c15ef11625d15424539ca097b443c
[Snyk] Upgrade mdbootstrap from 4.12.0 to 4.19.2
2021-10-07 01:13:00 +10:30
Daniel O'Connor
19e10788d2 Merge branch 'dev' into snyk-upgrade-c69c15ef11625d15424539ca097b443c 2021-10-06 23:02:03 +10:30
Daniel O'Connor
9f0a121e7f Merge pull request #2908 from Growstuff/dependabot/bundler/faraday-1.8.0
Bump faraday from 1.5.1 to 1.8.0
2021-10-06 22:53:27 +10:30
dependabot[bot]
30fc6f2e5b Bump faraday from 1.5.1 to 1.8.0
Bumps [faraday](https://github.com/lostisland/faraday) from 1.5.1 to 1.8.0.
- [Release notes](https://github.com/lostisland/faraday/releases)
- [Changelog](https://github.com/lostisland/faraday/blob/main/CHANGELOG.md)
- [Commits](https://github.com/lostisland/faraday/compare/v1.5.1...v1.8.0)

---
updated-dependencies:
- dependency-name: faraday
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-06 09:15:16 +00:00
Daniel O'Connor
ac0ffd65e1 Merge pull request #2907 from Growstuff/dependabot/bundler/haml-5.2.2
Bump haml from 5.2.1 to 5.2.2
2021-10-06 19:43:22 +10:30
Daniel O'Connor
f773324c5c Merge pull request #2906 from Growstuff/dependabot/bundler/will_paginate-3.3.1
Bump will_paginate from 3.3.0 to 3.3.1
2021-10-06 19:42:48 +10:30
Daniel O'Connor
f49b69a855 Merge pull request #2901 from Growstuff/dependabot/bundler/listen-3.7.0
Bump listen from 3.5.1 to 3.7.0
2021-10-06 19:42:27 +10:30
Daniel O'Connor
e2fb67efac Merge pull request #2909 from Growstuff/dependabot/bundler/puma-5.5.0
Bump puma from 5.3.2 to 5.5.0
2021-10-06 19:42:03 +10:30
Daniel O'Connor
40f6515379 Merge pull request #2904 from Growstuff/dependabot/bundler/faraday_middleware-1.1.0
Bump faraday_middleware from 1.0.0 to 1.1.0
2021-10-06 19:41:45 +10:30
dependabot[bot]
dca7bbc4a5 Bump puma from 5.3.2 to 5.5.0
Bumps [puma](https://github.com/puma/puma) from 5.3.2 to 5.5.0.
- [Release notes](https://github.com/puma/puma/releases)
- [Changelog](https://github.com/puma/puma/blob/master/History.md)
- [Commits](https://github.com/puma/puma/compare/v5.3.2...v5.5.0)

---
updated-dependencies:
- dependency-name: puma
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-06 07:16:13 +00:00
dependabot[bot]
006eb9e7f0 Bump haml from 5.2.1 to 5.2.2
Bumps [haml](https://github.com/haml/haml) from 5.2.1 to 5.2.2.
- [Release notes](https://github.com/haml/haml/releases)
- [Changelog](https://github.com/haml/haml/blob/main/CHANGELOG.md)
- [Commits](https://github.com/haml/haml/compare/5.2.1...v5.2.2)

---
updated-dependencies:
- dependency-name: haml
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-06 07:09:51 +00:00
dependabot[bot]
a771414048 Bump will_paginate from 3.3.0 to 3.3.1
Bumps [will_paginate](https://github.com/mislav/will_paginate) from 3.3.0 to 3.3.1.
- [Release notes](https://github.com/mislav/will_paginate/releases)
- [Commits](https://github.com/mislav/will_paginate/compare/v3.3.0...v3.3.1)

---
updated-dependencies:
- dependency-name: will_paginate
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-06 07:02:46 +00:00
dependabot[bot]
b106f91c17 Bump faraday_middleware from 1.0.0 to 1.1.0
Bumps [faraday_middleware](https://github.com/lostisland/faraday_middleware) from 1.0.0 to 1.1.0.
- [Release notes](https://github.com/lostisland/faraday_middleware/releases)
- [Commits](https://github.com/lostisland/faraday_middleware/compare/v1.0.0...v1.1.0)

---
updated-dependencies:
- dependency-name: faraday_middleware
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-06 02:24:14 +00:00
dependabot[bot]
6c72ab8d09 Bump listen from 3.5.1 to 3.7.0
Bumps [listen](https://github.com/guard/listen) from 3.5.1 to 3.7.0.
- [Release notes](https://github.com/guard/listen/releases)
- [Commits](https://github.com/guard/listen/compare/v3.5.1...v3.7.0)

---
updated-dependencies:
- dependency-name: listen
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-06 02:23:50 +00:00
Daniel O'Connor
10bbad3aa1 Merge pull request #2903 from Growstuff/dependabot/bundler/webdrivers-4.6.1
Bump webdrivers from 4.6.0 to 4.6.1
2021-10-06 12:52:22 +10:30
dependabot[bot]
3cbc3e5ec0 Bump webdrivers from 4.6.0 to 4.6.1
Bumps [webdrivers](https://github.com/titusfortner/webdrivers) from 4.6.0 to 4.6.1.
- [Release notes](https://github.com/titusfortner/webdrivers/releases)
- [Changelog](https://github.com/titusfortner/webdrivers/blob/master/CHANGELOG.md)
- [Commits](https://github.com/titusfortner/webdrivers/compare/v4.6.0...v4.6.1)

---
updated-dependencies:
- dependency-name: webdrivers
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 14:09:37 +00:00
Daniel O'Connor
4ec9216ee9 Merge pull request #2900 from Growstuff/dependabot/bundler/active_utils-3.3.18
Bump active_utils from 3.3.17 to 3.3.18
2021-10-06 00:38:27 +10:30
dependabot[bot]
8577ad697b Bump active_utils from 3.3.17 to 3.3.18
Bumps [active_utils](https://github.com/shopify/active_utils) from 3.3.17 to 3.3.18.
- [Release notes](https://github.com/shopify/active_utils/releases)
- [Changelog](https://github.com/Shopify/active_utils/blob/master/CHANGELOG.md)
- [Commits](https://github.com/shopify/active_utils/compare/v3.3.17...v3.3.18)

---
updated-dependencies:
- dependency-name: active_utils
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 13:39:24 +00:00
Daniel O'Connor
52e3801716 Merge pull request #2833 from Growstuff/dependabot/github_actions/actions/cache-2.1.6
Bump actions/cache from 2.1.5 to 2.1.6
2021-10-06 00:08:11 +10:30
dependabot[bot]
9dec52f4ae Bump actions/cache from 2.1.5 to 2.1.6
Bumps [actions/cache](https://github.com/actions/cache) from 2.1.5 to 2.1.6.
- [Release notes](https://github.com/actions/cache/releases)
- [Commits](https://github.com/actions/cache/compare/v2.1.5...v2.1.6)

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 13:37:06 +00:00
Daniel O'Connor
71cfd4a740 Merge pull request #2905 from Growstuff/dependabot/bundler/faker-2.19.0
Bump faker from 2.18.0 to 2.19.0
2021-10-06 00:06:52 +10:30
Daniel O'Connor
39aa65c4bb Merge pull request #2902 from Growstuff/dependabot/bundler/sidekiq-6.2.2
Bump sidekiq from 6.2.1 to 6.2.2
2021-10-06 00:06:27 +10:30
dependabot[bot]
f6e2c3469c Bump faker from 2.18.0 to 2.19.0
Bumps [faker](https://github.com/faker-ruby/faker) from 2.18.0 to 2.19.0.
- [Release notes](https://github.com/faker-ruby/faker/releases)
- [Changelog](https://github.com/faker-ruby/faker/blob/master/CHANGELOG.md)
- [Commits](https://github.com/faker-ruby/faker/compare/v2.18.0...v2.19.0)

---
updated-dependencies:
- dependency-name: faker
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 13:35:40 +00:00
dependabot[bot]
7da0c6ba2a Bump sidekiq from 6.2.1 to 6.2.2
Bumps [sidekiq](https://github.com/mperham/sidekiq) from 6.2.1 to 6.2.2.
- [Release notes](https://github.com/mperham/sidekiq/releases)
- [Changelog](https://github.com/mperham/sidekiq/blob/main/Changes.md)
- [Commits](https://github.com/mperham/sidekiq/compare/v6.2.1...v6.2.2)

---
updated-dependencies:
- dependency-name: sidekiq
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 13:35:24 +00:00
Daniel O'Connor
568d76a3e3 Merge pull request #2879 from Growstuff/snyk-fix-fc75124a418fb996ab551d820ae768f6
[Snyk] Fix for 1 vulnerabilities
2021-10-06 00:04:21 +10:30
Daniel O'Connor
a93af8b0ca Merge pull request #2860 from Growstuff/dependabot/bundler/chartkick-4.0.5
Bump chartkick from 4.0.4 to 4.0.5
2021-10-06 00:03:38 +10:30
Daniel O'Connor
3581cf0af7 Merge pull request #2891 from Growstuff/dependabot/bundler/searchkick-4.6.1
Bump searchkick from 4.4.4 to 4.6.1
2021-10-06 00:03:28 +10:30
Daniel O'Connor
dbe6bc0db5 Merge pull request #2899 from Growstuff/dependabot/bundler/rspec-rails-5.0.2
Bump rspec-rails from 5.0.1 to 5.0.2
2021-10-06 00:03:17 +10:30
Daniel O'Connor
956a3823f4 Merge branch 'dev' into snyk-fix-fc75124a418fb996ab551d820ae768f6 2021-10-05 23:42:54 +10:30
dependabot[bot]
4f3a29cfc4 Bump chartkick from 4.0.4 to 4.0.5
Bumps [chartkick](https://github.com/ankane/chartkick) from 4.0.4 to 4.0.5.
- [Release notes](https://github.com/ankane/chartkick/releases)
- [Changelog](https://github.com/ankane/chartkick/blob/master/CHANGELOG.md)
- [Commits](https://github.com/ankane/chartkick/compare/v4.0.4...v4.0.5)

---
updated-dependencies:
- dependency-name: chartkick
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 13:11:38 +00:00
dependabot[bot]
366ccb8f1d Bump rspec-rails from 5.0.1 to 5.0.2
Bumps [rspec-rails](https://github.com/rspec/rspec-rails) from 5.0.1 to 5.0.2.
- [Release notes](https://github.com/rspec/rspec-rails/releases)
- [Changelog](https://github.com/rspec/rspec-rails/blob/main/Changelog.md)
- [Commits](https://github.com/rspec/rspec-rails/compare/v5.0.1...v5.0.2)

---
updated-dependencies:
- dependency-name: rspec-rails
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 13:10:39 +00:00
dependabot[bot]
6d9751afd4 Bump searchkick from 4.4.4 to 4.6.1
Bumps [searchkick](https://github.com/ankane/searchkick) from 4.4.4 to 4.6.1.
- [Release notes](https://github.com/ankane/searchkick/releases)
- [Changelog](https://github.com/ankane/searchkick/blob/master/CHANGELOG.md)
- [Commits](https://github.com/ankane/searchkick/compare/v4.4.4...v4.6.1)

---
updated-dependencies:
- dependency-name: searchkick
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 13:10:21 +00:00
Daniel O'Connor
988158352f Merge pull request #2848 from Growstuff/dependabot/bundler/cancancan-3.3.0
Bump cancancan from 3.2.1 to 3.3.0
2021-10-05 23:39:03 +10:30
Daniel O'Connor
29d6111ac2 Merge pull request #2876 from Growstuff/dependabot/bundler/loofah-2.12.0
Bump loofah from 2.9.1 to 2.12.0
2021-10-05 23:38:42 +10:30
Daniel O'Connor
6a97e6b002 Merge pull request #2882 from Growstuff/dependabot/bundler/scout_apm-4.1.2
Bump scout_apm from 4.0.4 to 4.1.2
2021-10-05 23:38:21 +10:30
Daniel O'Connor
fa10e88c0b Merge pull request #2898 from Growstuff/dependabot/bundler/bullet-6.1.5
Bump bullet from 6.1.4 to 6.1.5
2021-10-05 23:37:46 +10:30
Daniel O'Connor
362228e1f5 Merge branch 'dev' into snyk-fix-fc75124a418fb996ab551d820ae768f6 2021-10-05 23:22:41 +10:30
Daniel O'Connor
d7a16034f9 Bump rails 2021-10-05 23:17:55 +10:30
dependabot[bot]
e20a8f5586 Bump bullet from 6.1.4 to 6.1.5
Bumps [bullet](https://github.com/flyerhzm/bullet) from 6.1.4 to 6.1.5.
- [Release notes](https://github.com/flyerhzm/bullet/releases)
- [Changelog](https://github.com/flyerhzm/bullet/blob/master/CHANGELOG.md)
- [Commits](https://github.com/flyerhzm/bullet/compare/6.1.4...6.1.5)

---
updated-dependencies:
- dependency-name: bullet
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 12:44:23 +00:00
dependabot[bot]
339db701d7 Bump loofah from 2.9.1 to 2.12.0
Bumps [loofah](https://github.com/flavorjones/loofah) from 2.9.1 to 2.12.0.
- [Release notes](https://github.com/flavorjones/loofah/releases)
- [Changelog](https://github.com/flavorjones/loofah/blob/main/CHANGELOG.md)
- [Commits](https://github.com/flavorjones/loofah/compare/v2.9.1...v2.12.0)

---
updated-dependencies:
- dependency-name: loofah
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 12:44:22 +00:00
dependabot[bot]
78291ef12d Bump scout_apm from 4.0.4 to 4.1.2
Bumps [scout_apm](https://github.com/scoutapp/scout_apm_ruby) from 4.0.4 to 4.1.2.
- [Release notes](https://github.com/scoutapp/scout_apm_ruby/releases)
- [Changelog](https://github.com/scoutapp/scout_apm_ruby/blob/master/CHANGELOG.markdown)
- [Commits](https://github.com/scoutapp/scout_apm_ruby/compare/v4.0.4...v4.1.2)

---
updated-dependencies:
- dependency-name: scout_apm
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 12:44:22 +00:00
dependabot[bot]
44b12900dd Bump cancancan from 3.2.1 to 3.3.0
Bumps [cancancan](https://github.com/CanCanCommunity/cancancan) from 3.2.1 to 3.3.0.
- [Release notes](https://github.com/CanCanCommunity/cancancan/releases)
- [Changelog](https://github.com/CanCanCommunity/cancancan/blob/develop/CHANGELOG.md)
- [Commits](https://github.com/CanCanCommunity/cancancan/compare/3.2.1...3.3.0)

---
updated-dependencies:
- dependency-name: cancancan
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2021-10-05 12:44:19 +00:00
Daniel O'Connor
583d394181 Merge pull request #2861 from Growstuff/dependabot/bundler/rake-13.0.6
Bump rake from 13.0.3 to 13.0.6
2021-10-05 23:13:02 +10:30
Daniel O'Connor
3dcdf9d9b7 Merge pull request #2893 from Growstuff/dependabot/github_actions/actions/setup-node-2.4.1
Bump actions/setup-node from 2.4.0 to 2.4.1
2021-10-05 23:06:21 +10:30
Daniel O'Connor
e35af823ce Merge pull request #2895 from Growstuff/dependabot/bundler/oj-3.13.8
Bump oj from 3.12.1 to 3.13.8
2021-10-05 23:06:00 +10:30
Daniel O'Connor
1e48ae8c7e Merge pull request #2885 from Growstuff/snyk-fix-ba9162e09c21a7dd37df12fd631634b0
[Snyk] Security upgrade @percy/agent from 0.3.1 to 0.28.6
2021-10-05 23:05:12 +10:30
Daniel O'Connor
0734d17af9 Merge pull request #2892 from Growstuff/dependabot/bundler/nokogiri-1.12.5
Bump nokogiri from 1.11.7 to 1.12.5
2021-10-05 23:04:37 +10:30
Daniel O'Connor
a8411a4b12 Merge branch 'dev' into snyk-fix-ba9162e09c21a7dd37df12fd631634b0 2021-10-05 22:15:48 +10:30
Daniel O'Connor
9d31c9a492 Merge branch 'dev' into dependabot/github_actions/actions/setup-node-2.4.1 2021-10-05 22:12:14 +10:30