Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Security] Upgrade rubocop child dependencies #931

Merged
merged 1 commit into from
Sep 20, 2024

Conversation

metavida
Copy link
Contributor

@metavida metavida commented Sep 9, 2024

What does this PR do?

This PR updates all rubocop child dependencies via bundle update rubocop

Motivation

For my purposes, updating rexml to 3.3.7 from 3.2.5 was especially important because it resolves a number of security vulnerabilities.

Additional Notes

I decided against trying to upgrade rubocop itself to keep the potential impact of this PR as small as possible. There are numerous 0.9X.X releases available that might be relatively low impact to apply if you want to try: https://github.com/rubocop/rubocop/blob/master/CHANGELOG.md#0931-2020-10-12

This specifically updates rexml to 3.3.7 from 3.2.5 which resolves a number of security vulnerabilities.
@metavida metavida requested a review from a team as a code owner September 9, 2024 17:53
@metavida metavida changed the title Upgrade rubocop child dependencies [Security] Upgrade rubocop child dependencies Sep 9, 2024
Copy link

@chouquette chouquette left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM, thanks for your contribution!

@chouquette chouquette merged commit d31d394 into DataDog:main Sep 20, 2024
13 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants