Skip to content

chore: bump deps in Gemfile.lock and Podifle.lock files#1360

Merged
jbroma merged 1 commit intomainfrom
codex/fix-gemfile-lock-security-alerts
Mar 5, 2026
Merged

chore: bump deps in Gemfile.lock and Podifle.lock files#1360
jbroma merged 1 commit intomainfrom
codex/fix-gemfile-lock-security-alerts

Conversation

@jbroma
Copy link
Member

@jbroma jbroma commented Mar 5, 2026

Summary

  • update rexml in tester app Gemfile.lock files to 3.4.4 to satisfy Dependabot security patch requirements
  • update xcodeproj to 1.25.1 so patched rexml versions are resolvable
  • include regenerated iOS Podfile.lock files for tester apps

Files changed

  • apps/tester-app/Gemfile.lock
  • apps/tester-federation/Gemfile.lock
  • apps/tester-federation-v2/Gemfile.lock
  • apps/tester-app/ios/Podfile.lock
  • apps/tester-federation/ios/Podfile.lock
  • apps/tester-federation-v2/ios/Podfile.lock

Verification

  • confirmed all three Gemfile.lock files now resolve rexml (3.4.4)
  • re-queried Dependabot alerts for Gemfile.lock manifests (alerts remain open until this PR is merged into default branch)

@vercel
Copy link

vercel bot commented Mar 5, 2026

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Actions Updated (UTC)
repack-website Ready Ready Preview, Comment Mar 5, 2026 1:57pm

Request Review

@changeset-bot
Copy link

changeset-bot bot commented Mar 5, 2026

⚠️ No Changeset found

Latest commit: acf89b2

Merging this PR will not cause a version bump for any packages. If these changes should not result in a new version, you're good to go. If these changes should result in a version bump, you need to add a changeset.

This PR includes no changesets

When changesets are added to this PR, you'll see the packages that this PR includes changesets for and the associated semver types

Click here to learn what changesets are, and how to add one.

Click here if you're a maintainer who wants to add a changeset to this PR

@jbroma jbroma changed the title build: update Ruby and iOS lockfiles for rexml security fixes chore: bump deps in Gemfile.lock and Podifle.lock files Mar 5, 2026
@jbroma jbroma merged commit afd8ef6 into main Mar 5, 2026
5 checks passed
@jbroma jbroma deleted the codex/fix-gemfile-lock-security-alerts branch March 5, 2026 13:58
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant