Skip to content

Vulnerability on nokogiri #581

Description

@GTrebaol

Hello,

I'm using slather (latest released version) and noticed that it pulls in nokogiri 1.18.6 in my environment. That nokogiri version is affected by the advisory GHSA-353f-x4gh-cqq8

$ bundle info nokogiri

Would it be possible to update this dependency on the fixed 1.18.9 version on your side?

Thanks a lot, have a great day.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions