Skip to content

Bump the minor-and-patch group with 4 updates #225

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Merged
merged 2 commits into from
Jan 9, 2024

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jan 9, 2024

Bumps the minor-and-patch group with 4 updates: puma, rubocop-minitest, sorbet-static-and-runtime and tapioca.

Updates puma from 6.4.0 to 6.4.2

Release notes

Sourced from puma's releases.

6.4.1

  • Bugfixes

    • DSL#warn_if_in_single_mode - fixup when workers set via CLI (#3256)
    • Fix idle-timeout not working in cluster mode (#3235, #3228, #3282, #3283)
    • Fix worker 0 timing out during phased restart (#3225, #2786)
    • context_builder.rb - require openssl if verify_mode != 'none' (#3179)
    • Make puma cluster process suitable as PID 1 (#3255)
    • Improve Puma::NullIO consistency with real IO (#3276)
    • extconf.rb - fixup to detect openssl info in Ruby build (#3271, #3266)
    • MiniSSL.java - set serialVersionUID, fix RaiseException deprecation (#3270)
    • dsl.rb - fix warn_if_in_single_mode when WEB_CONCURRENCY is set (#3265, #3264)
  • Maintenance

    • LOTS of test refactoring to make tests more stable and easier to write - thanks to @​MSP-Greg!
    • Fix bug in tests re: TestPuma::HOST4 (#3254)
    • Dockerfile for minimal repros: use Ruby 3.2, expect bundler installed (#3245)
    • fix define_method calls, use Symbol parameter instead of String (#3293)
  • Docs

    • README.md - add the puma-acme plugin (#3301)
    • Remove --keep-file-descriptors flag from systemd docs (#3248)
    • Note symlink mechanism in restart documentation for hot restart (#3298)
Changelog

Sourced from puma's changelog.

6.4.2 / 2024-01-08

  • Security
    • Limit the size of chunk extensions. Without this limit, an attacker could cause unbounded resource (CPU, network bandwidth) consumption. (GHSA-c2f4-cvqm-65w2)

6.4.1 / 2024-01-03

  • Bugfixes

    • DSL#warn_if_in_single_mode - fixup when workers set via CLI (#3256)
    • Fix idle-timeout not working in cluster mode (#3235, #3228, #3282, #3283)
    • Fix worker 0 timing out during phased restart (#3225, #2786)
    • context_builder.rb - require openssl if verify_mode != 'none' (#3179)
    • Make puma cluster process suitable as PID 1 (#3255)
    • Improve Puma::NullIO consistency with real IO (#3276)
    • extconf.rb - fixup to detect openssl info in Ruby build (#3271, #3266)
    • MiniSSL.java - set serialVersionUID, fix RaiseException deprecation (#3270)
    • dsl.rb - fix warn_if_in_single_mode when WEB_CONCURRENCY is set (#3265, #3264)
  • Maintenance

    • LOTS of test refactoring to make tests more stable and easier to write - thanks to @​MSP-Greg!
    • Fix bug in tests re: TestPuma::HOST4 (#3254)
    • Dockerfile for minimal repros: use Ruby 3.2, expect bundler installed (#3245)
    • fix define_method calls, use Symbol parameter instead of String (#3293)
  • Docs

    • README.md - add the puma-acme plugin (#3301)
    • Remove --keep-file-descriptors flag from systemd docs (#3248)
    • Note symlink mechanism in restart documentation for hot restart (#3298)
Commits

Updates rubocop-minitest from 0.34.3 to 0.34.4

Release notes

Sourced from rubocop-minitest's releases.

RuboCop Minitest 0.34.4

Bug fixes

  • #292: Ensure all kinds of assignments are correctly handled when counting assertions. (@​G-Rath)
Changelog

Sourced from rubocop-minitest's changelog.

0.34.4 (2024-01-09)

Bug fixes

  • #292: Ensure all kinds of assignments are correctly handled when counting assertions. ([@​G-Rath][])
Commits
  • 2124638 Cut 0.34.4
  • 188a281 Update Changelog
  • f063979 Add missing private for Minitest/NonExecutableTestMethod
  • 1cca1e0 Merge pull request #293 from G-Rath/check-for-expression
  • 916ffbc [Fix #292] ensure all kinds of assignments are correctly handled when countin...
  • 9a7a882 Merge pull request #296 from G-Rath/fix-jruby-ci
  • 0822163 Don't use test-queue to run tests on JRuby or Windows because they don't su...
  • f47bcbd Merge pull request #294 from G-Rath/error-on-tests-failure
  • 03c86d3 Don't error on known test failures
  • 8f8f978 Raise an exception if tests or changelog generation fail
  • Additional commits viewable in compare view

Updates sorbet-static-and-runtime from 0.5.11164 to 0.5.11180

Release notes

Sourced from sorbet-static-and-runtime's releases.

sorbet 0.5.11179.20240108162734-66745f864

To use Sorbet add this line to your Gemfile:

gem 'sorbet', '0.5.11179', :group => :development
gem 'sorbet-runtime', '0.5.11179'

sorbet 0.5.11178.20240105114909-3cf7d3fa8

To use Sorbet add this line to your Gemfile:

gem 'sorbet', '0.5.11178', :group => :development
gem 'sorbet-runtime', '0.5.11178'

sorbet 0.5.11177.20240105103412-15aa5874a

To use Sorbet add this line to your Gemfile:

gem 'sorbet', '0.5.11177', :group => :development
gem 'sorbet-runtime', '0.5.11177'

sorbet 0.5.11176.20240104122727-0f8f23c4d

To use Sorbet add this line to your Gemfile:

gem 'sorbet', '0.5.11176', :group => :development
gem 'sorbet-runtime', '0.5.11176'

sorbet 0.5.11175.20240103143002-ddd14d633

To use Sorbet add this line to your Gemfile:

gem 'sorbet', '0.5.11175', :group => :development
gem 'sorbet-runtime', '0.5.11175'

sorbet 0.5.11174.20240103134548-3b18f876d

To use Sorbet add this line to your Gemfile:

gem 'sorbet', '0.5.11174', :group => :development
gem 'sorbet-runtime', '0.5.11174'

sorbet 0.5.11173.20240103104327-ee31a06a5

To use Sorbet add this line to your Gemfile:

gem 'sorbet', '0.5.11173', :group => :development
gem 'sorbet-runtime', '0.5.11173'

sorbet 0.5.11172.20240103103218-2016d442b

... (truncated)

Commits

Updates tapioca from 0.11.14 to 0.11.15

Release notes

Sourced from tapioca's releases.

v0.11.15

What's Changed

🐛 Bug Fixes

🛠 Other Changes

New Contributors

Full Changelog: Shopify/tapioca@v0.11.14...v0.11.15

Commits
  • ba09c1f Bump version to v0.11.15
  • 66cb87d Merge pull request #1750 from Shopify/vs/fix_hash_patch
  • 5cc44d9 Remove fixed hash patch
  • 8b40bbf Merge pull request #1715 from Shopify/jessiel-hacke/support-custom-active-mod...
  • cd1080b Merge pull request #1742 from Shopify/uk-bump-to-latest-rails
  • b19374d Start loading Rails defaults in dummy app for loading ActiveStorage
  • 4a83ad8 Fix deprecation of position parameters to serialize
  • 0526ddd Initialize AR models by calling define_attribute_methods on them first
  • e15d12c Fix loading of ActiveStorage in tests
  • 27e7470 Fix a few tests causing problems on Rails 7.1
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the minor-and-patch group with 4 updates: [puma](https://github.com/puma/puma), [rubocop-minitest](https://github.com/rubocop/rubocop-minitest), [sorbet-static-and-runtime](https://github.com/sorbet/sorbet) and [tapioca](https://github.com/Shopify/tapioca).


Updates `puma` from 6.4.0 to 6.4.2
- [Release notes](https://github.com/puma/puma/releases)
- [Changelog](https://github.com/puma/puma/blob/master/History.md)
- [Commits](puma/puma@v6.4.0...v6.4.2)

Updates `rubocop-minitest` from 0.34.3 to 0.34.4
- [Release notes](https://github.com/rubocop/rubocop-minitest/releases)
- [Changelog](https://github.com/rubocop/rubocop-minitest/blob/master/CHANGELOG.md)
- [Commits](rubocop/rubocop-minitest@v0.34.3...v0.34.4)

Updates `sorbet-static-and-runtime` from 0.5.11164 to 0.5.11180
- [Release notes](https://github.com/sorbet/sorbet/releases)
- [Commits](https://github.com/sorbet/sorbet/commits)

Updates `tapioca` from 0.11.14 to 0.11.15
- [Release notes](https://github.com/Shopify/tapioca/releases)
- [Commits](Shopify/tapioca@v0.11.14...v0.11.15)

---
updated-dependencies:
- dependency-name: puma
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: minor-and-patch
- dependency-name: rubocop-minitest
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: minor-and-patch
- dependency-name: sorbet-static-and-runtime
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: minor-and-patch
- dependency-name: tapioca
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: minor-and-patch
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot requested a review from a team as a code owner January 9, 2024 20:21
@dependabot dependabot bot requested review from egiurleo and KaanOzkan January 9, 2024 20:21
@dependabot dependabot bot added dependencies Pull requests that update a dependency file ruby labels Jan 9, 2024
@github-actions github-actions bot enabled auto-merge January 9, 2024 20:21
@github-actions github-actions bot merged commit 27009dd into main Jan 9, 2024
@github-actions github-actions bot deleted the dependabot/bundler/minor-and-patch-e79a546252 branch January 9, 2024 20:53
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file ruby
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant