Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update mechanize requirement from >= 2.8.5, < 2.10.0 to >= 2.8.5, < 2.11.0 #70

Merged

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jan 22, 2024

Updates the requirements on mechanize to permit the latest version.

Release notes

Sourced from mechanize's releases.

2.10.0 / 2024-01-22

  • Add nkf and base64 as explicit dependencies, since they are being unbundled in Ruby 3.4. (#634) @​flavorjones
Changelog

Sourced from mechanize's changelog.

2.10.0 / 2024-01-22

  • Add nkf and base64 as explicit dependencies, since they are being unbundled in Ruby 3.4. (#634) @​flavorjones

2.9.2 / 2024-01-15

2.9.1 / 2023-04-17

Update

  • Updated User-Agent strings to represent modern browser versions. (#612) Thank you, @​takatea!

2.9.0 / 2023-04-07

Requirements

  • Mechanize now requires Ruby 2.6 or newer.

Improvement

  • Mechanize can now parse frozen strings. (#610)

2.8.5 / 2022-06-09

Security

Fixes low-severity CVE-2022-31033, "Authorization header leak on port redirect." See GHSA-64qm-hrgp-pgr9 for more details.

2.8.4 / 2022-01-17

Fix

  • Mechanize::CookieJar#load calls Psych.safe_load when using Psych >= 3.1

2.8.3 / 2021-11-11

Update

  • Update the "Linux Firefox" user agent string to rev94 (#587) Thank you, @​ncs1!

... (truncated)

Commits
  • 8c47e35 version bump to v2.10.0
  • 460e70d Merge pull request #634 from sparklemotion/flavorjones-dep-nkf
  • acb36b8 ci: add truffleruby (stable) and jruby-head
  • 9f85f2d dep: ruby 3.4 unbundled gems
  • 553f6c1 version bump to v2.9.2
  • f75af0a Merge pull request #632 from takatea/update-example-latest_user_agents
  • 03540ab Merge pull request #631 from p-linnane/fix-various-typos
  • 34ccbd6 doc: update docstring for AGENT_ALIASES and remove todo comment
  • 32c74ee update user agent strings for agent aliases
  • baae66d feat: output ordered user agents
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

@codecov-commenter
Copy link

codecov-commenter commented Jan 22, 2024

Codecov Report

All modified and coverable lines are covered by tests ✅

Comparison is base (ad93106) 91.95% compared to head (4847f73) 91.95%.

❗ Your organization needs to install the Codecov GitHub app to enable full functionality.

Additional details and impacted files
@@           Coverage Diff           @@
##           master      #70   +/-   ##
=======================================
  Coverage   91.95%   91.95%           
=======================================
  Files           7        7           
  Lines         199      199           
=======================================
  Hits          183      183           
  Misses         16       16           

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

….11.0

Updates the requirements on [mechanize](https://github.com/sparklemotion/mechanize) to permit the latest version.
- [Release notes](https://github.com/sparklemotion/mechanize/releases)
- [Changelog](https://github.com/sparklemotion/mechanize/blob/main/CHANGELOG.md)
- [Commits](sparklemotion/mechanize@v2.8.5...v2.10.0)

---
updated-dependencies:
- dependency-name: mechanize
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot force-pushed the dependabot/bundler/mechanize-gte-2.8.5-and-lt-2.11.0 branch from efa1615 to 4847f73 Compare February 7, 2024 12:21
@rochefort rochefort merged commit 96d1321 into master Feb 7, 2024
6 checks passed
@rochefort rochefort deleted the dependabot/bundler/mechanize-gte-2.8.5-and-lt-2.11.0 branch February 7, 2024 12:26
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants