Skip to content

chore(deps): update dependency rdoc to v6 [security]#37

Open
sc-renovate[bot] wants to merge 1 commit into
masterfrom
renovate/rubygems-rdoc-vulnerability
Open

chore(deps): update dependency rdoc to v6 [security]#37
sc-renovate[bot] wants to merge 1 commit into
masterfrom
renovate/rubygems-rdoc-vulnerability

Conversation

@sc-renovate
Copy link
Copy Markdown

@sc-renovate sc-renovate Bot commented Jun 1, 2026

This PR contains the following updates:

Package Change Age Confidence
rdoc (source, changelog) "~> 4.1.1""~> 6.1.0" age confidence

GitHub Vulnerability Alerts

CVE-2021-31799

In RDoc 3.11 through 6.x before 6.3.1, as distributed with Ruby through 3.0.1, it is possible to execute arbitrary code via | and tags in a filename.

Severity
  • CVSS Score: 7.0 / 10 (High)
  • Vector String: CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Release Notes

ruby/rdoc (rdoc)

v6.1.2.1

Compare Source

Full Changelog: ruby/rdoc@v6.1.2...v6.1.2.1

v6.1.2

Compare Source

Full Changelog: ruby/rdoc@v6.1.1...v6.1.2

v6.1.1

Compare Source

What's Changed

  • Correction to include regexp_handling in list of loaded files by @​poloka in #​682

New Contributors

Full Changelog: ruby/rdoc@v6.1.0...v6.1.1

v6.1.0

Compare Source

What's Changed

New Contributors

Full Changelog: ruby/rdoc@v6.0.4...v6.1.0

v6.0.4

Compare Source

What's Changed

Full Changelog: ruby/rdoc@v6.0.3...v6.0.4

v6.0.3

Compare Source

What's Changed

Full Changelog: ruby/rdoc@v6.0.2...v6.0.3

v6.0.2

Compare Source

What's Changed

New Contributors

Full Changelog: ruby/rdoc@v6.0.1...v6.0.2

v6.0.1.1

Compare Source

Full Changelog: ruby/rdoc@v6.0.1...v6.0.1.1

v6.0.1

Compare Source

What's Changed

Full Changelog: ruby/rdoc@v6.0.0...v6.0.1

v6.0.0

Compare Source

What's Changed

New Contributors

Full Changelog: ruby/rdoc@v5.1.0...v6.0.0

v5.1.0

Compare Source

What's Changed

New Contributors

Full Changelog: ruby/rdoc@v5.0.0...v5.1.0

v5.0.1

Compare Source

Full Changelog: ruby/rdoc@v5.0.0...v5.0.1

v5.0.0

Compare Source

What's Changed

New Contributors

Full Changelog: ruby/rdoc@v4.2.2...v5.0.0

v4.3.0

Compare Source

Full Changelog: ruby/rdoc@v4.2.2...v4.3.0

v4.2.2

Compare Source

Full Changelog: ruby/rdoc@v4.2.1...v4.2.2

v4.2.1

Compare Source

Full Changelog: ruby/rdoc@v4.2.0...v4.2.1

v4.2.0

Compare Source

Full Changelog: ruby/rdoc@v4.1.1...v4.2.0

v4.1.2

Compare Source

Full Changelog: ruby/rdoc@v4.1.1...v4.1.2


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • ""
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Renovate Bot.

@sc-renovate sc-renovate Bot added dependencies Pull requests that update a dependency file renovate labels Jun 1, 2026
@sc-renovate
Copy link
Copy Markdown
Author

sc-renovate Bot commented Jun 1, 2026

⚠️ Artifact update problem

Renovate failed to update an artifact related to this branch. You probably do not want to merge this PR as-is.

♻ Renovate will retry this branch, including artifacts, only when one of the following happens:

  • any of the package files in this branch needs updating, or
  • the branch becomes conflicted, or
  • you click the rebase/retry checkbox if found above, or
  • you rename this PR's title to start with "rebase!" to trigger it manually

The artifact failure details are included below:

File name: Gemfile.lock
Writing lockfile to /tmp/renovate/repos/github/soundcloud/cando/Gemfile.lock
Fetching gem metadata from http://rubygems.org/.........
Resolving dependencies...

Could not find compatible versions

Because the current Bundler version (4.0.10) does not satisfy bundler ~> 1.0
  and Gemfile depends on bundler ~> 1.0,
  version solving has failed.

Your bundle requires a different version of Bundler than the one you're running.
Install the necessary version with `gem install bundler:1.17.3` and rerun
bundler using `bundler _1.17.3_ lock --update rdoc`

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file renovate

Development

Successfully merging this pull request may close these issues.

0 participants