Skip to content

Commit 87c1d60

Browse files
authored
Bump rexml to resolve security advisory (#10953)
* Bump rexml to resolve security advisory changelog: Internal, Dependencies, Update dependencies to resolve security advisories * Add rexml as explicit dependency Since we use it in our code, it should be an explicit dependency See: https://github.com/18F/identity-idp/blob/ea8a6081961d6c373a870dd5fea31efce89fde7e/app/services/proofing/aamva/request/verification_request.rb#L60-L102 * Sync AAMVA fixture to expected output Likely a result of ruby/rexml#164
1 parent ea8a608 commit 87c1d60

File tree

3 files changed

+4
-2
lines changed

3 files changed

+4
-2
lines changed

Gemfile

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -66,6 +66,7 @@ gem 'redacted_struct'
6666
gem 'redis', '>= 3.2.0'
6767
gem 'redis-session-store', github: '18F/redis-session-store', tag: 'v1.0.1-18f'
6868
gem 'retries'
69+
gem 'rexml', '~> 3.3'
6970
gem 'rotp', '~> 6.3', '>= 6.3.0'
7071
gem 'rqrcode'
7172
gem 'ruby-progressbar'

Gemfile.lock

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -573,7 +573,7 @@ GEM
573573
actionpack (>= 5.0)
574574
railties (>= 5.0)
575575
retries (0.0.5)
576-
rexml (3.3.1)
576+
rexml (3.3.2)
577577
strscan
578578
rotp (6.3.0)
579579
rouge (4.2.0)
@@ -832,6 +832,7 @@ DEPENDENCIES
832832
redis (>= 3.2.0)
833833
redis-session-store!
834834
retries
835+
rexml (~> 3.3)
835836
rotp (~> 6.3, >= 6.3.0)
836837
rqrcode
837838
rspec (~> 3.13.0)

spec/fixtures/proofing/aamva/requests/verification_request.xml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -34,4 +34,4 @@
3434
</dldv:verifyDriverLicenseDataRequest>
3535
</dldv:VerifyDriverLicenseData>
3636
</soap:Body>
37-
</soap:Envelope>
37+
</soap:Envelope>

0 commit comments

Comments
 (0)