[openstreetmap/openstreetmap-website] Bump rails from 6.0.3.3 to 6.0.3.4 (#2877)

dependabot[bot] notifications at github.com
Thu Oct 8 05:01:43 UTC 2020


Bumps [rails](https://github.com/rails/rails) from 6.0.3.3 to 6.0.3.4.
<details>
<summary>Commits</summary>
<ul>
<li><a href="https://github.com/rails/rails/commit/fe76a95b0d252a2d7c25e69498b720c96b243ea2"><code>fe76a95</code></a> Preparing for 6.0.3.4 release</li>
<li><a href="https://github.com/rails/rails/commit/bd5d907e72fe799f5455804843a92695a5f29e63"><code>bd5d907</code></a> Prevent XSS in the Actionable Exceptions middleware</li>
<li>See full diff in <a href="https://github.com/rails/rails/compare/v6.0.3.3...v6.0.3.4">compare view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=rails&package-manager=bundler&previous-version=6.0.3.3&new-version=6.0.3.4)](https://docs.github.com/en/github/managing-security-vulnerabilities/configuring-github-dependabot-security-updates)

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)


</details>
You can view, comment on, or merge this pull request online at:

  https://github.com/openstreetmap/openstreetmap-website/pull/2877

-- Commit Summary --

  * Bump rails from 6.0.3.3 to 6.0.3.4

-- File Changes --

    M Gemfile (2)
    M Gemfile.lock (102)

-- Patch Links --

https://github.com/openstreetmap/openstreetmap-website/pull/2877.patch
https://github.com/openstreetmap/openstreetmap-website/pull/2877.diff

-- 
You are receiving this because you are subscribed to this thread.
Reply to this email directly or view it on GitHub:
https://github.com/openstreetmap/openstreetmap-website/pull/2877
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openstreetmap.org/pipermail/rails-dev/attachments/20201007/8a3c4ed0/attachment.htm>


More information about the rails-dev mailing list