From a011d3a7c6f44e744c96f12600bd34435282be7d Mon Sep 17 00:00:00 2001 From: Renaud Chaput Date: Fri, 22 Sep 2023 10:13:09 +0200 Subject: [PATCH] Ignore CVE-2023-26141 (Sidekiq) from bundler audit (#27037) --- .bundler-audit.yml | 4 ++++ 1 file changed, 4 insertions(+) create mode 100644 .bundler-audit.yml diff --git a/.bundler-audit.yml b/.bundler-audit.yml new file mode 100644 index 0000000000..a457fc41e8 --- /dev/null +++ b/.bundler-audit.yml @@ -0,0 +1,4 @@ +--- +ignore: + # Sidekiq security issue, fixes in the latest Sidekiq 7 but we can not upgrade. Will be fixed in Sidekiq 6.5.10 + - CVE-2023-26141