From fa3419fb15a072eda53c04da7fcdf728e0e01167 Mon Sep 17 00:00:00 2001 From: Semyon Estrin Date: Mon, 14 Feb 2022 13:03:03 +0200 Subject: [PATCH] Take rexml gem to prod env --- CHANGELOG.md | 3 +++ Gemfile | 2 +- 2 files changed, 4 insertions(+), 1 deletion(-) diff --git a/CHANGELOG.md b/CHANGELOG.md index 480a9c1bc9..4f749690a3 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -11,6 +11,9 @@ and this project adheres to [Semantic Versioning](http://semver.org/spec/v2.0.0. ## [1.17.2] - 2022-02-13 +### Fixed +- IAM Authn bug fix - Take rexml gem to production configuration [#2493](https://github.com/cyberark/conjur/pull/2493) + ### Security - Updated Rails to 6.1.4.4 to resolve CVE-2021-44528 (Medium, Not Vulnerable) [cyberark/conjur#2486](https://github.com/cyberark/conjur/pull/2486) diff --git a/Gemfile b/Gemfile index 8fdbeb2f98..6a7e6e0307 100644 --- a/Gemfile +++ b/Gemfile @@ -35,6 +35,7 @@ gem 'base32-crockford' gem 'bcrypt' gem 'gli', require: false gem 'listen' +gem 'rexml', '~> 3.2' gem 'slosilo', '~> 3.0' # Explicitly required as there are vulnerabilities in older versions @@ -97,7 +98,6 @@ group :development, :test do gem 'rails-controller-testing' gem 'rails_layout' gem 'rake_shared_context' - gem 'rexml', '~> 3.2' gem 'rspec' gem 'rspec-core' gem 'rspec-rails'