Skip to content

chore(deps): bump faraday from 2.14.1 to 2.14.2 - #37

Closed
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/bundler/faraday-2.14.2
Closed

chore(deps): bump faraday from 2.14.1 to 2.14.2#37
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/bundler/faraday-2.14.2

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github May 18, 2026

Copy link
Copy Markdown
Contributor

Bumps faraday from 2.14.1 to 2.14.2.

Release notes

Sourced from faraday's releases.

v2.14.2

Security Note

This release contains a security fix, we recommend all users to upgrade as soon as possible. A Security Advisory with more details will be posted shortly.

What's Changed

New Contributors

Full Changelog: lostisland/faraday@v2.14.1...v2.14.2

Commits

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file ruby Pull requests that update ruby code labels May 18, 2026
@github-actions

Copy link
Copy Markdown
Contributor

📦 Dependency Security Check

✅ No known vulnerabilities found.

View Report
No vulnerabilities found

@github-actions

Copy link
Copy Markdown
Contributor

🔒 Brakeman Security Scan

  • Total warnings: 0
  • High confidence: 0

✅ No high confidence issues found.

@codacy-production

codacy-production Bot commented May 18, 2026

Copy link
Copy Markdown

Up to standards ✅

🟢 Issues 0 issues

Results:
0 new issues

View in Codacy

NEW Get contextual insights on your PRs based on Codacy's metrics, along with PR and Jira context, without leaving GitHub. Enable AI reviewer
TIP This summary will be updated as you push new changes.

@github-actions

Copy link
Copy Markdown
Contributor

🔍 Semgrep Static Analysis

Severity Count
Errors 0
Critical (HIGH confidence) 0
Warnings 0

✅ No issues found.

@github-actions

Copy link
Copy Markdown
Contributor

🔐 Security Scan Summary

Static Analysis (SAST)

Check Status
Brakeman ✅ success
Dependencies ✅ success
Semgrep ✅ success
Secrets ✅ success

Dynamic Analysis (DAST)

Check Status
SSRF Protection ✅ success
Authentication ✅ success
SQL Injection ✅ success

✅ All security checks passed!

Bumps [faraday](https://github.com/lostisland/faraday) from 2.14.1 to 2.14.2.
- [Release notes](https://github.com/lostisland/faraday/releases)
- [Changelog](https://github.com/lostisland/faraday/blob/main/CHANGELOG.md)
- [Commits](lostisland/faraday@v2.14.1...v2.14.2)

---
updated-dependencies:
- dependency-name: faraday
  dependency-version: 2.14.2
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/bundler/faraday-2.14.2 branch from e4f1b11 to d5a2670 Compare May 19, 2026 16:42
@github-actions

Copy link
Copy Markdown
Contributor

📦 Dependency Security Check

✅ No known vulnerabilities found.

View Report
No vulnerabilities found

@github-actions

Copy link
Copy Markdown
Contributor

🔒 Brakeman Security Scan

  • Total warnings: 0
  • High confidence: 0

✅ No high confidence issues found.

@github-actions

Copy link
Copy Markdown
Contributor

🔍 Semgrep Static Analysis

Severity Count
Errors 0
Critical (HIGH confidence) 0
Warnings 0

✅ No issues found.

@github-actions

Copy link
Copy Markdown
Contributor

🔐 Security Scan Summary

Static Analysis (SAST)

Check Status
Brakeman ✅ success
Dependencies ✅ success
Semgrep ✅ success
Secrets ✅ success

Dynamic Analysis (DAST)

Check Status
SSRF Protection ✅ success
Authentication ✅ success
SQL Injection ✅ success

✅ All security checks passed!

@dependabot @github

dependabot Bot commented on behalf of github May 19, 2026

Copy link
Copy Markdown
Contributor Author

Looks like faraday is up-to-date now, so this is no longer needed.

@dependabot dependabot Bot closed this May 19, 2026
@dependabot
dependabot Bot deleted the dependabot/bundler/faraday-2.14.2 branch May 19, 2026 16:46
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file ruby Pull requests that update ruby code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants