Skip to content

chore(deps): bump faraday from 2.14.1 to 2.14.2#37

Closed
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/bundler/faraday-2.14.2
Closed

chore(deps): bump faraday from 2.14.1 to 2.14.2#37
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/bundler/faraday-2.14.2

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github May 18, 2026

Bumps faraday from 2.14.1 to 2.14.2.

Release notes

Sourced from faraday's releases.

v2.14.2

Security Note

This release contains a security fix, we recommend all users to upgrade as soon as possible. A Security Advisory with more details will be posted shortly.

What's Changed

New Contributors

Full Changelog: lostisland/faraday@v2.14.1...v2.14.2

Commits

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file ruby Pull requests that update ruby code labels May 18, 2026
@github-actions
Copy link
Copy Markdown
Contributor

📦 Dependency Security Check

✅ No known vulnerabilities found.

View Report
No vulnerabilities found

@github-actions
Copy link
Copy Markdown
Contributor

🔒 Brakeman Security Scan

  • Total warnings: 0
  • High confidence: 0

✅ No high confidence issues found.

@codacy-production
Copy link
Copy Markdown

codacy-production Bot commented May 18, 2026

Up to standards ✅

🟢 Issues 0 issues

Results:
0 new issues

View in Codacy

NEW Get contextual insights on your PRs based on Codacy's metrics, along with PR and Jira context, without leaving GitHub. Enable AI reviewer
TIP This summary will be updated as you push new changes.

@github-actions
Copy link
Copy Markdown
Contributor

🔍 Semgrep Static Analysis

Severity Count
Errors 0
Critical (HIGH confidence) 0
Warnings 0

✅ No issues found.

@github-actions
Copy link
Copy Markdown
Contributor

🔐 Security Scan Summary

Static Analysis (SAST)

Check Status
Brakeman ✅ success
Dependencies ✅ success
Semgrep ✅ success
Secrets ✅ success

Dynamic Analysis (DAST)

Check Status
SSRF Protection ✅ success
Authentication ✅ success
SQL Injection ✅ success

✅ All security checks passed!

Bumps [faraday](https://github.com/lostisland/faraday) from 2.14.1 to 2.14.2.
- [Release notes](https://github.com/lostisland/faraday/releases)
- [Changelog](https://github.com/lostisland/faraday/blob/main/CHANGELOG.md)
- [Commits](lostisland/faraday@v2.14.1...v2.14.2)

---
updated-dependencies:
- dependency-name: faraday
  dependency-version: 2.14.2
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/bundler/faraday-2.14.2 branch from e4f1b11 to d5a2670 Compare May 19, 2026 16:42
@github-actions
Copy link
Copy Markdown
Contributor

📦 Dependency Security Check

✅ No known vulnerabilities found.

View Report
No vulnerabilities found

@github-actions
Copy link
Copy Markdown
Contributor

🔒 Brakeman Security Scan

  • Total warnings: 0
  • High confidence: 0

✅ No high confidence issues found.

@github-actions
Copy link
Copy Markdown
Contributor

🔍 Semgrep Static Analysis

Severity Count
Errors 0
Critical (HIGH confidence) 0
Warnings 0

✅ No issues found.

@github-actions
Copy link
Copy Markdown
Contributor

🔐 Security Scan Summary

Static Analysis (SAST)

Check Status
Brakeman ✅ success
Dependencies ✅ success
Semgrep ✅ success
Secrets ✅ success

Dynamic Analysis (DAST)

Check Status
SSRF Protection ✅ success
Authentication ✅ success
SQL Injection ✅ success

✅ All security checks passed!

@dependabot @github
Copy link
Copy Markdown
Contributor Author

dependabot Bot commented on behalf of github May 19, 2026

Looks like faraday is up-to-date now, so this is no longer needed.

@dependabot dependabot Bot closed this May 19, 2026
@dependabot dependabot Bot deleted the dependabot/bundler/faraday-2.14.2 branch May 19, 2026 16:46
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file ruby Pull requests that update ruby code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants