From 2329f2fcfdc804c4045c74481122a3bc50ee9df7 Mon Sep 17 00:00:00 2001 From: Elia Schito Date: Wed, 9 Aug 2023 15:14:29 +0200 Subject: [PATCH] Bump the minimum required Psych version The existing code already breaks with older versions and this just reflects the minimum version that works in the gemspec. Psych v4.0.1 is the one introducing `YAML.safe_dump` which we're using to store LogEntry serialized details. Fixes #5320. (cherry picked from commit 7d150dbf01b1fed1fa26242b525ff6e702ea2896) --- core/solidus_core.gemspec | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/core/solidus_core.gemspec b/core/solidus_core.gemspec index 23f3415370d..7d7ed15de41 100644 --- a/core/solidus_core.gemspec +++ b/core/solidus_core.gemspec @@ -42,7 +42,7 @@ Gem::Specification.new do |s| s.add_dependency 'mini_magick', '~> 4.10' s.add_dependency 'monetize', '~> 1.8' s.add_dependency 'kt-paperclip', ['>= 6.3', '< 8'] - s.add_dependency 'psych', ['>= 3.1.0', '< 5.0'] + s.add_dependency 'psych', ['>= 4.0.1', '< 5.0'] s.add_dependency 'ransack', '~> 2.0' s.add_dependency 'sprockets-rails' s.add_dependency 'state_machines-activerecord', '~> 0.6'