<#173 [Snyk] Security upgrade ruby from 3.3.5-alpi...
# pact-ruby-standalone
g
#173 [Snyk] Security upgrade ruby from 3.3.5-alpine to 3.4.4-alpine Pull request opened by mefellows [snyk-top-banner](https://camo.githubusercontent.com/bb85bfee294226220d0f28c0f3e9a9f70de4c1e7d4b7fe2f3ab609c8b61fb797/68747470733a2f2f7265732e636c6f7564696e6172792e636f6d2f736e796b2f696d6167652f75706c6f61642f722d642f73636d2d706c6174666f726d2f736e796b2d70756c6c2d72657175657374732f70722d62616e6e65722d64656661756c742e737667) ### Snyk has created this PR to fix 4 vulnerabilities in the dockerfile dependencies of this project. Keeping your Docker base image up-to-date means you’ll benefit from security fixes in the latest version of your chosen image. #### Snyk changed the following file(s): •
Dockerfile-bundle-base
We recommend upgrading to
ruby:3.4.4-alpine
, as this image has only 0 known vulnerabilities. To do this, merge this pull request, then verify your application still works as expected. #### Vulnerabilities that will be fixed with an upgrade: | Issue | Score | | | ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ----- | | [[low severity](https://camo.githubusercontent.com/6b3fab2d4fee347050a15f32c90cf4a87d4569393bb24a45d1aa184b9c4c8a36/68747470733a2f2f7265732e636c6f7564696e6172792e636f6d2f736e796b2f696d6167652f75706c6f61642f775f32302c685f32302f76313536313937373831392f69636f6e2f6c2e706e67 "low severity")](https://camo.githubusercontent.com/6b3fab2d4fee347050a15f32c90cf4a87d4569393bb24a45d1aa184b9c4c8a36/68747470733a2f2f7265732e636c6f7564696e6172792e636f6d2f736e796b2f696d6167652f75706c6f61642f775f32302c685f32302f76313536313937373831392f69636f6e2f6c2e706e67) | [CVE-2025-26519](https://github.com/advisories/GHSA-xpv5-92cc-8f65 "CVE-2025-26519") [SNYK-ALPINE320-MUSL-8720638](https://snyk.io/vuln/SNYK-ALPINE320-MUSL-8720638) | 364 | | [[low severity](https://camo.githubusercontent.com/6b3fab2d4fee347050a15f32c90cf4a87d4569393bb24a45d1aa184b9c4c8a36/68747470733a2f2f7265732e636c6f7564696e6172792e636f6d2f736e796b2f696d6167652f75706c6f61642f775f32302c685f32302f76313536313937373831392f69636f6e2f6c2e706e67 "low severity")](https://camo.githubusercontent.com/6b3fab2d4fee347050a15f32c90cf4a87d4569393bb24a45d1aa184b9c4c8a36/68747470733a2f2f7265732e636c6f7564696e6172792e636f6d2f736e796b2f696d6167652f75706c6f61642f775f32302c685f32302f76313536313937373831392f69636f6e2f6c2e706e67) | [CVE-2025-26519](https://github.com/advisories/GHSA-xpv5-92cc-8f65 "CVE-2025-26519") [SNYK-ALPINE320-MUSL-8720638](https://snyk.io/vuln/SNYK-ALPINE320-MUSL-8720638) | 364 | | [[low severity](https://camo.githubusercontent.com/6b3fab2d4fee347050a15f32c90cf4a87d4569393bb24a45d1aa184b9c4c8a36/68747470733a2f2f7265732e636c6f7564696e6172792e636f6d2f736e796b2f696d6167652f75706c6f61642f775f32302c685f32302f76313536313937373831392f69636f6e2f6c2e706e67 "low severity")](https://camo.githubusercontent.com/6b3fab2d4fee347050a15f32c90cf4a87d4569393bb24a45d1aa184b9c4c8a36/68747470733a2f2f7265732e636c6f7564696e6172792e636f6d2f736e796b2f696d6167652f75706c6f61642f775f32302c685f32302f76313536313937373831392f69636f6e2f6c2e706e67) | [CVE-2024-9143](https://github.com/advisories/GHSA-q764-r57m-9wp9 "CVE-2024-9143") [SNYK-ALPINE320-OPENSSL-8235201](https://snyk.io/vuln/SNYK-ALPINE320-OPENSSL-8235201) | 364 | | [[low severity](https://camo.githubusercontent.com/6b3fab2d4fee347050a15f32c90cf4a87d4569393bb24a45d1aa184b9c4c8a36/68747470733a2f2f7265732e636c6f7564696e6172792e636f6d2f736e796b2f696d6167652f75706c6f61642f775f32302c685f32302f76313536313937373831392f69636f6e2f6c2e706e67 "low severity")](https://camo.githubusercontent.com/6b3fab2d4fee347050a15f32c90cf4a87d4569393bb24a45d1aa184b9c4c8a36/68747470733a2f2f7265732e636c6f7564696e6172792e636f6d2f736e796b2f696d6167652f75706c6f61642f775f32302c685f32302f76313536313937373831392f69636f6e2f6c2e706e67) | [CVE-2024-13176](https://github.com/advisories/GHSA-r9fv-h47r-823f "CVE-2024-13176") [SNYK-ALPINE320-OPENSSL-8690013](https://snyk.io/vuln/SNYK-ALPINE320-OPENSSL-8690013) | 364 | | [[low severity](https://camo.githubusercontent.com/6b3fab2d4fee347050a15f32c90cf4a87d4569393bb24a45d1aa184b9c4c8a36/68747470733a2f2f7265732e636c6f7564696e6172792e636f6d2f736e796b2f696d6167652f75706c6f61642f775f32302c685f32302f76313536313937373831392f69636f6e2f6c2e706e67 "low severity")](https://camo.githubusercontent.com/6b3fab2d4fee347050a15f32c90cf4a87d4569393bb24a45d1aa184b9c4c8a36/68747470733a2f2f7265732e636c6f7564696e6172792e636f6d2f736e796b2f696d6167652f75706c6f61642f775f32302c685f32302f76313536313937373831392f69636f6e2f6c2e706e67) | [CVE-2024-12797](https://github.com/advisories/GHSA-79v4-65xg-pq4g "CVE-2024-12797") [SNYK-ALPINE320-OPENSSL-8710359](https://snyk.io/vuln/SNYK-ALPINE320-OPENSSL-8710359) | 364 | --- Important • Check the changes in this PR to ensure they won't cause issues with your project. • Max score is 1000. Note that the real score may have changed since the PR was raised. • This PR was automatically created by Snyk using the credentials of a real user. --- Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs. For more information: <https://camo.githubusercontent.com/fb4f829dccead14e74aab64f0f693fd548bf8ba0c774503ebf84d34ce3aced8b/68747470733a2f2f6170692e7365676d656e742e696f2f76312f706978656c2f747261636b3f646174613d65794a33636d6c305a55746c65534936496e4a79576d785a634564485932527954485a7362306c596430645563566734576b4652546e4e434f5545774969776959573576626e6c746233567a535751694f6949335a4463344d6d4a6c4d53316a4e4749774c54526b4e7a4574596a557a5969316b4d7a4e6c596a45784e7a5a684d546b694c434a6c646d567564434936496c425349485a705a58646c5a434973496e42796233426c636e52705a584d694f6e736963484a4a5a434936496a646b4e7a6779596d55784c574d30596a41744e4751334d5331694e544e694c57517a4d3256694d5445334e6d45784f534a3966513d3d|[](https://camo.githubusercontent.com/fb4f829dccead14e74aab64f0f693fd548bf8ba0c774503ebf84d34ce3aced8b/68747470733a2f2f6170692e7365676d656e742e696f2f76312f706978656c2f747261636b3f646174613d65794a33636d6c305a55746c65534936496e4a79576d785a634564485932527954485a7362306c596430645563566734576b4652546e4e434f5545774969776959573576626e6c746233567a535751694f6949335a4463344d6d4a6c4d53316a4e4749774c54526b4e7a4574596a557a5969316b4d7a4e6c596a45784e7a5a684d546b694c434a6c646d567564434936496c425349485a705a58646c5a434973496e42796233426c636e52705a584d694f6e736963484a4a5a434936496a646b… pact-foundation/pact-ruby-standalone