Commit 9ff3b0f

mo <mo.khan@gmail.com>
2018-01-10 03:31:15
remove explicit nokogiri dependency. tag: v0.3.4
xml-kit specifies a minimum version that has fixes for nokogiri that ships a version of libxml that does not have a CVE. https://github.com/sparklemotion/nokogiri/issues/1673
1 parent 9c3b046
Changed files (2)
lib/saml/kit/version.rb
@@ -1,5 +1,5 @@
 module Saml
   module Kit
-    VERSION = "0.3.3"
+    VERSION = "0.3.4"
   end
 end
saml-kit.gemspec
@@ -24,7 +24,6 @@ Gem::Specification.new do |spec|
   spec.require_paths = ["lib"]
 
   spec.add_dependency "activemodel", ">= 4.2.0"
-  spec.add_dependency "nokogiri", "~> 1.8"
   spec.add_dependency "xml-kit", "~> 0.1"
   spec.add_development_dependency "bundler", "~> 1.15"
   spec.add_development_dependency "ffaker", "~> 2.7"