From 42dacc1091536deababcb54591568249f7b0a7fc Mon Sep 17 00:00:00 2001 From: Frank Taillandier Date: Tue, 18 May 2021 08:31:34 +0200 Subject: [PATCH] fix(security): CVE-2021-28834 (#8680) Merge pull request 8680 --- jekyll.gemspec | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/jekyll.gemspec b/jekyll.gemspec index 169d41cf..9bb53766 100644 --- a/jekyll.gemspec +++ b/jekyll.gemspec @@ -38,7 +38,7 @@ Gem::Specification.new do |s| s.add_runtime_dependency("i18n", "~> 1.0") s.add_runtime_dependency("jekyll-sass-converter", "~> 2.0") s.add_runtime_dependency("jekyll-watch", "~> 2.0") - s.add_runtime_dependency("kramdown", "~> 2.3") + s.add_runtime_dependency("kramdown", "~> 2.3", ">= 2.3.1") s.add_runtime_dependency("kramdown-parser-gfm", "~> 1.0") s.add_runtime_dependency("liquid", "~> 4.0") s.add_runtime_dependency("mercenary", ">= 0.3.6", "< 0.5")