Bump rack minor versions to patch CVEs

What does this MR do and why?

Bump rack minor versions to patch CVEs

We were already up to date on the main Gemfile.

With the main Gemfile up to date we're not vulnerable to those vulnerabilities but this cleans up dependency scanning findings.

MR acceptance checklist

N/A

How to set up and validate locally

N/A

Edited by Dominic Couture

Merge request reports

Loading