Omnibus builds packaging updated Gems not in any Gemfile.lock
Something in Omnibus is installing the latest version of rack (e.g. v2.1.1) as well as other gems:
- rack v2.1.1
- pg v1.2.2
- mustermann v1.1.1
- rack-protection v2.0.8.1
I don't see it any Gemfile.lock
files, so I wonder if something is running bundle install and pulling in the latest versions of the dependencies. It used to be that gitlab-exporter did this, but I thought installing it as a gem would prevent this. Since mustermann
is a dependency of sinatra
and the list of these gems are used by that, I wonder if gitlab-exporter is still doing this.