Skip to content

Ensure advisory db updated at scan time

Igor Frenkel requested to merge 322925-bundler-audit-update into master

What does this MR do?

This MR ensures that the ruby advisory db on which the bundler-audit scanner relies is always updated at scan time.

This change is tested in various configurations in this ruby-bundler branch: https://gitlab.com/gitlab-org/security-products/tests/ruby-bundler/-/pipelines/267382354

After approval, the branch will become a FREEZE branch.

What are the relevant issue numbers?

gitlab-org/gitlab#322925 (closed)

Does this MR meet the acceptance criteria?

Edited by Igor Frenkel

Merge request reports