Skip to content

Extract graph info from Gemfile.lock [gemnasium only]

What does this MR do?

  • Change Gemfile.lock parser to return parser.Dependencies.
  • Update expected Dependency Scanning with graph info generated for Bundler projects.

What are the relevant issue numbers?

Report vulnerable dependency paths for Bundler ... (gitlab-org/gitlab#229812)

Does this MR meet the acceptance criteria?

Edited by Fabien Catteau

Merge request reports