Skip to content

[bundler] Bump rake from 13.3.1 to 13.4.1 in the monthly group#193

Merged
ahaverbuch merged 2 commits into
mainfrom
dependabot/bundler/monthly-39953ac9c0
Apr 14, 2026
Merged

[bundler] Bump rake from 13.3.1 to 13.4.1 in the monthly group#193
ahaverbuch merged 2 commits into
mainfrom
dependabot/bundler/monthly-39953ac9c0

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Apr 14, 2026

Bumps the monthly group with 1 update: rake.

Updates rake from 13.3.1 to 13.4.1

Commits
  • 92193ac v13.4.1
  • b74be0b Merge pull request #721 from ruby/fix/add-options-to-gemspec
  • 829f66d Add lib/rake/options.rb to gemspec
  • 2d55bc4 v13.4.0
  • 1415070 Exclude dependabot updates from release note
  • b3dc948 Merge pull request #713 from pvdb/simplify_standard_system_dir
  • 4c01004 Ensure thread_pool.join runs even when an exception is raised
  • dbeb18c Merge pull request #719 from ruby/dependabot/github_actions/ruby/setup-ruby-1...
  • a8fb42b Merge pull request #717 from ruby/dependabot/github_actions/actions/upload-pa...
  • 451937a Merge pull request #718 from ruby/dependabot/github_actions/lewagon/wait-on-c...
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Note

Low Risk
Low risk dependency lockfile update; only the rake and Bundler lock versions change, with no application code modifications.

Overview
Updates the Bundler lockfiles to bump rake from 13.3.1 to 13.4.1 across the main Gemfile.lock and the Rails appraisal lockfiles.

Also updates the recorded Bundler version in those lockfiles from 4.0.9 to 4.0.10.

Reviewed by Cursor Bugbot for commit 847f5b0. Bugbot is set up for automated code reviews on this repo. Configure here.

Bumps the monthly group with 1 update: [rake](https://github.com/ruby/rake).


Updates `rake` from 13.3.1 to 13.4.1
- [Release notes](https://github.com/ruby/rake/releases)
- [Changelog](https://github.com/ruby/rake/blob/master/History.rdoc)
- [Commits](ruby/rake@v13.3.1...v13.4.1)

---
updated-dependencies:
- dependency-name: rake
  dependency-version: 13.4.1
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: monthly
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file ruby Pull requests that update Ruby code labels Apr 14, 2026
@socket-security
Copy link
Copy Markdown

socket-security Bot commented Apr 14, 2026

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Updatedrake@​13.3.1 ⏵ 13.4.190100100100100

View full report

@ahaverbuch ahaverbuch merged commit 5b93826 into main Apr 14, 2026
9 checks passed
@ahaverbuch ahaverbuch deleted the dependabot/bundler/monthly-39953ac9c0 branch April 14, 2026 19:40
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file ruby Pull requests that update Ruby code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant