Skip to content

[BLOCKED BY RUBY 3.1 UPGRADE] Bump sidekiq-cron, sidekiq, rails, sidekiq-cloudwatchmetrics, twitter, redis-objects, connection_pool, rqrcode, shortener and bitly#2429

Open
dependabot[bot] wants to merge 1 commit into
developfrom
dependabot/bundler/multi-085019ad61
Open

[BLOCKED BY RUBY 3.1 UPGRADE] Bump sidekiq-cron, sidekiq, rails, sidekiq-cloudwatchmetrics, twitter, redis-objects, connection_pool, rqrcode, shortener and bitly#2429
dependabot[bot] wants to merge 1 commit into
developfrom
dependabot/bundler/multi-085019ad61

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github May 12, 2026

Bumps sidekiq-cron, sidekiq, rails, sidekiq-cloudwatchmetrics, twitter, redis-objects, connection_pool, rqrcode, shortener and bitly. These dependencies needed to be updated together.
Updates sidekiq-cron from 1.2.0 to 2.4.0

Release notes

Sourced from sidekiq-cron's releases.

v2.4.0

What's Changed

New Contributors

Full Changelog: sidekiq-cron/sidekiq-cron@v2.3.1...v2.4.0

v2.3.1

What's Changed

Full Changelog: sidekiq-cron/sidekiq-cron@v2.3.0...v2.3.1

v2.3.0

What's Changed

Full Changelog: sidekiq-cron/sidekiq-cron@v2.2.0...v2.3.0

v2.2.0

What's Changed

New Contributors

... (truncated)

Changelog

Sourced from sidekiq-cron's changelog.

2.4.0

2.3.1

2.3.0

2.2.0

2.1.0

2.0.1

2.0.0

Sidekiq-Cron v2 is here! In this release we refactored some internals, plus:

Please take a look to the RC1 and RC2 changes too if you are coming from the v1.X series.

2.0.0.rc2

... (truncated)

Commits
  • 3af55a8 Prepare new release v2.4.0 🚀
  • 44c1280 Allow to conditionally disable Sidekiq-Cron (#574)
  • a5ddb28 Fix Spanish translation for enabled/disabled states (#575)
  • 196b9b7 Add cron_process_count_override config option (#572)
  • 9e802c9 Update web extension tests to support Sidekiq 8.1.0 (#573)
  • 7b4ae48 Fix reflected XSS on Sidekiq-UI. (#568)
  • 11535a5 Update simplecov-covertura (#570)
  • 8c25ca2 Prepare new release v2.3.1 🚀
  • d351305 Fix manually launch enqueue job not working from web UI (#564)
  • 16953cd Fix some Ruby warnings (#561)
  • Additional commits viewable in compare view

Updates sidekiq from 5.2.10 to 7.3.9

Changelog

Sourced from sidekiq's changelog.

7.3.9

  • Only require activejob if necessary #6584 You might get uninitialized constant Sidekiq::ActiveJob if you require 'sidekiq' before require 'rails'.
  • Fix iterable job cancellation #6589
  • Web UI accessibility improvements #6604

7.3.8

  • Fix dead tag links #6554
  • Massive Web UI performance improvement, some pages up to 15x faster #6555

7.3.7

  • Backport Sidekiq::Web.configure for compatibility with 8.0 #6532
  • Backport url_params(key) and route_params(key) for compatibility with 8.0 #6532
  • Various fixes for UI filtering #6508
  • Tune inspect for internal S::Components to keep size managable #6553

7.3.6

  • Forward compatibility fixes for Ruby 3.4
  • Filtering in the Web UI now works via GET so you can bookmark a filtered view. #6497

7.3.5

  • Reimplement retry_all and kill_all API methods to use ZPOPMIN, approximately 30-60% faster. #6481
  • Add preload testing binary at examples/testing/sidekiq_boot to verify your Rails app boots correctly with Sidekiq Enterprise's app preloading.
  • Fix circular require with ActiveJob adapter #6477
  • Fix potential race condition leading to incorrect serialized values for CurrentAttributes #6475
  • Restore missing elapsed time when default job logging is disabled

7.3.4

  • Fix FrozenError when starting Sidekiq #6470

7.3.3

  • Freeze global configuration once boot is complete, to avoid configuration race conditions [#6466, #6465]
  • Sidekiq now warns if a job iteration takes longer than the -t timeout setting (defaults to 25 seconds)
  • Iteration callbacks now have easy access to job arguments via the arguments method:

... (truncated)

Commits

Updates rails from 6.1.7.8 to 6.1.7.10

Release notes

Sourced from rails's releases.

6.1.7.10

Active Support

  • No changes.

Active Model

  • No changes.

Active Record

  • No changes.

Action View

  • No changes.

Action Pack

  • No changes.

Active Job

  • No changes.

Action Mailer

  • Fix NoMethodError in block_format helper

    Michael Leimstaedtner

Action Cable

  • No changes.

Active Storage

  • No changes.

Action Mailbox

  • No changes.

... (truncated)

Commits
  • 86864c2 Preparing for 6.1.7.10 release
  • 78cfd2f Prepare for 6.1.7.10
  • 9cd0b8f Improvements to releaser
  • 77f0d70 Fix NoMethodError in ActionMailer block_format
  • b2fbbfb Preparing for 6.1.7.9 release
  • 534b3c7 Update CHANGELOGs
  • faadb28 Merge pull request #16 from rails/7-0-sec-relase
  • 985f192 Avoid backtracking in ActionMailer block_format
  • 4f4312b ActionText: Avoid backtracing in plain_text_for_blockquote_node
  • fb493be Avoid backtracking in filtered_query_string
  • Additional commits viewable in compare view

Updates sidekiq-cloudwatchmetrics from 2.2.0 to 2.9.0

Release notes

Sourced from sidekiq-cloudwatchmetrics's releases.

v2.9.0

What's Changed

New Contributors

Full Changelog: sj26/sidekiq-cloudwatchmetrics@v2.8.0...v2.9.0

Available as v2.9.0 on RubyGems:

gem install sidekiq-coudwatchmetrics -v 2.9.0

v2.8.0

What's Changed

Full Changelog: sj26/sidekiq-cloudwatchmetrics@v2.7.0...v2.8.0

Available as v2.8.0 on RubyGems:

gem install sidekiq-coudwatchmetrics -v 2.8.0

v2.7.0

What's Changed

Full Changelog: sj26/sidekiq-cloudwatchmetrics@v2.6.0...v2.7.0

v2.6.0

What's Changed

Full Changelog: sj26/sidekiq-cloudwatchmetrics@v2.5.0...v2.6.0

v2.5.0

What's Changed

  • Re-added tag-based utilization, but using a proper average across all processes with the same tag.

Full Changelog: sj26/sidekiq-cloudwatchmetrics@v2.4.0...v2.5.0

... (truncated)

Commits
  • 88c31fb Bump v2.9.0
  • 0861c8a Merge pull request #53 from buildkite/add-high-resolution-storage-support
  • 5224c53 Enable high resolution storage when the interval is less than 60 seconds
  • 0df4e01 Make it clear this variable represents seconds
  • ea844f8 Bump v2.8.0
  • 15f93bc Merge pull request #52 from sj26/sidekiq-8
  • a308499 Isolate gem bump from change
  • b5d22d9 Exclude ruby < 3.2 for sidekiq 8
  • b3d21bf Sidekiq::Config is not backwards comptible
  • f1d455c Pass in the current config during enable
  • Additional commits viewable in compare view

Updates twitter from 7.0.0 to 8.3.1

Changelog

Sourced from twitter's changelog.

[8.3.1] - 2026-04-30

Changed

[8.3.0] - 2025-03-30

Added

Changed

Removed

Fixed

[8.2.0] - 2025-04-30

Changed

Removed

[8.1.0] - 2024-04-30

Changed

... (truncated)

Commits
  • 1142bc9 Prepare for version 8.3.1 release
  • 2c47097 Enable operators: full in Mutant and kill all surviving mutants
  • 13e5f29 Kill mutants on streaming client proxy fallback
  • 57a31d5 Consume HTTP gem's shipped RBS signatures
  • be1d25b Remove redundant steep:ignore comments
  • b7f2377 Bump actions/upload-pages-artifact from 4 to 5
  • 9d18ac3 Ignore .mutant directory
  • 8c02c71 Bump actions/deploy-pages from 4 to 5
  • 9cec045 Bump actions/configure-pages from 5 to 6
  • 243d95c Bump actions/upload-pages-artifact from 3 to 4
  • Additional commits viewable in compare view

Updates redis-objects from 1.5.1 to 2.0.0

Changelog

Sourced from redis-objects's changelog.

== 2.0.0 (13 Jan 2026)

Happy New Year! Finally releasing 2.0.0

== 2.0.0.beta2 (8 Dec 2025)

  • Better approach to the legacy key naming bug that preserves backwards compat [Matthew Hively]

== 2.0.0.beta (30 Mar 2023)

  • Updated internal calls to match redis-rb

  • INCOMPAT: Redis.current is no longer allowed due to changes in redis-rb

  • INCOMPAT: The order of items popped off a list by the rarely-used command list.pop(n) to specify multiple elements is now reversed to match redis.

== 1.7.0 (29 Apr 2022)

  • Bumped version to 1.7.0 to revert redis-rb version lock [Nate Wiger]

== 1.6.0 (29 Apr 2022)

  • Upgrade version to 1.6.0 due to redis-rb changes to Redis.current [Nate Wiger]
Commits
  • 1f0dd5f bump to 2.0.0
  • 0b4a13e getting ready for beta2
  • b718d1d readme update
  • 74562d9 Merge pull request #277 from vizlabs/patch
  • ee866fe Move the ensure off of the loop
  • 45aa5b5 Fix resolved conflicts from previous merge
  • 3cc0d76 updated :length to :limit for migrations
  • 6e5a24b Merge pull request #275 from vizlabs/migration
  • 3abf662 Merge branch 'master' into migration
  • 8712fdb Merge pull request #276 from vizlabs/default_prefix
  • Additional commits viewable in compare view

Updates connection_pool from 2.2.5 to 3.0.2

Changelog

Sourced from connection_pool's changelog.

3.0.2

  • Support :name keyword for backwards compatibility #210

3.0.1

  • Add missing fork.rb to gemspec.

3.0.0

  • BREAKING CHANGES ConnectionPool and ConnectionPool::TimedStack now use keyword arguments rather than positional arguments everywhere. Expected impact is minimal as most people use the with API, which is unchanged.
pool = ConnectionPool.new(size: 5, timeout: 5)
pool.checkout(1) # 2.x
pool.reap(30)    # 2.x
pool.checkout(timeout: 1) # 3.x
pool.reap(idle_seconds: 30) # 3.x
  • Dropped support for Ruby <3.2.0

2.5.5

  • Support ConnectionPool::TimedStack#pop(exception: false) #207 to avoid using exceptions as control flow.

2.5.4

2.5.3

  • Fix TruffleRuby/JRuby crash #201

2.5.2

  • Rollback inadvertant change to auto_reload_after_fork default. #200

2.5.1

  • Pass options to TimedStack in checkout #195
  • Optimize connection lookup #196

... (truncated)

Commits

Updates rqrcode from 2.1.1 to 3.2.0

Release notes

Sourced from rqrcode's releases.

v3.2.0

What's Changed

Full Changelog: whomwah/rqrcode@v3.1.1...v3.2.0

v3.1.1

What's Changed

New Contributors

Full Changelog: whomwah/rqrcode@v3.1.0...v3.1.1

v3.1.0

What's Changed

New Contributors

Full Changelog: whomwah/rqrcode@v3.0.0...v3.1.0

v3.0.0

What's Changed

Full Changelog: whomwah/rqrcode@v2.2.0...v3.0.0

v2.1.2

What's Changed

New Contributors

... (truncated)

Changelog

Sourced from rqrcode's changelog.

[3.2.0] - 2026-01-08

Added

  • Comprehensive benchmarking suite in benchmark/ directory for measuring performance and memory usage across all export formats (SVG, PNG, HTML, ANSI)
  • benchmark_helper.rb providing shared utilities for IPS, memory, and stack profiling
  • Rake tasks for running benchmarks individually or all at once
  • benchmark/README.md explaining usage, metrics, and interpretation of results
  • AGENTS.md as a development guide for AI agents

Changed

  • SVG rendering: Improved by +130% (from 184 i/s to 424 i/s) with 71% memory reduction
  • HTML rendering: Now the fastest export format at 1,876 i/s (rendering-only benchmark)
  • Memory efficiency: HTML now uses 6x less memory than SVG (previously 22x)
  • Updated minimum Ruby version requirement to >= 3.2.0
  • Updated GitHub workflow Ruby matrix to test only supported versions (3.2, 3.3, 3.4, 4.0)
  • Updated README.md with benchmark documentation and contribution guidelines

[3.1.1] - 2025-11-25

  • Update required_ruby_version to support >= rather than ~> ready for Ruby 4

[3.1.0] - 2025-04-28

  • Added support for offset_x and offset_y options in the as_svg method for independent x and y padding around QR codes #153

[3.0.0] - 2025-04-24

  • Drop support for Ruby <3.0 in order to keep up with dev dependencies.
  • Breaking Change: The rqrcode_core gem has been updated to version 2.0.0, which includes breaking changes. Please refer to the rqrcode_core changelog

[2.2.0] - 2023-06-17

Changed

  • Allow all ChunkyPNG::Color options to be passed into fill and color on as_png #135
  • Add 3.2 to CI @​petergoldstein #133
  • Development dependency upgrades. Minimum Ruby change #130
  • README updates

[2.1.2] - 2022-07-26

Changed

  • Remove setup script as it just calls bundle install #128
  • Change inline styles to the fill property to allow for strict CSP style-src directive #127
Commits
  • f0d6500 Merge pull request #164 from whomwah/releases/3.2.0
  • e3f69d6 chore(release): bump version to 3.2.0 and update changelog
  • ea5d9cd Merge pull request #163 from whomwah/feat/performance1
  • 36917bf perf(svg): optimize SVG path export for speed and output size
  • 4697d7d docs(benchmark): update benchmark results for 2026-01-08
  • 12a395d chore: update ruby support to >= 3.2 and update dependencies
  • ed9c3a4 refactor(html): optimize as_html for performance
  • a051501 refactor(svg): move color prefix logic to top-level render method
  • b4ef453 docs: add semantic commit message guidelines to AGENTS.md
  • 8220716 chore(deps): update rqrcode_core to 2.1.0
  • Additional commits viewable in compare view

Updates shortener from 0.8.2 to 1.0.2

Commits
  • d2ef0ec Bump version to v1.0.2 for release
  • 6c4ef08 Add Rails 7.2 and 8.0 into CI (#177)
  • 3f20807 concurrent-ruby v1.3.5 has removed the dependency on logger (#176)
  • 0f6e697 Merge pull request #175 from jpmcgrath/remove-fail-fast
  • 4f2afa7 Turn off fail fast, as we want to see which matrix combox succeed
  • 552e77e Merge pull request #171 from Captive-Studio/change-readme-to-md
  • 9dab820 📝 Move README.rdoc to README.md
  • c323af3 Use the writing role for increment_usage_count (#170)
  • c974af5 Ignore more temporary sqlite files
  • 0a7d557 Merge pull request #168 from jpmcgrath/165-generator
  • Additional commits viewable in compare view

Updates bitly from 2.0.1 to 3.1.0

Changelog

Sourced from bitly's changelog.

=== 3.1.0 / 2025-02-18

  • Adds Qrcode class and methods to fetch qrcodes and list qrcodes by group as well as get a summary of scans and retrieve an image
  • Adds Ruby 3.4 to test matrix
  • Updates to latest SonarQube scanner

=== 3.0.0 / 2022-11-08

  • Breaking Removes Group DELETE and Oauth Apps endpoints
  • Updates all URLs in the documentation
  • Adds click_metrics_by_country to Bitlink instances
  • Adds request options and proxy options to the Net::HTTP adapter

=== 2.1.0 / 2022-10-21

  • Strips protocol from the start of a bitlink when fetching/expanding (fixes #80)
  • Adds SonarCloud quality check GitHub Action
  • Uses verifying doubles in tests over generic doubles

=== 2.0.2 / 2022-10-18

  • Allows oauth2 gem version 2
Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

…, redis-objects, connection_pool, rqrcode, shortener and bitly

Bumps [sidekiq-cron](https://github.com/ondrejbartas/sidekiq-cron), [sidekiq](https://github.com/sidekiq/sidekiq), [rails](https://github.com/rails/rails), [sidekiq-cloudwatchmetrics](https://github.com/sj26/sidekiq-cloudwatchmetrics), [twitter](https://github.com/sferik/twitter-ruby), [redis-objects](https://github.com/nateware/redis-objects), [connection_pool](https://github.com/mperham/connection_pool), [rqrcode](https://github.com/whomwah/rqrcode), [shortener](https://github.com/jpmcgrath/shortener) and [bitly](https://github.com/philnash/bitly). These dependencies needed to be updated together.

Updates `sidekiq-cron` from 1.2.0 to 2.4.0
- [Release notes](https://github.com/ondrejbartas/sidekiq-cron/releases)
- [Changelog](https://github.com/sidekiq-cron/sidekiq-cron/blob/master/CHANGELOG.md)
- [Commits](sidekiq-cron/sidekiq-cron@v1.2.0...v2.4.0)

Updates `sidekiq` from 5.2.10 to 7.3.9
- [Changelog](https://github.com/sidekiq/sidekiq/blob/main/Changes.md)
- [Commits](sidekiq/sidekiq@v5.2.10...v7.3.9)

Updates `rails` from 6.1.7.8 to 6.1.7.10
- [Release notes](https://github.com/rails/rails/releases)
- [Commits](rails/rails@v6.1.7.8...v6.1.7.10)

Updates `sidekiq-cloudwatchmetrics` from 2.2.0 to 2.9.0
- [Release notes](https://github.com/sj26/sidekiq-cloudwatchmetrics/releases)
- [Commits](sj26/sidekiq-cloudwatchmetrics@v2.2.0...v2.9.0)

Updates `twitter` from 7.0.0 to 8.3.1
- [Changelog](https://github.com/sferik/twitter-ruby/blob/master/CHANGELOG.md)
- [Commits](sferik/twitter-ruby@v7.0.0...v8.3.1)

Updates `redis-objects` from 1.5.1 to 2.0.0
- [Changelog](https://github.com/nateware/redis-objects/blob/master/CHANGELOG.rdoc)
- [Commits](nateware/redis-objects@v1.5.1...v2.0.0)

Updates `connection_pool` from 2.2.5 to 3.0.2
- [Changelog](https://github.com/mperham/connection_pool/blob/main/Changes.md)
- [Commits](mperham/connection_pool@v2.2.5...v3.0.2)

Updates `rqrcode` from 2.1.1 to 3.2.0
- [Release notes](https://github.com/whomwah/rqrcode/releases)
- [Changelog](https://github.com/whomwah/rqrcode/blob/main/CHANGELOG.md)
- [Commits](whomwah/rqrcode@v2.1.1...v3.2.0)

Updates `shortener` from 0.8.2 to 1.0.2
- [Commits](jpmcgrath/shortener@v0.8.2...v1.0.2)

Updates `bitly` from 2.0.1 to 3.1.0
- [Release notes](https://github.com/philnash/bitly/releases)
- [Changelog](https://github.com/philnash/bitly/blob/main/History.txt)
- [Commits](https://github.com/philnash/bitly/commits)

---
updated-dependencies:
- dependency-name: sidekiq-cron
  dependency-version: 2.4.0
  dependency-type: direct:production
- dependency-name: sidekiq
  dependency-version: 7.3.9
  dependency-type: direct:production
- dependency-name: rails
  dependency-version: 6.1.7.10
  dependency-type: direct:production
- dependency-name: sidekiq-cloudwatchmetrics
  dependency-version: 2.9.0
  dependency-type: direct:production
- dependency-name: twitter
  dependency-version: 8.3.1
  dependency-type: direct:production
- dependency-name: redis-objects
  dependency-version: 2.0.0
  dependency-type: direct:production
- dependency-name: connection_pool
  dependency-version: 3.0.2
  dependency-type: direct:production
- dependency-name: rqrcode
  dependency-version: 3.2.0
  dependency-type: direct:production
- dependency-name: shortener
  dependency-version: 1.0.2
  dependency-type: direct:production
- dependency-name: bitly
  dependency-version: 3.1.0
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file ruby Pull requests that update ruby code labels May 12, 2026
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file ruby Pull requests that update ruby code labels May 12, 2026
@melsawy melsawy changed the title Bump sidekiq-cron, sidekiq, rails, sidekiq-cloudwatchmetrics, twitter, redis-objects, connection_pool, rqrcode, shortener and bitly [BLOCKED BY RUBY 3.1 UPGRADE] Bump sidekiq-cron, sidekiq, rails, sidekiq-cloudwatchmetrics, twitter, redis-objects, connection_pool, rqrcode, shortener and bitly May 13, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file ruby Pull requests that update ruby code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants