Class: Dependabot::Bundler::UpdateChecker
- Inherits:
-
UpdateCheckers::Base
- Object
- UpdateCheckers::Base
- Dependabot::Bundler::UpdateChecker
show all
- Defined in:
- lib/dependabot/bundler/update_checker.rb,
lib/dependabot/bundler/update_checker/file_preparer.rb,
lib/dependabot/bundler/update_checker/force_updater.rb,
lib/dependabot/bundler/update_checker/version_resolver.rb,
lib/dependabot/bundler/update_checker/requirements_updater.rb,
lib/dependabot/bundler/update_checker/latest_version_finder.rb,
lib/dependabot/bundler/update_checker/shared_bundler_helpers.rb
Defined Under Namespace
Modules: SharedBundlerHelpers
Classes: FilePreparer, ForceUpdater, LatestVersionFinder, RequirementsUpdater, VersionResolver
Instance Method Summary
collapse
Instance Method Details
#latest_resolvable_version ⇒ Object
23
24
25
26
27
|
# File 'lib/dependabot/bundler/update_checker.rb', line 23
def latest_resolvable_version
return latest_resolvable_version_for_git_dependency if git_dependency?
latest_resolvable_version_details&.fetch(:version)
end
|
#latest_resolvable_version_with_no_unlock ⇒ Object
41
42
43
44
45
46
47
48
49
50
51
52
53
54
|
# File 'lib/dependabot/bundler/update_checker.rb', line 41
def latest_resolvable_version_with_no_unlock
current_ver = dependency.version
return current_ver if git_dependency? && git_commit_checker.pinned?
@latest_resolvable_version_detail_with_no_unlock ||=
version_resolver(remove_git_source: false, unlock_requirement: false).
latest_resolvable_version_details
if git_dependency?
@latest_resolvable_version_detail_with_no_unlock&.fetch(:commit_sha)
else
@latest_resolvable_version_detail_with_no_unlock&.fetch(:version)
end
end
|
#latest_version ⇒ Object
17
18
19
20
21
|
# File 'lib/dependabot/bundler/update_checker.rb', line 17
def latest_version
return latest_version_for_git_dependency if git_dependency?
latest_version_details&.fetch(:version)
end
|
#lowest_resolvable_security_fix_version ⇒ Object
29
30
31
32
33
34
35
36
37
38
39
|
# File 'lib/dependabot/bundler/update_checker.rb', line 29
def lowest_resolvable_security_fix_version
raise "Dependency not vulnerable!" unless vulnerable?
return latest_resolvable_version if git_dependency?
lowest_fix =
latest_version_finder(remove_git_source: false).
lowest_security_fix_version
return unless lowest_fix
resolvable?(lowest_fix) ? lowest_fix : latest_resolvable_version
end
|
#requirements_unlocked_or_can_be? ⇒ Boolean
80
81
82
83
84
85
86
87
88
89
90
91
92
93
|
# File 'lib/dependabot/bundler/update_checker.rb', line 80
def requirements_unlocked_or_can_be?
dependency.requirements.
select { |r| requirement_class.new(r[:requirement]).specific? }.
all? do |req|
file = dependency_files.find { |f| f.name == req.fetch(:file) }
updated = FileUpdater::RequirementReplacer.new(
dependency: dependency,
file_type: file.name.end_with?("gemspec") ? :gemspec : :gemfile,
updated_requirement: "whatever"
).rewrite(file.content)
updated != file.content
end
end
|
#requirements_update_strategy ⇒ Object
95
96
97
98
99
100
101
102
103
|
# File 'lib/dependabot/bundler/update_checker.rb', line 95
def requirements_update_strategy
if @requirements_update_strategy
return @requirements_update_strategy.to_sym
end
dependency.version.nil? ? :bump_versions_if_necessary : :bump_versions
end
|
#updated_requirements ⇒ Object
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
|
# File 'lib/dependabot/bundler/update_checker.rb', line 56
def updated_requirements
latest_version_for_req_updater =
if switching_source_from_git_to_rubygems?
git_commit_checker.local_tag_for_latest_version.fetch(:version).to_s
else
latest_version_details&.fetch(:version)&.to_s
end
latest_resolvable_version_for_req_updater =
if switching_source_from_git_to_rubygems?
latest_version_for_req_updater
else
preferred_resolvable_version_details&.fetch(:version)&.to_s
end
RequirementsUpdater.new(
requirements: dependency.requirements,
update_strategy: requirements_update_strategy,
updated_source: updated_source,
latest_version: latest_version_for_req_updater,
latest_resolvable_version: latest_resolvable_version_for_req_updater
).updated_requirements
end
|