Class: Dependabot::Bundler::UpdateChecker
- Inherits:
-
UpdateCheckers::Base
- Object
- UpdateCheckers::Base
- Dependabot::Bundler::UpdateChecker
show all
- Defined in:
- lib/dependabot/bundler/update_checker.rb,
lib/dependabot/bundler/update_checker/file_preparer.rb,
lib/dependabot/bundler/update_checker/force_updater.rb,
lib/dependabot/bundler/update_checker/version_resolver.rb,
lib/dependabot/bundler/update_checker/requirements_updater.rb,
lib/dependabot/bundler/update_checker/latest_version_finder.rb,
lib/dependabot/bundler/update_checker/shared_bundler_helpers.rb,
lib/dependabot/bundler/update_checker/conflicting_dependency_resolver.rb,
lib/dependabot/bundler/update_checker/latest_version_finder/dependency_source.rb
Defined Under Namespace
Modules: SharedBundlerHelpers
Classes: ConflictingDependencyResolver, FilePreparer, ForceUpdater, LatestVersionFinder, RequirementsUpdater, VersionResolver
Instance Method Summary
collapse
Instance Method Details
#conflicting_dependencies ⇒ Object
107
108
109
110
111
112
113
114
115
116
117
|
# File 'lib/dependabot/bundler/update_checker.rb', line 107
def conflicting_dependencies
ConflictingDependencyResolver.new(
dependency_files: dependency_files,
repo_contents_path: repo_contents_path,
credentials: credentials,
options: options
).conflicting_dependencies(
dependency: dependency,
target_version: lowest_security_fix_version
)
end
|
#latest_resolvable_version ⇒ Object
27
28
29
30
31
|
# File 'lib/dependabot/bundler/update_checker.rb', line 27
def latest_resolvable_version
return latest_resolvable_version_for_git_dependency if git_dependency?
latest_resolvable_version_details&.fetch(:version)
end
|
#latest_resolvable_version_with_no_unlock ⇒ Object
50
51
52
53
54
55
56
57
58
59
60
61
62
63
|
# File 'lib/dependabot/bundler/update_checker.rb', line 50
def latest_resolvable_version_with_no_unlock
current_ver = dependency.version
return current_ver if git_dependency? && git_commit_checker.pinned?
@latest_resolvable_version_detail_with_no_unlock ||=
version_resolver(remove_git_source: false, unlock_requirement: false)
.latest_resolvable_version_details
if git_dependency?
@latest_resolvable_version_detail_with_no_unlock&.fetch(:commit_sha)
else
@latest_resolvable_version_detail_with_no_unlock&.fetch(:version)
end
end
|
#latest_version ⇒ Object
21
22
23
24
25
|
# File 'lib/dependabot/bundler/update_checker.rb', line 21
def latest_version
return latest_version_for_git_dependency if git_dependency?
latest_version_details&.fetch(:version)
end
|
#lowest_resolvable_security_fix_version ⇒ Object
38
39
40
41
42
43
44
45
46
47
48
|
# File 'lib/dependabot/bundler/update_checker.rb', line 38
def lowest_resolvable_security_fix_version
raise "Dependency not vulnerable!" unless vulnerable?
return latest_resolvable_version if git_dependency?
lowest_fix =
latest_version_finder(remove_git_source: false)
.lowest_security_fix_version
return unless lowest_fix && resolvable?(lowest_fix)
lowest_fix
end
|
#lowest_security_fix_version ⇒ Object
33
34
35
36
|
# File 'lib/dependabot/bundler/update_checker.rb', line 33
def lowest_security_fix_version
latest_version_finder(remove_git_source: false)
.lowest_security_fix_version
end
|
#requirements_unlocked_or_can_be? ⇒ Boolean
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
|
# File 'lib/dependabot/bundler/update_checker.rb', line 78
def requirements_unlocked_or_can_be?
return true if requirements_unlocked?
return false if requirements_update_strategy.lockfile_only?
dependency.specific_requirements
.all? do |req|
file = T.must(dependency_files.find { |f| f.name == req.fetch(:file) })
updated = FileUpdater::RequirementReplacer.new(
dependency: dependency,
file_type: file.name.end_with?("gemspec") ? :gemspec : :gemfile,
updated_requirement: "whatever"
).rewrite(file.content)
updated != file.content
end
end
|
#requirements_update_strategy ⇒ Object
95
96
97
98
99
100
101
102
103
104
105
|
# File 'lib/dependabot/bundler/update_checker.rb', line 95
def requirements_update_strategy
return @requirements_update_strategy if @requirements_update_strategy
if dependency.version.nil?
RequirementsUpdateStrategy::BumpVersionsIfNecessary
else
RequirementsUpdateStrategy::BumpVersions
end
end
|
#updated_requirements ⇒ Object
65
66
67
68
69
70
71
72
73
74
75
76
|
# File 'lib/dependabot/bundler/update_checker.rb', line 65
def updated_requirements
latest_version_for_req_updater = latest_version_details&.fetch(:version)&.to_s
latest_resolvable_version_for_req_updater = preferred_resolvable_version_details&.fetch(:version)&.to_s
RequirementsUpdater.new(
requirements: dependency.requirements,
update_strategy: requirements_update_strategy,
updated_source: updated_source,
latest_version: latest_version_for_req_updater,
latest_resolvable_version: latest_resolvable_version_for_req_updater
).updated_requirements
end
|