Open
Description
There have been some reported vulnerabilities with the bundled version of bundler.
E.g. https://www.cvedetails.com/cve/CVE-2016-7954/
Ruby engine, which wraps the ruby code we use, is no longer supported and so this vulnerability will not be fixed. The roadmap for Pact Python is to replace the Ruby code with a replacement being built in Rust. Will keep this open until that happens.