pkgsrc/www/ruby-rails60/distinfo
taca a9f7375312 www/ruby-rails60: update to 6.0.3.5
databases/ruby-activerecord60:

## Rails 6.0.3.5 (February 10, 2021) ##

*   Fix possible DoS vector in PostgreSQL money type

    Carefully crafted input can cause a DoS via the regular expressions used
    for validating the money format in the PostgreSQL adapter.  This patch
    fixes the regexp.

    Thanks to @dee-see from Hackerone for this patch!

    [CVE-2021-22880]

    *Aaron Patterson*

www/ruby-actionpack60

## Rails 6.0.3.5 (February 10, 2021) ##

*   Prevent open redirect when allowed host starts with a dot

    [CVE-2021-22881]

    Thanks to @tktech (https://hackerone.com/tktech) for reporting this
    issue and the patch!

    *Aaron Patterson*
2021-02-11 14:30:06 +00:00

6 lines
390 B
Text

$NetBSD: distinfo,v 1.7 2021/02/11 14:30:08 taca Exp $
SHA1 (rails-6.0.3.5.gem) = 59d679143a690d6f46d03e139fe86fa629d07946
RMD160 (rails-6.0.3.5.gem) = ea4f89eefeead707678813dff70c75acf708b863
SHA512 (rails-6.0.3.5.gem) = 308571595e54d1fc92fef1332ae449f484d9b6f66504eff43da61b74341dcb32671f84a5481899ded1a0b32f1b78702b2dd4a671db5b47d267b60d67bc04041a
Size (rails-6.0.3.5.gem) = 6656 bytes