pkgsrc/www/ruby-actioncable60/distinfo
taca a9f7375312 www/ruby-rails60: update to 6.0.3.5
databases/ruby-activerecord60:

## Rails 6.0.3.5 (February 10, 2021) ##

*   Fix possible DoS vector in PostgreSQL money type

    Carefully crafted input can cause a DoS via the regular expressions used
    for validating the money format in the PostgreSQL adapter.  This patch
    fixes the regexp.

    Thanks to @dee-see from Hackerone for this patch!

    [CVE-2021-22880]

    *Aaron Patterson*

www/ruby-actionpack60

## Rails 6.0.3.5 (February 10, 2021) ##

*   Prevent open redirect when allowed host starts with a dot

    [CVE-2021-22881]

    Thanks to @tktech (https://hackerone.com/tktech) for reporting this
    issue and the patch!

    *Aaron Patterson*
2021-02-11 14:30:06 +00:00

6 lines
415 B
Text

$NetBSD: distinfo,v 1.7 2021/02/11 14:30:07 taca Exp $
SHA1 (actioncable-6.0.3.5.gem) = d4fb908b4ce65ce560e8a03177a9b4f3def3c59c
RMD160 (actioncable-6.0.3.5.gem) = 47e153042bb9c1e27ceb806365752bab8d38b043
SHA512 (actioncable-6.0.3.5.gem) = 60e131d676dcb9537abe9ba7ec149944df13017fcdb52dc1d33618cba96be593df0145cfc66b3cab383e5d07bc9cfeba37446bdb4dfc7ae50bf43308349199e1
Size (actioncable-6.0.3.5.gem) = 42496 bytes