3.1.3 (16 June 2015) * Upgrade jquery-ujs to do proper checks for cross domain requests. Fix CSP bypass vulnerability. CVE-2015-1840. 3.1.4 (1 Sep 2015) * Fix IE7 bug on isCrossDomain check.