pkgsrc/www/ruby-actioncable61/distinfo
taca ab97c3b62b www/ruby-rails61: update to 6.1.3.2
Real changes are in www/ruby-actionpack61 only.

## Rails 6.1.3.2 (May 05, 2021) ##

*   Prevent open redirects by correctly escaping the host allow list
    CVE-2021-22903

*   Prevent catastrophic backtracking during mime parsing
    CVE-2021-22902

*   Prevent regex DoS in HTTP token authentication
    CVE-2021-22904

*   Prevent string polymorphic route arguments.

    `url_for` supports building polymorphic URLs via an array
    of arguments (usually symbols and records). If a developer passes a
    user input array, strings can result in unwanted route helper calls.

    CVE-2021-22885

    *Gannon McGibbon*
2021-05-08 14:08:55 +00:00

6 lines
415 B
Text

$NetBSD: distinfo,v 1.4 2021/05/08 14:08:56 taca Exp $
SHA1 (actioncable-6.1.3.2.gem) = 72159227fea0947d05c7de5c54965787dd13cf4f
RMD160 (actioncable-6.1.3.2.gem) = f8cec04a5b325e4228fa0af16eb94b0dcba7a19c
SHA512 (actioncable-6.1.3.2.gem) = 23b7ed4baec9a48d455261f1b3514fccc50f3ad256825c8c35a6a0c43dec8b7f72796931aa4216333d94d1afb81a47fb3ae1eaf67d771e204f857f5d0d64bdbb
Size (actioncable-6.1.3.2.gem) = 41984 bytes