pkgsrc/www/ruby-actionview61/distinfo
taca ab97c3b62b www/ruby-rails61: update to 6.1.3.2
Real changes are in www/ruby-actionpack61 only.

## Rails 6.1.3.2 (May 05, 2021) ##

*   Prevent open redirects by correctly escaping the host allow list
    CVE-2021-22903

*   Prevent catastrophic backtracking during mime parsing
    CVE-2021-22902

*   Prevent regex DoS in HTTP token authentication
    CVE-2021-22904

*   Prevent string polymorphic route arguments.

    `url_for` supports building polymorphic URLs via an array
    of arguments (usually symbols and records). If a developer passes a
    user input array, strings can result in unwanted route helper calls.

    CVE-2021-22885

    *Gannon McGibbon*
2021-05-08 14:08:55 +00:00

6 lines
412 B
Text

$NetBSD: distinfo,v 1.4 2021/05/08 14:08:56 taca Exp $
SHA1 (actionview-6.1.3.2.gem) = c3ea9125b5e53f3bb8ffa6713ab2360315a1dd12
RMD160 (actionview-6.1.3.2.gem) = 7ad20679d1b3f387cf55c27482217ccd8112c237
SHA512 (actionview-6.1.3.2.gem) = 9da15c7a7edb6bb64dcb187b553847d8a2b312fb1044398dcdd206248287a5e83c3929430011191c3e6f5bb0cd1393f9bae2a0b6621fe19897efd34b8511302c
Size (actionview-6.1.3.2.gem) = 171008 bytes