pkgsrc/www/ruby-actionview60/distinfo
taca efabc36003 www/ruby-rails60: update to 6.0.3.7
Real changes are in www/ruby-actionpack60 only.

## Rails 6.0.3.7 (May 05, 2021) ##

*   Prevent catastrophic backtracking during mime parsing
    CVE-2021-22902

*   Prevent regex DoS in HTTP token authentication
    CVE-2021-22904

*   Prevent string polymorphic route arguments.

    `url_for` supports building polymorphic URLs via an array
    of arguments (usually symbols and records). If a developer passes a
    user input array, strings can result in unwanted route helper calls.

    CVE-2021-22885

    *Gannon McGibbon*
2021-05-08 14:02:33 +00:00

6 lines
412 B
Text

$NetBSD: distinfo,v 1.9 2021/05/08 14:02:33 taca Exp $
SHA1 (actionview-6.0.3.7.gem) = 1ba54e1bb8a9a82f2b653c137dad1e4f2ccfc35a
RMD160 (actionview-6.0.3.7.gem) = db65a9c3585d5b2946c47cf47080d5a3bb8b9e55
SHA512 (actionview-6.0.3.7.gem) = 8c95b885126ab404a13aef5c2bb3f63d34152d5b10191cb540633e649074c0fae53f0ee9c992d7f8349b81d515ddaaaba8ffc558bb1f6604af8ec0edbdfc8492
Size (actionview-6.0.3.7.gem) = 169984 bytes