Rails Security Vulnerability

3 views
Skip to first unread message

Mr Jaba

unread,
Jan 9, 2013, 4:11:49 AM1/9/13
to IPRUG
Morning all, 

Some of you may have seen last night that a rather critical security issue was revealed in all versions of Rails, I won't explain all the details here the following links give more information:


Suffice to say it's a very serious issue allowing arbitrary code execution, SQL injection, the works. The Rails core team are advising everyone to upgrade *immediately* to new versions of Rails which are: 3.2.11, 3.1.10, 3.0.19, 2.3.15 

There are some workarounds listed in the discussion above as well if you can't immediately upgrade. 


Tom

Reply all
Reply to author
Forward
0 new messages