mirror of
https://github.com/rails/rails.git
synced 2022-11-09 12:12:34 -05:00
33cb47ee48
Before we were calling to_sym in the mime type, even when it is unknown what can cause denial of service since symbols are not removed by the garbage collector. Fixes: CVE-2014-0082 |
||
---|---|---|
.. | ||
actionpack | ||
activerecord | ||
fixtures | ||
lib/controller | ||
template | ||
tmp | ||
abstract_unit.rb | ||
active_record_unit.rb |