Buco di sicurezza in Rails 2.3.9 e 3.0

Scritto da Silvio Relli oltre un anno fa. Oct18

E' stato scoperto che le versioni 2.3.9 e 3.0 di Rails contengono una vulnerabilità  nella gestione dei nested attributes che consente, tramite manipolazione dei parametri, di modificare record arbitrari sul sistema.

Versioni precedenti da quelle sopra menzionate non sono affette dal problema.

Sono state immediatamente rilasciate le versioni 2.3.10 e 3.0.1 per correggere la falla.

Comments

  1. linsanguo88 dice 27/10/2011 at 09h40 later:

    A versatile and ultra striking pair of Ray Ban Uk sunglasses for women, the Ray Ban Wayfarer are highly reminiscent of a cat-eye style but with a more subtle shape, allowing you to channel the iconic look but in a more understated fashion. The sunglasses feature a thick acetate frame that becomes thicker at the outer vertical edges and draws to a point at the upper outer corners creating a suggestion of the cat-eye flick. The arms become narrower towards the ear stems and display the signature Ray-Ban logo in raised metal lettering positioned adjacent to the hinge. The overall aesthetic detailing remains minimal accentuating the versatility of the sunglasses. The Ray Ban Aviators are available in neutral and flattering colours including a shiny havana and tortoiseshell patterned frame with crystal green lenses and a shiny black frame with crystal green lenses. Some styles are also available with polarised lenses for the ultimate in visual quality and protection.

    This comment has been flagged for moderator approval. It won't appear on this blog until the author approves it.

Aggiungi sito/email

reCaptcha

   Anteprima commento