Skip to content

Conversation

sikachu
Copy link
Contributor

@sikachu sikachu commented Mar 10, 2021

I just merged rails/activerecord-session_store#151 and release version 2.0.0 which contains a fix and mitigation. Users are now advised to upgrade to version 2.0.0 or later.

Please let me know if this patch is ok, or if there's anything else I should fix. Thank you very much.

@rschultheis
Copy link
Contributor

Thank you @sikachu , we have updated the GitHub Advisory: GHSA-cvw2-xj8r-mjf7

@reedloden reedloden merged commit 3443c06 into rubysec:master Mar 10, 2021
@reedloden
Copy link
Member

Thank you, @sikachu, for the PR!

@sikachu sikachu deleted the patch-1 branch March 11, 2021 02:14
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants