Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 377471 - Upgrade to rails 3.0
Summary: Upgrade to rails 3.0
Status: RESOLVED WONTFIX
Alias: None
Product: Gentoo Hosted Projects
Classification: Unclassified
Component: RecruitingWebapp (show other bugs)
Hardware: All Linux
: Normal normal
Assignee: Joachim Bartosik (RETIRED)
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2011-08-02 20:39 UTC by Petteri Räty (RETIRED)
Modified: 2013-04-08 22:01 UTC (History)
1 user (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Petteri Räty (RETIRED) gentoo-dev 2011-08-02 20:39:46 UTC
I just fixed two XSS flaws reported by klondike on #gentoo-devrel. First was caused due to hobo not escaping EmailAddress and the second by we putting multiple choice answer content through with erb and no h. I think we should go to hobo 1.3.0.RC1 and rails 3.0 fast to benefit from the html_safe work.
Comment 1 Joachim Bartosik (RETIRED) gentoo-dev 2013-04-08 22:01:30 UTC
The application is no longer maintained or used.