A bunch of rails versions released: 2.8.13, 3.1.12, 3.2.13 - with fixes to the following vulnerabilities:
CVE-2013-1854 Symbol DoS vulnerability in Active Record
CVE-2013-1855 XSS vulnerability in sanitize_css in Action Pack
CVE-2013-1856 XML Parsing Vulnerability affecting JRuby users
CVE-2013-1857 XSS Vulnerability in the sanitize helper of Ruby on Rails
You can find more info about mentioned CVEs via link provided. Please bump rails versions.
*** This bug has been marked as a duplicate of bug 462452 ***