Skip to content

Commit

Permalink
Update ring dependency
Browse files Browse the repository at this point in the history
Ring < 1.5.1 has a path-walking vulnerability when used from the
filesystem (not in an uberjar or war). See
https://groups.google.com/d/msg/clojure-sec/WOMCpKAFkDE/ObzkAYhnBgAJ
  • Loading branch information
tobias committed Jan 12, 2017
1 parent a3b1c11 commit 28b8a9a
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion project.clj
Original file line number Diff line number Diff line change
Expand Up @@ -76,7 +76,7 @@
java.classpath "0.2.3"
tools.nrepl "0.2.11"
tools.reader "0.10.0"
ring "1.4.0"
ring "1.5.1"
clj-time "0.9.0"
cheshire "5.4.0"
data.fressian "0.2.0"
Expand Down

0 comments on commit 28b8a9a

Please sign in to comment.