Skip to content

Conversation

@mehlah
Copy link

@mehlah mehlah commented Mar 30, 2015

Since Rails 4.0.10, a JS comment is prepended to JSONP callbacks, to address CVE-2014-4671.
Introduced in Rails at rails/rails#16109
The build is still 🔴 for 0-8-stable due to other errors (I'm taking a look)

Since Rails 4.0.10, it prepends a JS comment to JSONP callbacks,
to address CVE-2014-4671.
Introduced in Rails at rails/rails#16109
@remear
Copy link
Member

remear commented Mar 15, 2016

0-8-stable currently has no errors so it was probably fixed along the way. Closing this.

@remear remear closed this Mar 15, 2016
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants