Permalink
Browse files

Requires JSON gem version 1.7.7 or above as it contains an important

security fix.
  • Loading branch information...
1 parent 5fdbec7 commit 78cd3b0e538d7e0d3ca7869e796d98266afcd6b4 @chancancode chancancode committed Nov 27, 2013
Showing with 6 additions and 2 deletions.
  1. +4 −0 activesupport/CHANGELOG.md
  2. +2 −2 activesupport/activesupport.gemspec
@@ -1,3 +1,7 @@
+* Requires JSON gem version 1.7.7 or above due to a security issue in older versions.
+
+ *Godfrey Chan*
+
* Add `ActiveSupport::Testing::TimeHelpers#travel` and `#travel_to`. These methods change current
time to the given time or time difference by stubbing `Time.now` and `Date.today` to return the
time or date after the difference calculation, or the time or date that got passed into the
@@ -20,8 +20,8 @@ Gem::Specification.new do |s|
s.rdoc_options.concat ['--encoding', 'UTF-8']
- s.add_dependency('i18n', '~> 0.6', '>= 0.6.4')
- s.add_dependency 'json', '~> 1.7'
+ s.add_dependency 'i18n', '~> 0.6', '>= 0.6.4'
+ s.add_dependency 'json', '~> 1.7', '>= 1.7.7'
s.add_dependency 'tzinfo', '~> 1.1'
s.add_dependency 'minitest', '~> 5.0'
s.add_dependency 'thread_safe','~> 0.1'

0 comments on commit 78cd3b0

Please sign in to comment.