--- - branch: MAIN date: Mon Feb 1 13:48:02 UTC 2016 files: - new: '1.22' old: '1.21' path: pkgsrc/www/ruby-actionpack32/distinfo pathrev: pkgsrc/www/ruby-actionpack32/distinfo@1.22 type: modified id: 20160201T134802Z.96493326a92fde80427f7e944ff3181da8e909f4 log: | Note update of ruby-actionpack32 to 3.2.22.1. * Use secure string comparisons for basic auth username / password. (CVE-2015-7576) * Stop caching mime types globally. (CVE-2016-0751) * Don't short-circuit reject_if proc. (CVE-2015-7577) * Allow :file to be outside rails root, but anything else must be inside the rails view directory. (CVE-2016-0752) module: pkgsrc subject: 'CVS commit: pkgsrc/www/ruby-actionpack32' unixtime: '1454334482' user: taca