From f9be18fc1f36208c237e83eba6e38841f335893a Mon Sep 17 00:00:00 2001 From: Kasper Grubbe Date: Wed, 31 Oct 2018 01:22:55 +0000 Subject: [PATCH] Use Loofah 2.2.3 to address CVE-2018-16468 More info at https://github.com/flavorjones/loofah/issues/154 --- rails-html-sanitizer.gemspec | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/rails-html-sanitizer.gemspec b/rails-html-sanitizer.gemspec index e774244..f0a5be8 100644 --- a/rails-html-sanitizer.gemspec +++ b/rails-html-sanitizer.gemspec @@ -17,7 +17,7 @@ Gem::Specification.new do |spec| spec.test_files = Dir["test/**/*"] spec.require_paths = ["lib"] - spec.add_dependency "loofah", "~> 2.2", ">= 2.2.2" + spec.add_dependency "loofah", "~> 2.2", ">= 2.2.3" spec.add_development_dependency "bundler", "~> 1.3" spec.add_development_dependency "rake"