Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add vulnerability warning to README #966

Merged
merged 3 commits into from Nov 20, 2019
Merged

Add vulnerability warning to README #966

merged 3 commits into from Nov 20, 2019

Conversation

CHTJonas
Copy link
Contributor

This PR adds a warning notice regarding CVE-2015-9284 and directs the user to the FAQ where they can find steps to mitigate it.

This addresses some of the suggestions raised by folks in #809.

This commit adds a warning notice about CVE-2015-9284 and directs the user to the FAQ where they can find steps to mitigate it.
@CHTJonas
Copy link
Contributor Author

CHTJonas commented Aug 9, 2019

@tmilewski any chance of a merge on this? It would be good to put a warning on the front page of the repo for new users/anyone who comes looking for mitigation techniques.

@CHTJonas
Copy link
Contributor Author

CHTJonas commented Oct 6, 2019

Paging anyone @omniauth - this should literally take 10 seconds to review!

@CHTJonas
Copy link
Contributor Author

Copy link
Member

@BobbyMcWho BobbyMcWho left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Sorry this took so long @CHTJonas, I just recently got maintainer rights to this repo, and I'm working through the backlog of issues and PR's as I can find time to.

Thank you for contributing!

@BobbyMcWho
Copy link
Member

Closing and reopening to trigger a CI job based on current master.

@BobbyMcWho BobbyMcWho closed this Nov 20, 2019
@BobbyMcWho BobbyMcWho reopened this Nov 20, 2019
@BobbyMcWho BobbyMcWho merged commit 894cb9c into omniauth:master Nov 20, 2019
@CHTJonas
Copy link
Contributor Author

Thanks!

@CHTJonas CHTJonas deleted the patch-1 branch November 20, 2019 17:10
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants