deck.rb icon indicating copy to clipboard operation
deck.rb copied to clipboard

Redcarpet has a XSS vulnerability in versions < 3.2.2

Open Dangeranger opened this issue 5 years ago • 2 comments

See the details of the report for the vulnerability OSVDB-120415: http://danlec.com/blog/bug-in-sundown-and-redcarpet

This update is a drop in replacement and all tests within Deck.rb pass.

Dangeranger avatar May 19 '19 22:05 Dangeranger

@alexch Just checking in to see if this is something you want to merge? Otherwise I'll probably switch the gem in our fork over to my fork of Deck.rb.

Dangeranger avatar May 21 '19 21:05 Dangeranger

@alexch Thoughts on this?

Dangeranger avatar May 29 '19 21:05 Dangeranger