Code Monkey home page Code Monkey logo

didww-v3-rails-sample's People

Stargazers

 avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

didww-v3-rails-sample's Issues

update rails to fix `CVE-2023-28362` vulnerability

Name: actionpack
Version: 6.1.7.3
Advisory: CVE-2023-28362
Criticality: Unknown
URL: https://discuss.rubyonrails.org/t/cve-2023-28362-possible-xss-via-user-supplied-values-to-redirect-to/83132
Title: Possible XSS via User Supplied Values to redirect_to
Solution: upgrade to ~> 6.1.7.4, >= 7.0.5.1

Bug in search form on the Coverage, Available and DID Numbers

Description:

After filtering by Country and Region and submitting the search form filters dependent from Country is disappeared from the page.

Expected result:

Filter that belongs to Country should be loaded after reloading the page and should be selected previously selected option.

Use last version of V3 API

In order to show the full-featured V3-API, we have to use in the DIDWW demo client the last V3-API version.

So every request should be with the following HTTP header to use the last API 3 version

X-Didww-Api-Version: 2022-05-10

fix vulnerability on the actionpack gem

Name: actionpack
    Version: 5.2.8.1
    Advisory: CVE-2023-22792
    Criticality: Unknown
    URL: https://github.com/rails/rails/releases/tag/v7.0.4.1
    Title: ReDoS based DoS vulnerability in Action Dispatch
    Solution: upgrade to ~> 5.2.8, >= 5.2.8.15, ~> 6.1.7, >= 6.1.7.1, >= 7.0.4.1

mimemagic could not be found in any of the sources listed

After executing bundle install
I got the following output:

Fetching gem metadata from https://rubygems.org/.........
Your bundle is locked to mimemagic (0.3.5), but that version could not be found in any of the sources listed in your Gemfile. If you haven't changed sources, that means the
author of mimemagic (0.3.5) has removed it. You'll need to update your bundle to a version other than mimemagic (0.3.5) that hasn't been removed in order to install.

It seems like the mimemagic gem should be updated from v0.3.5 to v0.3.10.

fix vulnerability

Name: activesupport
Version: 6.1.7.4
Advisory: CVE-2023-38037
Criticality: Unknown
URL: https://github.com/rails/rails/releases/tag/v7.0.7.1
Title: Possible File Disclosure of Locally Encrypted Files
Solution: upgrade to ~> 6.1.7, >= 6.1.7.5, >= 7.0.7.1

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.