Issue #16279 has been updated by hsbt (Hiroshi SHIBATA). Backport changed from 2.5: UNKNOWN, 2.6: UNKNOWN to 2.5: REQUIRED, 2.6: REQUIRED Assignee set to hsbt (Hiroshi SHIBATA) Status changed from Open to Closed ---------------------------------------- Bug #16279: Backport 463092b8 https://bugs.ruby-lang.org/issues/16279#change-82313 * Author: twk3 (DJ Mountney) * Status: Closed * Priority: Normal * Assignee: hsbt (Hiroshi SHIBATA) * Target version: * ruby -v: * Backport: 2.5: REQUIRED, 2.6: REQUIRED ---------------------------------------- Please backport the rake 12.3.3 update into the stable releases rev: 463092b84da7933f307cc8747f948f68ef19f5fd This patch resolves a public disclosed minor security issue: https://hackerone.com/reports/651518 And causes the current version of ruby to fail security scanning tests. -- https://bugs.ruby-lang.org/ Unsubscribe: <mailto:ruby-core-request / ruby-lang.org?subject=unsubscribe> <http://lists.ruby-lang.org/cgi-bin/mailman/options/ruby-core>