From bd6e94fc7c9c1790622ba29655f6e7e27044dd64 Mon Sep 17 00:00:00 2001 From: Louise Crow Date: Wed, 17 Jun 2015 18:33:05 +0100 Subject: Switch xml backend to nokogiri to avoiC CVE-2015-3227. --- config/initializers/xml.rb | 2 ++ 1 file changed, 2 insertions(+) create mode 100644 config/initializers/xml.rb (limited to 'config/initializers/xml.rb') diff --git a/config/initializers/xml.rb b/config/initializers/xml.rb new file mode 100644 index 000000000..aefd54214 --- /dev/null +++ b/config/initializers/xml.rb @@ -0,0 +1,2 @@ +ActiveSupport::XmlMini.backend = 'Nokogiri' + -- cgit v1.2.3