Posted By: Dirk Elmendorf
Date: 2006-08-04 22:47
Summary: acts_as_taggable 2.0.1
Project: acts_as_taggable
If you are using acts_as_taggable you should upgrade to 2.0.1 - all previous versions allow SQL injection via unsafe tags.
FEATURE: Source code now available via Subversion
BUGFIX: Typo fix in find_related_tags
SECURITY BUGFIX: Added sanitizer to all tag earching to prevent SQL injection
|
|