summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorzzak <zzak@b2dd03c8-39d4-4d8f-98ff-823fe69b080e>2013-02-06 04:03:39 +0000
committerzzak <zzak@b2dd03c8-39d4-4d8f-98ff-823fe69b080e>2013-02-06 04:03:39 +0000
commitfe072cef25054cce460c92408f3f8fe9cb2b5c0d (patch)
tree629a850bfd7af85e83353328f1f9d788346b3969
parenta77af99a66dc05fc7f3baacb27e4d997cc1cd036 (diff)
* doc/security.rdoc: Add link to CVEs on ruby-lang.org/en/security
git-svn-id: svn+ssh://ci.ruby-lang.org/ruby/trunk@39088 b2dd03c8-39d4-4d8f-98ff-823fe69b080e
-rw-r--r--ChangeLog4
-rw-r--r--doc/security.rdoc3
2 files changed, 7 insertions, 0 deletions
diff --git a/ChangeLog b/ChangeLog
index 3ca4e25a48..da0722a65e 100644
--- a/ChangeLog
+++ b/ChangeLog
@@ -1,3 +1,7 @@
+Wed Feb 6 13:03:00 2013 Zachary Scott <zachary@zacharyscott.net>
+
+ * doc/security.rdoc: Add link to CVEs on ruby-lang.org/en/security
+
Wed Feb 6 12:49:00 2013 Zachary Scott <zachary@zacharyscott.net>
* NEWS: Add note about removal of CSV::load and CSV::dump from r39077
diff --git a/doc/security.rdoc b/doc/security.rdoc
index 566920a5c1..16df93f540 100644
--- a/doc/security.rdoc
+++ b/doc/security.rdoc
@@ -6,6 +6,9 @@ pitfalls often encountered by newcomers and experienced Rubyists alike.
This document aims to discuss many of these pitfalls and provide more secure
alternatives where applicable.
+Please check the full list of publicly known CVEs and how to correctly report a
+security vulnerability, at: http://www.ruby-lang.org/en/security/
+
== <code>$SAFE</code>
Ruby provides a mechanism to restrict what operations can be performed by Ruby