summaryrefslogtreecommitdiff
path: root/NEWS
diff options
context:
space:
mode:
authorzzak <zzak@b2dd03c8-39d4-4d8f-98ff-823fe69b080e>2013-02-06 03:49:59 +0000
committerzzak <zzak@b2dd03c8-39d4-4d8f-98ff-823fe69b080e>2013-02-06 03:49:59 +0000
commita77af99a66dc05fc7f3baacb27e4d997cc1cd036 (patch)
treed0f2f1c1d2adc9c140dfca6339f56c1639b74c79 /NEWS
parent4ce8ede2032b40e7b6479be2ab9cd30cab085429 (diff)
* NEWS: Add note about removal of CSV::load and CSV::dump from r39077
git-svn-id: svn+ssh://ci.ruby-lang.org/ruby/trunk@39087 b2dd03c8-39d4-4d8f-98ff-823fe69b080e
Diffstat (limited to 'NEWS')
-rw-r--r--NEWS4
1 files changed, 4 insertions, 0 deletions
diff --git a/NEWS b/NEWS
index 25c578f4a9..45097b4611 100644
--- a/NEWS
+++ b/NEWS
@@ -210,6 +210,10 @@ with all sufficient information, see the ChangeLog file.
* When HTML5 tagmaker called, overwrite CGI#header,
CGI#header function is to create a <header> element.
+* CSV
+ * Removed CSV::dump and CSV::load to protect users from dangerous
+ serialization vulnerability
+
* iconv
* Iconv has been removed. Use String#encode instead.