-
Notifications
You must be signed in to change notification settings - Fork 10
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Any chance to release a new version? #28
Comments
Hi, this is a friendly bump for the merge of the aforementioned PRs I will then proceed to check against Ransack main and add compatibility for 4.0, because of activerecord-hackery/ransack#1400 and a potential security issue (information disclosure) Quoting from https://owasp.org/Top10/A01_2021-Broken_Access_Control/
Allowing all attributes violates the principle of least privilege or deny by default, |
Sorry for taking so long, I've released 1.2.2! |
Thanks for the release, I will make a new PR to improve the changelog |
Hi, would it be possible to release a new version with the latest changes on master branch?
That would allow to update the ransack dependency to 3.x
I've also created:
The text was updated successfully, but these errors were encountered: