Files
rails/activerecord/lib/active_record
Michael Koziarski c014c3e5c1 Whitelist the methods which are called by multiparameter attribute assignment.
This prevents users from causing NoMethodErrors and the like by editing the parameter names, and closes a potential exploit of CVE-2009-1904.
2009-06-10 12:12:21 +12:00
..
2009-01-18 18:10:58 +00:00
2009-06-08 19:37:51 -07:00
2009-05-13 12:00:15 -07:00
2008-05-25 12:29:00 +01:00
2009-06-08 19:37:51 -07:00
2009-03-15 22:06:50 -05:00