Kong / unirest-ruby

Unirest in Ruby: Simplified, lightweight HTTP client library.
http://unirest.io/ruby
MIT License
364 stars 83 forks source link

Upgrade gem version #50

Open nasospsa opened 6 years ago

nasospsa commented 6 years ago

There is no new version of the gem, so we get old dependencies like rest-client (~> 1.6.7).

Please upgrade to 1.1.3

taylorthurlow commented 6 years ago

I'd like to second this and clarify - I think @nasospsa brought this up because there is a known security vulnerability in rest-client versions before 1.7.3.

jskirst commented 6 years ago

Not sure if anyone on the Kong team is paying attention to this repo - ping @thibaultcha ? If no update is expected the insecure versions should probably be revoked from RubyGems.