coderhs / ruby_open_weather_map

A ruby wrapper for open weather map
MIT License
79 stars 52 forks source link

Dependency on JSON 1.x - security issue #43

Open PhitherekReborn opened 4 years ago

PhitherekReborn commented 4 years ago

This gem depends on JSON 1.x. Unfortunately, it now has a known vulnerability (https://www.ruby-lang.org/en/news/2020/03/19/json-dos-cve-2020-10663/) and update is strongly recommended. Please update the dependency to 2.3.0.