curationexperts / cypripedium

A Hyrax 3 application for the Federal Reserve Bank of Minneapolis
2 stars 3 forks source link

Address Puma HTTP Request/Response Smuggling vulnerability #568

Closed mark-dce closed 9 months ago

mark-dce commented 9 months ago

ISSUE See https://github.com/curationexperts/cypripedium/security/dependabot/75

FIX Update Puma version manually since dependabot was unable to resolve dependencies automatically.