tenex / rails-assets

The solution to assets management in Rails
https://rails-assets.org
MIT License
1.63k stars 69 forks source link

Upgrade Bower #485

Closed hut8 closed 2 years ago

hut8 commented 2 years ago

https://snyk.io/blog/severe-security-vulnerability-in-bowers-zip-archive-extraction/

This is bad, and I'm surprised our production environment has not yet been hacked. Thanks to those two have not hacked us.

hut8 commented 2 years ago

Just deployed this to production