From 14bb863315bea0bc309fb2c7e78d8957f121a6a2 Mon Sep 17 00:00:00 2001 From: Justin Collins Date: Wed, 17 Aug 2011 16:37:35 -0700 Subject: [PATCH] Fix version numbers 2.3.13->2.3.14 --- lib/checks/check_escape_function.rb | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/lib/checks/check_escape_function.rb b/lib/checks/check_escape_function.rb index bdca32fb..839063ed 100644 --- a/lib/checks/check_escape_function.rb +++ b/lib/checks/check_escape_function.rb @@ -7,10 +7,10 @@ class CheckEscapeFunction < BaseCheck Checks.add self def run_check - if version_between?('2.0.0', '2.3.12') and RUBY_VERSION < '1.9.0' + if version_between?('2.0.0', '2.3.13') and RUBY_VERSION < '1.9.0' warn :warning_type => 'Cross Site Scripting', - :message => 'Versions before 2.3.13 have a vulnerability in escape method when used with Ruby 1.8. Upgrade or apply patches as needed.', + :message => 'Versions before 2.3.14 have a vulnerability in escape method when used with Ruby 1.8. Upgrade or apply patches as needed.', :confidence => CONFIDENCE[:high] end end -- GitLab