Over a million developers have joined DZone.

A Security Flaw in Ruby on Rails

· Cloud Zone

Download this eBook outlining the critical components of success for SaaS companies - and the new rules you need to play by.  Brought to you in partnership with NuoDB.

The official Ruby on Rails blog recently announced  the release of two "extremely critical security fixes" for a major security flaw.  In response, Heroku also released a how-to for upgrading Heroku  apps that run on Rails.  The Heroku team warns that "If you do not upgrade, an attacker can trivially gain access to your application, its data, and run arbitrary code or commands."  You can check out both posts by below.

Heroku Blog - Rails Security Vulnerability

Ruby on Rails Blog - Rails 3.2.11, 3.1.10, 3.0.19, and 2.3.15 Have Been Released!

Learn how moving from a traditional, on-premises delivery model to a cloud-based, software-as-a-service (SaaS) strategy is a high-stakes, bet-the-company game for independent software vendors. Brought to you in partnership with NuoDB.

Topics:

Opinions expressed by DZone contributors are their own.

The best of DZone straight to your inbox.

SEE AN EXAMPLE
Please provide a valid email address.

Thanks for subscribing!

Awesome! Check your inbox to verify your email so you can start receiving the latest in tech news and resources.
Subscribe

{{ parent.title || parent.header.title}}

{{ parent.tldr }}

{{ parent.urlSource.name }}