Brakeman v1.9.1 Release Notes

Release Date: 2013-01-19 // over 11 years ago
    • Update to RubyParser 3.1.1 (neersighted)
    • Remove ActiveSupport dependency (Neil Matatall)
    • Do not warn on arrays passed to link_to (Neil Matatall)
    • Warn on secret tokens
    • Warn on more mass assignment methods
    • Add check for CVE-2012-5664
    • Add check for CVE-2013-0155
    • Add check for CVE-2013-0156
    • Add check for unsafe YAML.load