Skip to content

Commit da43056

Browse files
committed
Update changelog
1 parent 01dc2e3 commit da43056

File tree

1 file changed

+6
-0
lines changed

1 file changed

+6
-0
lines changed

CHANGELOG.md

Lines changed: 6 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,11 @@
11
# master
22

3+
- Fix parsing of stringified Symbols in Ruby source (#1256).
4+
- Fix path traversal vulnerability in `yard server`. This bug would allow
5+
unsanitized HTTP requests to access arbitrary files on the machine of a
6+
`yard server` host under certain conditions. Thanks to CuongMX from
7+
Viettel Cyber Security for discovering this vulnerability.
8+
39
# 0.9.19 - April 2nd, 2019
410

511
[0.9.19]: https://github.com/lsegal/yard/compare/v0.9.16...v0.9.19

0 commit comments

Comments
 (0)