From 156d837573e87c5fe35678d5b0b1506e56b4e501 Mon Sep 17 00:00:00 2001 From: Ryan Lue Date: Thu, 19 Jul 2018 11:37:08 +0800 Subject: [PATCH] Update doorkeeper gem (security issue) --- Gemfile.lock | 4 ++-- ...3247_add_confidential_to_doorkeeper_application.rb | 11 +++++++++++ 2 files changed, 13 insertions(+), 2 deletions(-) create mode 100644 db/migrate/20180719033247_add_confidential_to_doorkeeper_application.rb diff --git a/Gemfile.lock b/Gemfile.lock index f189cb559..d89910abc 100644 --- a/Gemfile.lock +++ b/Gemfile.lock @@ -108,7 +108,7 @@ GEM thor crack (0.4.3) safe_yaml (~> 1.0.0) - crass (1.0.3) + crass (1.0.4) daemons (1.2.5) dalli (2.7.6) debug_inspector (0.0.3) @@ -122,7 +122,7 @@ GEM docile (1.1.5) domain_name (0.5.20180417) unf (>= 0.0.5, < 1.0.0) - doorkeeper (4.2.6) + doorkeeper (4.4.0) railties (>= 4.2) eco (1.0.0) coffee-script diff --git a/db/migrate/20180719033247_add_confidential_to_doorkeeper_application.rb b/db/migrate/20180719033247_add_confidential_to_doorkeeper_application.rb new file mode 100644 index 000000000..3ae102431 --- /dev/null +++ b/db/migrate/20180719033247_add_confidential_to_doorkeeper_application.rb @@ -0,0 +1,11 @@ +class AddConfidentialToDoorkeeperApplication < ActiveRecord::Migration[5.1] + def change + add_column( + :oauth_applications, + :confidential, + :boolean, + null: false, + default: true # maintaining backwards compatibility: require secrets + ) + end +end