Double Shot #1041
You know…I really don't need any more application issues just at the moment.
- Rails' Remote Code Execution Vulnerability Explained, Rails PoC exploits for CVE-2013-0156 and CVE-2013-0155, and Serialization Mischief in Ruby Land (CVE-2013-0156) - Lots of code floating around now to exploit that Rails security bug. Patch or be pwned.
- Rails 3.2.11 regression with empty nested attributes in parameters - Meanwhile, if you did patch, there's a good chance your code that uses nested attributes are busted.
- Sequel Pro 1.0 RC1 - Nice little OS/X MySQL client.