On 8/10/06, iain d broadfoot <[EMAIL PROTECTED]> wrote:
* David Heinemeier Hansson ([EMAIL PROTECTED]) wrote:
> The cat is out of the bag, so here's the full disclosure edition of
> the current security vulnerability.
Would it be worth starting a rails-announce list that all users
could be encouraged to subscribe to? I guess there are still
people who haven't heard about this yet, and also guess that
they'd be more likely to sign up for a low-traffic announce list
than the (much) heavier main rails list.
Thanks for a super-nifty product, and for the prompt security
updates.
cheers,
iain
David mentioned the creation of an announce-only list on Riding Rails:
http://weblog.rubyonrails.org/2006/8/10/new-security-mailing-list
After the requests for an RSS feed instead, we've been looking at a
Google Group for this:
http://groups.google.com/group/rails-security/
--
Rick Olson
http://weblog.techno-weenie.net
http://mephistoblog.com
_______________________________________________
Rails-core mailing list
Rails-core@lists.rubyonrails.org
http://lists.rubyonrails.org/mailman/listinfo/rails-core