mirror of
https://github.com/discourse/discourse.git
synced 2025-06-10 19:27:18 +08:00
SECURITY: Don't whitelist codepen as it is a potential vector for abuse
This commit is contained in:
@ -271,7 +271,7 @@ GEM
|
|||||||
omniauth-twitter (1.0.1)
|
omniauth-twitter (1.0.1)
|
||||||
multi_json (~> 1.3)
|
multi_json (~> 1.3)
|
||||||
omniauth-oauth (~> 1.0)
|
omniauth-oauth (~> 1.0)
|
||||||
onebox (1.5.6)
|
onebox (1.5.7)
|
||||||
moneta (~> 0.7)
|
moneta (~> 0.7)
|
||||||
multi_json (~> 1.7)
|
multi_json (~> 1.7)
|
||||||
mustache (~> 0.99)
|
mustache (~> 0.99)
|
||||||
|
Reference in New Issue
Block a user