Forum: Typo [ANN] Typo 6.1.2 - critical security bugfix

Announcement (2017-05-07): www.ruby-forum.com is now read-only since I unfortunately do not have the time to support and maintain the forum any more. Please see rubyonrails.org/community and ruby-lang.org/en/community for other Rails- und Ruby-related community platforms.
700f9a3b883e6a04d018f48290b1a3fd?d=identicon&s=25 "Frédéric de Villamil" <frederic@de-villamil.com> (Guest)
on 2013-01-19 15:16
(Received via mailing list)
Hello,

Let's awake this long dormant list with all our wishes for an awesome
year 2013. As you can see, the project is still alive, and we're happy
to announce the release of Typo 6.1.2, which is the second of the Remi
Ochlik series.

This release fixes a critical Rails security breach. This breach has
been present in every Rails version so far, and may allow an attacker to
execute some arbitrary code on your host.

The easiest way to update a Typo blog is:

1. Download Typo 6.1.2,  http://typosphere.org/stable.tgz
2. Copy the archive content on your host.
3. Edit config/database.yml and fill in your database credential. If
you're using the MySQL adapter, you'll have to switch to mysql2.
4. Run "bundle install"
5. Run rake db:migrate

Then, copy your theme, files etc... into your new Typo application.

Typo 6.1.2 also provides some new feature, such as native Heoku support,
and bug fixes. Please read the full release note on our blog:
http://blog.typosphere.org/typo-6-1-2-remi-ochlik-...

In caes you want to try before you buy, you can test Typo 6.1.2 on our
demo site: http://demo.typosphere.org/

Have a great week-end,
Fred, Matijs, Yannick and Thomas.
This topic is locked and can not be replied to.