Project

General

Profile

Feature #10510

Remove REXML instead of patching it

Added by grosser (Michael Grosser) over 5 years ago. Updated over 5 years ago.

Status:
Assigned
Priority:
Normal
Target version:
-
[ruby-core:66269]

Description

There have been at least 3 rexml vulerabilities to date,
having to patch ruby just to make sure it's not being used is taking a lot
of time/effort.

Afaik most people do not use xml anyway (and especially not rexml), just
for comparison: it would make much more sense to have json included, but
it's not.

So let's just drop it & make it a gem.

Also available in: Atom PDF