From a0e97b0e2e4314a0815d09beb825e38f234778da Mon Sep 17 00:00:00 2001 From: Hiroshi SHIBATA Date: Mon, 17 May 2021 13:36:55 +0900 Subject: Use YAML.unsafe_load instead of YAML.load. This is a temporary workaround. We should rewrite the examples with permitted_classes. --- spec/mspec/lib/mspec/matchers/match_yaml.rb | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'spec/mspec/lib') diff --git a/spec/mspec/lib/mspec/matchers/match_yaml.rb b/spec/mspec/lib/mspec/matchers/match_yaml.rb index 920d85a14f..614020e550 100644 --- a/spec/mspec/lib/mspec/matchers/match_yaml.rb +++ b/spec/mspec/lib/mspec/matchers/match_yaml.rb @@ -30,7 +30,7 @@ class MatchYAMLMatcher def valid_yaml?(obj) require 'yaml' begin - YAML.load(obj) + YAML.unsafe_load(obj) rescue false else -- cgit v1.2.3