CVE-2013-1856: XML Parsing Vulnerability affecting JRuby users
(updated )
There is a vulnerability in the JDOM backend to ActiveSupport’s XML parser. you should upgrade or use one of the work arounds immediately.
References
Detect and mitigate CVE-2013-1856 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →