KEMBAR78
[Fix #14552] Improve `Security/JSONLoad` documentation and implementation by Earlopain · Pull Request #14600 · rubocop/rubocop · GitHub
Skip to content

Conversation

@Earlopain
Copy link
Contributor

@Earlopain Earlopain commented Oct 11, 2025

Fix #14552

Things have somewhat changed since this cop was added.

In addition, it should not register an offense when create_additions is explicitly passed. create_additions is the option that controls deserialization behavior. If it is specified, we should assume the user knows what is going on.

Removed docs for quirks_mode, that has been gone since 2.0.0 from the 2015. It just works now, no need to bother users with this anymore.


Before submitting the PR make sure the following are checked:

  • The PR relates to only one subject with a clear title and description in grammatically correct, complete sentences.
  • Wrote good commit messages.
  • Commit message starts with [Fix #issue-number] (if the related issue exists).
  • Feature branch is up-to-date with master (if not - rebase it).
  • Squashed related commits together.
  • Added tests.
  • Ran bundle exec rake default. It executes all tests and runs RuboCop on its own code.
  • Added an entry (file) to the changelog folder named {change_type}_{change_description}.md if the new code introduces user-observable changes. See changelog entry format for details.

…lementation

Things have somewhat changed since this cop was added. In addition, it should not register an offense
when `create_additions` is explicitly passed.
The user has made a concious decision in that case.

Removed docs for `quirks_mode`, that has been gone since 2.0.0 from the 2015. It just works now, no need
to bother users with this anymore.
@koic koic merged commit 7dc1853 into rubocop:master Oct 13, 2025
22 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Add documentation about security issues

2 participants