summaryrefslogtreecommitdiffstats
path: root/app
diff options
context:
space:
mode:
authorGo MAEDA <maeda@farend.jp>2022-07-21 00:41:29 +0000
committerGo MAEDA <maeda@farend.jp>2022-07-21 00:41:29 +0000
commit7752e9a19abf14c44f28ac3eca28e496dbcca4f9 (patch)
treef3dd2f1af41a1f688877546ed22f9bb11e675e5e /app
parentb6c218deed9fcb9b4081e0a98f081ecf2558cb20 (diff)
downloadredmine-7752e9a19abf14c44f28ac3eca28e496dbcca4f9.tar.gz
redmine-7752e9a19abf14c44f28ac3eca28e496dbcca4f9.zip
Psych::DisallowedClass exception when loading default plugin settings (#37450, #37476).
Contributed by Dmitry Makurin. git-svn-id: https://svn.redmine.org/redmine/trunk@21725 e93f8b46-1217-0410-a6f0-8f06a7374b81
Diffstat (limited to 'app')
-rw-r--r--app/models/setting.rb2
1 files changed, 1 insertions, 1 deletions
diff --git a/app/models/setting.rb b/app/models/setting.rb
index 53b88bcad..aa27d9ecf 100644
--- a/app/models/setting.rb
+++ b/app/models/setting.rb
@@ -108,7 +108,7 @@ class Setting < ActiveRecord::Base
v = read_attribute(:value)
# Unserialize serialized settings
if available_settings[name]['serialized'] && v.is_a?(String)
- v = YAML.safe_load(v, permitted_classes: [ActiveSupport::HashWithIndifferentAccess])
+ v = YAML.safe_load(v, permitted_classes: [Symbol, ActiveSupport::HashWithIndifferentAccess])
v = force_utf8_strings(v)
end
v = v.to_sym if available_settings[name]['format'] == 'symbol' && !v.blank?