# File lib/brakeman/checks/check_create_with.rb, line 8 def run_check @warned = false if version_between? "4.0.0", "4.0.8" suggested_version = "4.0.9" elsif version_between? "4.1.0", "4.1.4" suggested_version = "4.1.5" else return end @message = msg(msg_code("create_with"), " is vulnerable to strong params bypass. Upgrade to ", msg_version(suggested_version), " or patch") tracker.find_call(:method => :create_with, :nested => true).each do |result| process_result result end generic_warning unless @warned end