Skip to content

Commit bd04d1b

Browse files
jasnowRubySec CI
authored andcommitted
Updated advisory posts against rubysec/ruby-advisory-db@5850322
1 parent 6fa43bd commit bd04d1b

13 files changed

Lines changed: 27 additions & 0 deletions

advisories/_posts/2020-01-23-CVE-2020-5216.md

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -54,4 +54,8 @@ advisory:
5454
- "~> 3.9"
5555
- "~> 5.2"
5656
- ">= 6.3.0"
57+
related:
58+
url:
59+
- https://nvd.nist.gov/vuln/detail/cve-2020-5216
60+
- https://github.com/github/secure_headers/security/advisories/GHSA-w978-rmpf-qmwg
5761
---

advisories/_posts/2020-01-23-CVE-2020-5217.md

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -44,4 +44,8 @@ advisory:
4444
- "~> 3.8"
4545
- "~> 5.1"
4646
- ">= 6.2.0"
47+
related:
48+
url:
49+
- https://nvd.nist.gov/vuln/detail/cve-2020-5217
50+
- https://github.com/github/secure_headers/security/advisories/GHSA-xq52-rv6w-397c
4751
---

advisories/_posts/2020-04-29-CVE-2020-11023.md

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -30,5 +30,7 @@ advisory:
3030
- ">= 4.4.0"
3131
related:
3232
url:
33+
- https://nvd.nist.gov/vuln/detail/CVE-2020-11023
3334
- https://github.com/rails/jquery-rails/blob/master/CHANGELOG.md#440
35+
- https://github.com/jquery/jquery/security/advisories/GHSA-jpcq-cgw6-v4j6
3436
---

advisories/_posts/2021-07-12-CVE-2021-32740.md

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -25,4 +25,8 @@ advisory:
2525
- "< 2.3.0"
2626
patched_versions:
2727
- ">= 2.8.0"
28+
related:
29+
url:
30+
- https://nvd.nist.gov/vuln/detail/CVE-2021-32740
31+
- https://github.com/sporkmonger/addressable/security/advisories/GHSA-jxhc-q857-3j6g
2832
---

advisories/_posts/2022-03-02-CVE-2022-24722.md

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -31,5 +31,7 @@ advisory:
3131
- "~> 2.31.2"
3232
related:
3333
url:
34+
- https://nvd.nist.gov/vuln/detail/CVE-2022-24722
3435
- https://github.com/github/view_component/commit/3f82a6e62578ff6f361aba24a1feb2caccf83ff9
36+
- https://github.com/ViewComponent/view_component/security/advisories/GHSA-cm9w-c4rj-r2cf
3537
---

advisories/_posts/2022-04-07-CVE-2021-43177.md

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -31,5 +31,7 @@ advisory:
3131
cve:
3232
- 2015-7225
3333
url:
34+
- https://nvd.nist.gov/vuln/detail/CVE-2021-43177
3435
- https://github.com/tinfoil/devise-two-factor/issues/106
36+
- https://github.com/devise-two-factor/devise-two-factor/security/advisories/GHSA-jm35-h8q2-73mp
3537
---

advisories/_posts/2023-06-12-CVE-2023-34246.md

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -38,5 +38,6 @@ advisory:
3838
- https://github.com/doorkeeper-gem/doorkeeper/pull/1646
3939
- https://github.com/doorkeeper-gem/doorkeeper/issues/1589
4040
- https://www.rfc-editor.org/rfc/rfc8252#section-8.6
41+
- https://github.com/doorkeeper-gem/doorkeeper/security/advisories/GHSA-7w2c-w47h-789w
4142
- https://github.com/advisories/GHSA-7w2c-w47h-789w
4243
---

advisories/_posts/2023-07-06-CVE-2023-36823.md

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -51,5 +51,6 @@ advisory:
5151
- https://nvd.nist.gov/vuln/detail/CVE-2023-36823
5252
- https://github.com/rgrove/sanitize/releases/tag/v6.0.2
5353
- https://github.com/rgrove/sanitize/commit/76ed46e6dc70820f38efe27de8dabd54dddb5220
54+
- https://github.com/rgrove/sanitize/security/advisories/GHSA-f5ww-cq3m-q3g7
5455
- https://github.com/advisories/GHSA-f5ww-cq3m-q3g7
5556
---

advisories/_posts/2024-03-12-CVE-2024-28199.md

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -88,5 +88,6 @@ advisory:
8888
- https://github.com/phlex-ruby/phlex/commit/aa50c604cdee1d0ce7ef068a4c66cbd5d43f96a1
8989
- https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Content-Security-Policy
9090
- https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Content-Security-Policy#unsafe-inline
91+
- https://github.com/yippee-fun/phlex/security/advisories/GHSA-242p-4v39-2v8g
9192
- https://github.com/advisories/GHSA-242p-4v39-2v8g
9293
---

advisories/_posts/2024-04-16-CVE-2024-32463.md

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -59,5 +59,6 @@ advisory:
5959
- https://github.com/phlex-ruby/phlex/commit/9e3f5b980655817993682e409cbda72956d865cb
6060
- https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Content-Security-Policy
6161
- https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Content-Security-Policy#unsafe-inline
62+
- https://github.com/yippee-fun/phlex/security/advisories/GHSA-g7xq-xv8c-h98c
6263
- https://github.com/advisories/GHSA-g7xq-xv8c-h98c
6364
---

0 commit comments

Comments
 (0)