diff --git a/advisories/github-reviewed/2017/10/GHSA-959j-5g9v-3fpq/GHSA-959j-5g9v-3fpq.json b/advisories/github-reviewed/2017/10/GHSA-959j-5g9v-3fpq/GHSA-959j-5g9v-3fpq.json index f7e2dbb50ba..be3c6a3679d 100644 --- a/advisories/github-reviewed/2017/10/GHSA-959j-5g9v-3fpq/GHSA-959j-5g9v-3fpq.json +++ b/advisories/github-reviewed/2017/10/GHSA-959j-5g9v-3fpq/GHSA-959j-5g9v-3fpq.json @@ -1,12 +1,12 @@ { "schema_version": "1.4.0", "id": "GHSA-959j-5g9v-3fpq", - "modified": "2020-06-16T21:27:37Z", + "modified": "2023-03-14T22:43:06Z", "published": "2017-10-24T18:33:36Z", "aliases": [ "CVE-2014-1234" ], - "summary": "Low severity vulnerability that affects paratrooper-newrelic", + "summary": "Paratrooper-newrelic Exposure of Sensitive Information to an Unauthorized Actor", "details": "The paratrooper-newrelic gem 1.0.1 for Ruby allows local users to obtain the X-Api-Key value by listing the curl process.", "severity": [ @@ -25,11 +25,14 @@ "introduced": "0" }, { - "last_affected": "1.0.1" + "fixed": "" } ] } - ] + ], + "database_specific": { + "last_known_affected_version_range": "<= 1.0.1" + } } ], "references": [ @@ -37,10 +40,6 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-1234" }, - { - "type": "ADVISORY", - "url": "https://github.com/advisories/GHSA-959j-5g9v-3fpq" - }, { "type": "WEB", "url": "http://openwall.com/lists/oss-security/2014/01/08/2"