From 69fd4d920a125bbdaf6ce98c73ced399ed18a8ae Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Tue, 29 Aug 2023 11:02:31 +0000 Subject: [PATCH] Publish GHSA-hwrx-wc75-mgh7 --- .../GHSA-hwrx-wc75-mgh7.json | 18 ++++++++++++++++++ 1 file changed, 18 insertions(+) diff --git a/advisories/github-reviewed/2022/05/GHSA-hwrx-wc75-mgh7/GHSA-hwrx-wc75-mgh7.json b/advisories/github-reviewed/2022/05/GHSA-hwrx-wc75-mgh7/GHSA-hwrx-wc75-mgh7.json index 2d21051a4ec..f3a71c0acb7 100644 --- a/advisories/github-reviewed/2022/05/GHSA-hwrx-wc75-mgh7/GHSA-hwrx-wc75-mgh7.json +++ b/advisories/github-reviewed/2022/05/GHSA-hwrx-wc75-mgh7/GHSA-hwrx-wc75-mgh7.json @@ -17,6 +17,11 @@ "ecosystem": "RubyGems", "name": "spree" }, + "ecosystem_specific": { + "affected_functions": [ + "" + ] + }, "ranges": [ { "type": "ECOSYSTEM", @@ -36,6 +41,11 @@ "ecosystem": "RubyGems", "name": "spree" }, + "ecosystem_specific": { + "affected_functions": [ + "" + ] + }, "ranges": [ { "type": "ECOSYSTEM", @@ -67,10 +77,18 @@ "type": "WEB", "url": "https://github.com/railsdog/spree/commit/d881b2bb610ea33e2364ff16feb8e702dfeda135" }, + { + "type": "WEB", + "url": "https://github.com/rubysec/ruby-advisory-db/blob/master/gems/spree/CVE-2010-3978.yml" + }, { "type": "PACKAGE", "url": "https://github.com/spree/spree" }, + { + "type": "WEB", + "url": "https://spreecommerce.com/blog/json-hijacking-vulnerability" + }, { "type": "WEB", "url": "http://spreecommerce.com/blog/2010/11/02/json-hijacking-vulnerability/"