From 8f81b2bffc47ae68cbee9822345f5a2424e416f9 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Mon, 23 Jan 2023 21:29:34 +0000 Subject: [PATCH] Publish GHSA-p463-639r-q9g9 --- .../GHSA-p463-639r-q9g9/GHSA-p463-639r-q9g9.json | 14 +++----------- 1 file changed, 3 insertions(+), 11 deletions(-) diff --git a/advisories/github-reviewed/2017/10/GHSA-p463-639r-q9g9/GHSA-p463-639r-q9g9.json b/advisories/github-reviewed/2017/10/GHSA-p463-639r-q9g9/GHSA-p463-639r-q9g9.json index 1be4bc3d86b..f80c56e4e6c 100644 --- a/advisories/github-reviewed/2017/10/GHSA-p463-639r-q9g9/GHSA-p463-639r-q9g9.json +++ b/advisories/github-reviewed/2017/10/GHSA-p463-639r-q9g9/GHSA-p463-639r-q9g9.json @@ -1,12 +1,12 @@ { "schema_version": "1.3.0", "id": "GHSA-p463-639r-q9g9", - "modified": "2021-09-15T21:29:20Z", + "modified": "2023-01-23T21:27:59Z", "published": "2017-10-24T18:33:37Z", "aliases": [ "CVE-2013-1756" ], - "summary": "High severity vulnerability that affects dragonfly", + "summary": "Dragonfly Code Injection vulnerability", "details": "The Dragonfly gem 0.7 before 0.8.6 and 0.9.x before 0.9.13 for Ruby, when used with Ruby on Rails, allows remote attackers to execute arbitrary code via a crafted request.", "severity": [ @@ -64,10 +64,6 @@ "type": "WEB", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/82476" }, - { - "type": "ADVISORY", - "url": "https://github.com/advisories/GHSA-p463-639r-q9g9" - }, { "type": "PACKAGE", "url": "https://github.com/markevans/dragonfly" @@ -78,11 +74,7 @@ }, { "type": "WEB", - "url": "http://secunia.com/advisories/52380" - }, - { - "type": "WEB", - "url": "http://www.securityfocus.com/bid/58225" + "url": "https://web.archive.org/web/20200229103538/http://www.securityfocus.com/bid/58225" } ], "database_specific": {