Publish Advisories

GHSA-9qj7-jvg4-qr2x
GHSA-2p82-v77v-mppr
This commit is contained in:
advisory-database[bot]
2023-06-09 20:05:08 +00:00
parent 2ea97fecb4
commit c902015670
2 changed files with 6 additions and 2 deletions
@@ -72,6 +72,10 @@
"type": "ADVISORY",
"url": "https://github.com/advisories/GHSA-9qj7-jvg4-qr2x"
},
{
"type": "WEB",
"url": "https://github.com/rubysec/ruby-advisory-db/blob/master/gems/passenger/CVE-2013-2119.yml"
},
{
"type": "WEB",
"url": "http://blog.phusion.nl/2013/05/29/phusion-passenger-3-0-21-released/"
@@ -1,12 +1,12 @@
{
"schema_version": "1.4.0",
"id": "GHSA-2p82-v77v-mppr",
"modified": "2021-08-17T22:26:27Z",
"modified": "2023-06-09T20:03:44Z",
"published": "2019-09-11T23:05:57Z",
"aliases": [
"CVE-2019-16060"
],
"summary": "Airbrake",
"summary": "Airbrake keys not being filtered",
"details": "The Airbrake Ruby notifier 4.2.3 for Airbrake mishandles the blacklist_keys configuration option and consequently may disclose passwords to unauthorized actors. This is fixed in 4.2.4 (also, 4.2.2 and earlier are unaffected).",
"severity": [
{