Publish Advisories

GHSA-8xww-x3g3-6jcv
GHSA-9445-4cr6-336r
GHSA-hq7p-j377-6v63
GHSA-j6gc-792m-qgm2
This commit is contained in:
advisory-database[bot]
2023-05-16 15:50:06 +00:00
parent 3225d9f05a
commit e5e3551a08
4 changed files with 20 additions and 4 deletions
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-8xww-x3g3-6jcv",
"modified": "2023-02-10T22:05:47Z",
"modified": "2023-05-16T15:48:14Z",
"published": "2023-01-18T18:20:51Z",
"aliases": [
"CVE-2023-22795"
@@ -60,6 +60,10 @@
"type": "WEB",
"url": "https://discuss.rubyonrails.org/t/cve-2023-22795-possible-redos-based-dos-vulnerability-in-action-dispatch/82118"
},
{
"type": "PACKAGE",
"url": "https://github.com/rails/rails"
},
{
"type": "WEB",
"url": "https://github.com/rails/rails/releases/tag/v7.0.4.1"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-9445-4cr6-336r",
"modified": "2023-02-21T20:05:50Z",
"modified": "2023-05-16T15:48:51Z",
"published": "2023-01-18T18:21:23Z",
"aliases": [
"CVE-2023-22797"
@@ -44,6 +44,10 @@
"type": "WEB",
"url": "https://discuss.rubyonrails.org/t/cve-2023-22799-possible-redos-based-dos-vulnerability-in-globalid/82127"
},
{
"type": "PACKAGE",
"url": "https://github.com/rails/rails"
},
{
"type": "WEB",
"url": "https://github.com/rails/rails/releases/tag/v7.0.4.1"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-hq7p-j377-6v63",
"modified": "2023-03-14T16:03:58Z",
"modified": "2023-05-16T15:47:47Z",
"published": "2023-01-18T18:20:19Z",
"aliases": [
"CVE-2023-22794"
@@ -86,6 +86,10 @@
"type": "WEB",
"url": "https://discuss.rubyonrails.org/t/cve-2023-22794-sql-injection-vulnerability-via-activerecord-comments/82117"
},
{
"type": "PACKAGE",
"url": "https://github.com/rails/rails"
},
{
"type": "WEB",
"url": "https://github.com/rails/rails/releases/tag/v7.0.4.1"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-j6gc-792m-qgm2",
"modified": "2023-02-10T22:06:06Z",
"modified": "2023-05-16T15:49:20Z",
"published": "2023-01-18T18:23:20Z",
"aliases": [
"CVE-2023-22796"
@@ -79,6 +79,10 @@
"type": "WEB",
"url": "https://discuss.rubyonrails.org/t/cve-2023-22796-possible-redos-based-dos-vulnerability-in-active-supports-underscore/82116"
},
{
"type": "PACKAGE",
"url": "https://github.com/rails/rails"
},
{
"type": "WEB",
"url": "https://github.com/rails/rails/releases/tag/v7.0.4.1"