From f5fed88ed931ed21e2ff2edf0999faf43752f67c Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Mon, 31 Mar 2025 13:24:59 +0000 Subject: [PATCH] Publish GHSA-8xww-x3g3-6jcv --- .../GHSA-8xww-x3g3-6jcv.json | 20 +++++++++++++++++-- 1 file changed, 18 insertions(+), 2 deletions(-) diff --git a/advisories/github-reviewed/2023/01/GHSA-8xww-x3g3-6jcv/GHSA-8xww-x3g3-6jcv.json b/advisories/github-reviewed/2023/01/GHSA-8xww-x3g3-6jcv/GHSA-8xww-x3g3-6jcv.json index 27ddbd2aa7b..86a321c15ca 100644 --- a/advisories/github-reviewed/2023/01/GHSA-8xww-x3g3-6jcv/GHSA-8xww-x3g3-6jcv.json +++ b/advisories/github-reviewed/2023/01/GHSA-8xww-x3g3-6jcv/GHSA-8xww-x3g3-6jcv.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-8xww-x3g3-6jcv", - "modified": "2025-02-18T22:34:55Z", + "modified": "2025-03-31T13:23:06Z", "published": "2023-01-18T18:20:51Z", "aliases": [ "CVE-2023-22795" @@ -20,7 +20,7 @@ "type": "ECOSYSTEM", "events": [ { - "introduced": "0" + "introduced": "4.0.0.beta1" }, { "fixed": "6.1.7.1" @@ -54,6 +54,18 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-22795" }, + { + "type": "WEB", + "url": "https://github.com/rails/rails/commit/8d82687f3b04b2803320b64f985308239a8c3d2f" + }, + { + "type": "WEB", + "url": "https://github.com/rails/rails/commit/8dc45950619a4c64d16fb9370570c996d201f9b0" + }, + { + "type": "WEB", + "url": "https://github.com/rails/rails/commit/cd461c3e64e09cdcb1e379d1c35423c5e2caa592" + }, { "type": "WEB", "url": "https://discuss.rubyonrails.org/t/cve-2023-22795-possible-redos-based-dos-vulnerability-in-action-dispatch/82118" @@ -62,6 +74,10 @@ "type": "PACKAGE", "url": "https://github.com/rails/rails" }, + { + "type": "WEB", + "url": "https://github.com/rails/rails/releases/tag/v6.1.7.1" + }, { "type": "WEB", "url": "https://github.com/rails/rails/releases/tag/v7.0.4.1"