Skip to content

Commit 1eaaa23

Browse files
reedlodenRubySec CI
authored andcommitted
Updated advisory posts against rubysec/ruby-advisory-db@7e004e0
1 parent 48baa51 commit 1eaaa23

File tree

2 files changed

+2
-0
lines changed

2 files changed

+2
-0
lines changed

advisories/_posts/2018-06-14-CVE-2018-1000544.md

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -17,6 +17,7 @@ advisory:
1717
If a site allows uploading of .zip files, an attacker can upload a malicious file
1818
which contains symlinks or files with absolute pathnames "../" to write arbitrary
1919
files to the filesystem.
20+
cvss_v3: 9.8
2021
patched_versions:
2122
- ">= 1.2.2"
2223
related:

advisories/_posts/2019-04-04-CVE-2019-10842.md

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -24,6 +24,7 @@ advisory:
2424
(Note that there are three underscore characters in the cookie name.
2525
This is unrelated to the __cfduid cookie that is legitimately used by
2626
Cloudflare.)
27+
cvss_v3: 9.8
2728
unaffected_versions:
2829
- "<= 3.2.0.2"
2930
patched_versions:

0 commit comments

Comments
 (0)