File tree Expand file tree Collapse file tree
advisories/github-reviewed/2026/03 Expand file tree Collapse file tree Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-57hq-95w6-v4fc" ,
4- "modified" : " 2026-03-17T17:24:17Z " ,
4+ "modified" : " 2026-03-18T19:37:07Z " ,
55 "published" : " 2026-03-17T17:24:17Z" ,
66 "aliases" : [
77 " CVE-2026-32700"
5454 {
5555 "type" : " PACKAGE" ,
5656 "url" : " https://github.com/heartcombo/devise"
57+ },
58+ {
59+ "type" : " WEB" ,
60+ "url" : " https://github.com/rubysec/ruby-advisory-db/blob/master/gems/devise/GHSA-57hq-95w6-v4fc.yml"
5761 }
5862 ],
5963 "database_specific" : {
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-qmpg-8xg6-ph5q" ,
4- "modified" : " 2026-03-12T17:29:30Z " ,
4+ "modified" : " 2026-03-18T19:37:52Z " ,
55 "published" : " 2026-03-12T17:29:30Z" ,
66 "aliases" : [],
77 "summary" : " Trix has a Stored XSS vulnerability through serialized attributes" ,
7272 {
7373 "type" : " WEB" ,
7474 "url" : " https://github.com/basecamp/trix/releases/tag/v2.1.17"
75+ },
76+ {
77+ "type" : " WEB" ,
78+ "url" : " https://github.com/rubysec/ruby-advisory-db/blob/master/gems/action_text-trix/GHSA-qmpg-8xg6-ph5q.yml"
7579 }
7680 ],
7781 "database_specific" : {
You can’t perform that action at this time.
0 commit comments