Skip to content

Commit f455e04

Browse files
renchappostmodern
authored andcommitted
Update CVE-2023-51774 with patch version for 1.15.3
See nov/json-jwt#121 and https://github.com/nov/json-jwt/commits/v1.15.3/ for the code
1 parent 2626a46 commit f455e04

1 file changed

Lines changed: 1 addition & 0 deletions

File tree

gems/json-jwt/CVE-2023-51774.yml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -10,6 +10,7 @@ description: |
1010
bypass of identity checks via a sign/encryption confusion attack.
1111
For example, JWE can sometimes be used to bypass JSON::JWT.decode.
1212
patched_versions:
13+
- "~> 1.15.3, >= 1.15.3.1"
1314
- ">= 1.16.6"
1415
related:
1516
url:

0 commit comments

Comments
 (0)