Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

#1330 fix vulnerability in rails v7.0.5.1 #1331

Conversation

Ivanov-Anton
Copy link
Collaborator

Name: activesupport
Version: 7.0.5.1
CVE: CVE-2023-38037
Criticality: Unknown
URL: https://github.com/rails/rails/releases/tag/v7.0.7.1
Title: Possible File Disclosure of Locally Encrypted Files
Solution: upgrade to '~> 6.1.7, >= 6.1.7.5', '>= 7.0.7.1'

Closes #1330

@Ivanov-Anton Ivanov-Anton added dependencies Pull requests that update a dependency file security Pull requests that address a security vulnerability labels Aug 24, 2023
@Ivanov-Anton Ivanov-Anton self-assigned this Aug 24, 2023
@Ivanov-Anton Ivanov-Anton force-pushed the 1330-fix-vulnerability-in-rails-v7051 branch from f6475e1 to a3ba0da Compare August 24, 2023 08:33
@Ivanov-Anton Ivanov-Anton force-pushed the 1330-fix-vulnerability-in-rails-v7051 branch from a3ba0da to dbf6d71 Compare August 24, 2023 08:37
@Ivanov-Anton Ivanov-Anton changed the title #1330 fix vulnerability in rails v7051 #1330 fix vulnerability in rails v7.0.5.1 Aug 24, 2023
@dmitry-sinina dmitry-sinina merged commit 48dcc30 into yeti-switch:master Aug 24, 2023
12 checks passed
@Ivanov-Anton Ivanov-Anton deleted the 1330-fix-vulnerability-in-rails-v7051 branch August 24, 2023 09:11
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file security Pull requests that address a security vulnerability
Projects
None yet
Development

Successfully merging this pull request may close these issues.

fix vulnerability in rails v7.0.5.1
2 participants