Skip to content

Commit 9262177

Browse files
authored
Merge pull request #1181 from jasnow/july-23a-update
Dealt with GHSA withdrawn advisories @flavoerjones - Thanks for reviewing and approving PR.
2 parents 44e5061 + e169b29 commit 9262177

9 files changed

Lines changed: 27 additions & 176 deletions

File tree

‎gems/agoo/CVE-2020-7670.yml‎

Lines changed: 0 additions & 20 deletions
This file was deleted.

‎gems/alchemy_cms/CVE-2018-18307.yml‎

Lines changed: 0 additions & 25 deletions
This file was deleted.

‎gems/bootstrap/CVE-2024-6531.yml‎

Lines changed: 0 additions & 24 deletions
This file was deleted.

‎gems/fat_free_crm/CVE-2019-10226.yml‎

Lines changed: 0 additions & 11 deletions
This file was deleted.

‎gems/jquery-rails/CVE-2020-23064.yml‎

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -26,4 +26,5 @@ related:
2626
- https://github.com/rails/jquery-rails/blob/master/CHANGELOG.md#410
2727
- https://github.com/rails/jquery-rails/blob/master/CHANGELOG.md#440
2828

29+
- https://github.com/advisories/GHSA-jpcq-cgw6-v4j6
2930
- https://github.com/advisories/GHSA-257q-pv89-v3xv

‎gems/prosemirror_to_html/GHSA-4249-gjr8-jpq3.yml‎

Lines changed: 0 additions & 75 deletions
This file was deleted.

‎gems/spree_auth_devise/CVE-2021-41275.yml‎

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -64,3 +64,7 @@ related:
6464
- 6mqr-q86q-6gwr
6565
url:
6666
- https://github.com/spree/spree_auth_devise/commit/adf6ed4cd94d66091776b5febd4ff3767362de63
67+
- https://github.com/advisories/GHSA-gpqc-4pp7-5954
68+
- https://github.com/advisories/GHSA-8xfw-5q82-3652
69+
- https://github.com/advisories/GHSA-6mqr-q86q-6gwr
70+
- https://github.com/advisories/GHSA-26xx-m4q2-xhq8

‎gems/thor/CVE-2025-54314.yml‎

Lines changed: 0 additions & 21 deletions
This file was deleted.

‎lib/rad-ignores.sh‎

Lines changed: 22 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -134,6 +134,28 @@ rm -f gems/omniauth-saml/GHSA-cgp2-2cmh-pf7x.yml
134134
# - https://github.com/pglombardo/PasswordPusher/releases/tag/v1.48.1
135135
# Release 1.48.1; Password Pusher Application; erb file code fix
136136

137+
#.....................................................................
138+
139+
# 7/23/2026: GHSA/WITHDRAWN: https://github.com/advisories/GHSA-h385-52j6-9984
140+
rm -f gems/agoo/CVE-2020-7670.yml
141+
142+
# 7/23/2026: GHSA/WITHDRAWN: https://github.com/advisories/GHSA-gmg5-r3c4-3fm9
143+
rm -f gems/fat_free_crm/CVE-2019-10226.yml
144+
145+
# 7/23/2026: GHSA/WITHDRAWN: https://github.com/advisories/GHSA-4249-gjr8-jpq3
146+
rm -f gems/prosemirror_to_html/GHSA-4249-gjr8-jpq3.yml
147+
148+
# 7/23/2026: GHSA/WITHDRAWN: https://github.com/advisories/GHSA-mqcp-p2hv-vw6x
149+
rm -f gems/thor/CVE-2025-54314.yml
150+
151+
# 7/23/2026: GHSA/WITHDRAWN: https://github.com/advisories/GHSA-vc8w-jr9v-vj7f
152+
# * (REJECTED) https://nvd.nist.gov/vuln/detail/CVE-2024-6531
153+
rm -f gems/bootstrap/CVE-2024-6531.yml
154+
155+
# 7/23/2026: GHSA/WITHDRAWN: https://github.com/advisories/GHSA-7mj4-2984-955f
156+
# * (DISPUTED) https://nvd.nist.gov/vuln/detail/CVE-2018-18307
157+
rm -f gems/alchemy_cms/CVE-2018-18307.yml
158+
137159
exit
138160

139161
# AL>> QUESTION (ruby or jruby)?

0 commit comments

Comments
 (0)