Skip to content

GHSA/SYNC: 1 new spree advisory#1104

Merged
flavorjones merged 1 commit into
rubysec:masterfrom
jasnow:ghsa-syncbot-2026-06-05-07_53_06
Jun 6, 2026
Merged

GHSA/SYNC: 1 new spree advisory#1104
flavorjones merged 1 commit into
rubysec:masterfrom
jasnow:ghsa-syncbot-2026-06-05-07_53_06

Conversation

@jasnow
Copy link
Copy Markdown
Member

@jasnow jasnow commented Jun 5, 2026

GHSA/SYNC: 1 new spree advisory

- Embedded description: field (requiring manual step)
- Need "cve:" value or CVE URL.
- No CVE in GHSA advisory.
- No NVD so no cvss_v[234] values.
Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Just a note that the GHSA does have a CVSS4.0 score.

@flavorjones flavorjones merged commit 134542d into rubysec:master Jun 6, 2026
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants