Skip to content

Fix yard CVE#10184

Merged
charleyf merged 2 commits intomainfrom
brittany/yard-cve-update
Feb 29, 2024
Merged

Fix yard CVE#10184
charleyf merged 2 commits intomainfrom
brittany/yard-cve-update

Conversation

@night-jellyfish
Copy link
Contributor

🛠 Summary of changes

Name: yard
Version: 0.9.34
CVE: https://github.com/advisories/GHSA-8mq4-9jjh-9xrc
GHSA: https://github.com/advisories/GHSA-8mq4-9jjh-9xrc
Criticality: Medium
URL: https://github.com/advisories/GHSA-8mq4-9jjh-9xrc
Title: YARD's default template vulnerable to Cross-site Scripting in generated frames.html
Solution: upgrade to '>= 0.9.35'

Brittany Greaner added 2 commits February 28, 2024 17:04
```
Name: yard
Version: 0.9.34
CVE: CVE-2024-27285
GHSA: GHSA-8mq4-9jjh-9xrc
Criticality: Medium
URL: GHSA-8mq4-9jjh-9xrc
Title: YARD's default template vulnerable to Cross-site Scripting in generated frames.html
Solution: upgrade to '>= 0.9.35'
```
@night-jellyfish
Copy link
Contributor Author

@charleyf charleyf merged commit e3509c9 into main Feb 29, 2024
@aduth
Copy link
Contributor

aduth commented Feb 29, 2024

Merging to unblock issues with branches based on main (see Slack discussion).

@charleyf charleyf deleted the brittany/yard-cve-update branch February 29, 2024 13:46
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants