Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[GHSA-gxg6-rc6c-v673] Improper Input Validation in BeanShell #2327

Conversation

jensdietrich
Copy link

Updates

  • Affected products

Comments
Several other components are also affected as a result of cloning or shading. Proof-of-Vulnerability projects with tests to verify the presence of the CVE can be found here: https://github.com/jensdietrich/xshady-release/.

@github-actions github-actions bot changed the base branch from main to jensdietrich/advisory-improvement-2327 May 28, 2023 23:33
@darakian
Copy link
Contributor

Hey @jensdietrich, sorry for the delay. Same question as #2258
Can you elaborate on what the results are and how they were generated?

@jensdietrich
Copy link
Author

Please see my response for #2258 -- do let me know if more info is needed for this specific PR.

@darakian
Copy link
Contributor

On closer inspection this looks like the same artifact as what we have on file just with a different range.

@github-actions github-actions bot deleted the jensdietrich-GHSA-gxg6-rc6c-v673 branch June 12, 2023 22:01
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants