File tree Expand file tree Collapse file tree 1 file changed +5
-3
lines changed Expand file tree Collapse file tree 1 file changed +5
-3
lines changed Original file line number Diff line number Diff line change 1
1
---
2
2
gem : discordrb
3
3
cve : 2023-28102
4
+ ghsa : 8832-4mm5-x2r6
4
5
url : https://securitylab.github.com/advisories/GHSL-2022-094_discordrb
5
6
title : " GHSL-2022-094: Remote Code Execution in discordrb"
6
7
date : 2023-03-27
7
8
description : |
8
- The encode_file method may lead to remote code execution (RCE) if
9
- invoked with untrusted user-controlled data.
9
+ The encode_file method may lead to remote code execution
10
+ (RCE) if invoked with untrusted user-controlled data.
10
11
cvss_v3 : 9.6
11
12
patched_versions :
12
13
- " >= 3.4.3"
13
14
related :
14
15
url :
15
16
- https://nvd.nist.gov/vuln/detail/CVE-2023-28102
16
- - https://github.com/shardlab/discordrb/commit/91e13043ffa89227c3fcdc3408f06da237d28c95
17
17
- https://securitylab.github.com/advisories/GHSL-2022-094_discordrb
18
+ - https://github.com/shardlab/discordrb/commit/91e13043ffa89227c3fcdc3408f06da237d28c95
18
19
- https://rubygems.org/gems/discordrb
20
+ - https://github.com/advisories/GHSA-8832-4mm5-x2r6
You can’t perform that action at this time.
0 commit comments