[Git][security-tracker-team/security-tracker][master] Add commit references for CVE-2025-24293/rails
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Tue Sep 16 06:33:54 BST 2025
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
c2dc549e by Salvatore Bonaccorso at 2025-09-16T07:33:24+02:00
Add commit references for CVE-2025-24293/rails
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,6 +1,12 @@
CVE-2025-24293
- rails 2:7.2.2.2+dfsg-1
NOTE: https://github.com/rails/rails/security/advisories/GHSA-r4mg-4433-c7g3
+ NOTE: https://github.com/rails/rails/commit/2d612735ac0d9712fdfffaf80afa627e7295f6ce (v8.0.2.1)
+ NOTE: https://github.com/rails/rails/commit/568c0bc2f1e74c65d150a84b89a080949bf9eb9b (v8.0.2.1)
+ NOTE: https://github.com/rails/rails/commit/fb8f3a18c3d97524c0efc29150d1e5f3162fbb13 (v7.2.2.2)
+ NOTE: https://github.com/rails/rails/commit/6a944ca4805e72050a0fbb1a461534eb760d3202 (v7.2.2.2)
+ NOTE: https://github.com/rails/rails/commit/1b1adf6ee6ca0f3104fcfce79360b2ec1e06a354 (v7.1.5.2)
+ NOTE: https://github.com/rails/rails/commit/3beef20013736fd52c5dcfdf061f7999ba318290 (v7.1.5.2)
CVE-2025-9826 (Stored cross-site scripting vulnerability in M-Files Hubshare before v ...)
NOT-FOR-US: M-Files
CVE-2025-9084 (Mattermost versions 10.5.x <= 10.5.9 fail to properly validate redirec ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c2dc549ef5ea273d50eecaa11a7251508295efd0
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c2dc549ef5ea273d50eecaa11a7251508295efd0
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250916/5a43d1ef/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list