File tree Expand file tree Collapse file tree
advisories/github-reviewed/2026/03 Expand file tree Collapse file tree Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-fcjp-h8cc-6879" ,
4- "modified" : " 2026-03-24T21:39:52Z " ,
4+ "modified" : " 2026-03-27T20:55:01Z " ,
55 "published" : " 2026-03-24T21:39:52Z" ,
66 "aliases" : [
77 " CVE-2026-33215"
7070 {
7171 "type" : " PACKAGE" ,
7272 "url" : " https://github.com/nats-io/nats-server"
73+ },
74+ {
75+ "type" : " WEB" ,
76+ "url" : " https://pkg.go.dev/vuln/GO-2026-4833"
7377 }
7478 ],
7579 "database_specific" : {
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-p9fm-f462-ggrg" ,
4- "modified" : " 2026-03-25T21:04:50Z " ,
4+ "modified" : " 2026-03-27T20:55:42Z " ,
55 "published" : " 2026-03-25T21:04:50Z" ,
66 "aliases" : [
77 " CVE-2026-33658"
7878 "type" : " WEB" ,
7979 "url" : " https://github.com/rails/rails/security/advisories/GHSA-p9fm-f462-ggrg"
8080 },
81+ {
82+ "type" : " ADVISORY" ,
83+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-33658"
84+ },
8185 {
8286 "type" : " PACKAGE" ,
8387 "url" : " https://github.com/rails/rails"
88+ },
89+ {
90+ "type" : " WEB" ,
91+ "url" : " https://github.com/rails/rails/releases/tag/v7.2.3.1"
92+ },
93+ {
94+ "type" : " WEB" ,
95+ "url" : " https://github.com/rails/rails/releases/tag/v8.0.4.1"
96+ },
97+ {
98+ "type" : " WEB" ,
99+ "url" : " https://github.com/rails/rails/releases/tag/v8.1.2.1"
100+ },
101+ {
102+ "type" : " WEB" ,
103+ "url" : " https://github.com/rubysec/ruby-advisory-db/blob/master/gems/activestorage/CVE-2026-33658.yml"
84104 }
85105 ],
86106 "database_specific" : {
90110 "severity" : " LOW" ,
91111 "github_reviewed" : true ,
92112 "github_reviewed_at" : " 2026-03-25T21:04:50Z" ,
93- "nvd_published_at" : null
113+ "nvd_published_at" : " 2026-03-26T22:16:29Z "
94114 }
95115}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-x6g4-f6q3-fqvv" ,
4- "modified" : " 2026-03-24T20:44:00Z " ,
4+ "modified" : " 2026-03-27T20:57:01Z " ,
55 "published" : " 2026-03-24T20:44:00Z" ,
66 "aliases" : [
77 " CVE-2026-33247"
5959 "type" : " WEB" ,
6060 "url" : " https://github.com/nats-io/nats-server/security/advisories/GHSA-x6g4-f6q3-fqvv"
6161 },
62+ {
63+ "type" : " ADVISORY" ,
64+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-33247"
65+ },
6266 {
6367 "type" : " WEB" ,
6468 "url" : " https://advisories.nats.io/CVE/secnote-2026-14.txt"
6569 },
6670 {
6771 "type" : " PACKAGE" ,
6872 "url" : " https://github.com/nats-io/nats-server"
73+ },
74+ {
75+ "type" : " WEB" ,
76+ "url" : " https://pkg.go.dev/vuln/GO-2026-4827"
6977 }
7078 ],
7179 "database_specific" : {
7583 "severity" : " HIGH" ,
7684 "github_reviewed" : true ,
7785 "github_reviewed_at" : " 2026-03-24T20:44:00Z" ,
78- "nvd_published_at" : null
86+ "nvd_published_at" : " 2026-03-25T20:16:33Z "
7987 }
8088}
You can’t perform that action at this time.
0 commit comments