Skip to content

GHSA SYNC: 1 brand new advisory #851

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Closed

Conversation

jasnow
Copy link
Contributor

@jasnow jasnow commented Feb 20, 2025

GHSA SYNC: 1 brand new advisory: gems/nokogiri/GHSA-5mwf-688x-mr7x.yml

FYI: Very close to gems/nokogiri/GHSA-vvfq-8hwr-qm4m.yml ,

@flavorjones
Copy link
Contributor

flavorjones commented Feb 20, 2025

For some reason, Github has issued a duplicate GHSA for GHSA-vvfq-8hwr-qm4m. They do this pretty often, and I don't understand it. I don't think it needs to be a separate entry in this database, but I leave editorial decisions to y'all.

@postmodern
Copy link
Member

Yeah, going to reject this GHSA as it's practically identical to gems/nokogiri/GHSA-vvfq-8hwr-qm4m.yml. @jasnow go ahead and add it to your ignore list.

@postmodern postmodern closed this Feb 20, 2025
@jasnow jasnow deleted the ghsa-syncbot-2025-02-20-07_39_44 branch February 21, 2025 13:58
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants