ruby-advisory-db icon indicating copy to clipboard operation
ruby-advisory-db copied to clipboard

guard-livereload security vulnerability

Open skorth opened this issue 7 years ago • 3 comments

guard/guard-livereload#159

CVE seems to be invalid: https://github.com/distributedweaknessfiling/DWF-Database-Artifacts/blob/158c10cf11bc7d6ad728c1a8dd213f523ecfca52/DWF/2016/1000305/CVE-2016-1000305.json

skorth avatar Apr 09 '17 20:04 skorth

We're definitely missing this issue - but what part is invalid?

phillmv avatar Apr 10 '17 21:04 phillmv

@phillmv I just didn't find any CVE assignment on mitre.

skorth avatar Apr 11 '17 10:04 skorth

That is part of DWF, which is a newly minted CNA. MITRE has not fully setup the process to automatically pull in and process DWF-assigned IDs. That is the official DWF GitHub though, so any assignment information there is legitimate.

attritionorg avatar Apr 11 '17 22:04 attritionorg