From 64dd62ad486a5b8bf1f2c5656d51987021b7c9be Mon Sep 17 00:00:00 2001 From: Al Snow Date: Sat, 13 Sep 2025 08:26:11 -0400 Subject: [PATCH] GHSA SYNC: Added cvss_v3 values to 3 advisories --- gems/ruby-saml/CVE-2025-25291.yml | 1 + gems/ruby-saml/CVE-2025-25292.yml | 1 + gems/ruby-saml/CVE-2025-25293.yml | 1 + 3 files changed, 3 insertions(+) diff --git a/gems/ruby-saml/CVE-2025-25291.yml b/gems/ruby-saml/CVE-2025-25291.yml index f535b38d73..8d8509d3e6 100644 --- a/gems/ruby-saml/CVE-2025-25291.yml +++ b/gems/ruby-saml/CVE-2025-25291.yml @@ -14,6 +14,7 @@ description: |- ### Impact This issue may lead to authentication bypass. +cvss_v3: 9.8 cvss_v4: 8.8 patched_versions: - "~> 1.12.4" diff --git a/gems/ruby-saml/CVE-2025-25292.yml b/gems/ruby-saml/CVE-2025-25292.yml index 0368114424..fdab920ac9 100644 --- a/gems/ruby-saml/CVE-2025-25292.yml +++ b/gems/ruby-saml/CVE-2025-25292.yml @@ -14,6 +14,7 @@ description: |- ### Impact This issue may lead to authentication bypass. +cvss_v3: 9.8 cvss_v4: 8.8 patched_versions: - "~> 1.12.4" diff --git a/gems/ruby-saml/CVE-2025-25293.yml b/gems/ruby-saml/CVE-2025-25293.yml index 1e695a7979..3320e11214 100644 --- a/gems/ruby-saml/CVE-2025-25293.yml +++ b/gems/ruby-saml/CVE-2025-25293.yml @@ -15,6 +15,7 @@ description: |- ### Impact This issue may lead to remote Denial of Service (DoS). +cvss_v3: 7.5 cvss_v4: 8.8 patched_versions: - "~> 1.12.4"