Skip to content

Commit 383cc7c

Browse files
committed
doc: update CHANGELOG with assigned CVEs
1 parent a7b0cfe commit 383cc7c

File tree

1 file changed

+5
-5
lines changed

1 file changed

+5
-5
lines changed

CHANGELOG.md

+5-5
Original file line numberDiff line numberDiff line change
@@ -4,7 +4,7 @@ This is a performance and security release which addresses several possible XSS
44

55
* The dependency on Nokogiri is updated to v1.15.7 or >=1.16.8.
66

7-
This change addresses CVE-TODO (GHSA-w8gc-x259-rc7x).
7+
This change addresses CVE-2024-53985 (GHSA-w8gc-x259-rc7x).
88

99
*Mike Dalessio*
1010

@@ -14,8 +14,8 @@ This is a performance and security release which addresses several possible XSS
1414

1515
The CVEs addressed by this change are:
1616

17-
- CVE-TODO (GHSA-638j-pmjw-jq48)
18-
- CVE-TODO (GHSA-2x5m-9ch4-qgrr)
17+
- CVE-2024-53986 (GHSA-638j-pmjw-jq48)
18+
- CVE-2024-53987 (GHSA-2x5m-9ch4-qgrr)
1919

2020
*Mike Dalessio*
2121

@@ -25,8 +25,8 @@ This is a performance and security release which addresses several possible XSS
2525

2626
The CVEs addressed by this change are:
2727

28-
- CVE-TODO (GHSA-cfjx-w229-hgx5)
29-
- CVE-TODO (GHSA-rxv5-gxqc-xx8g)
28+
- CVE-2024-53988 (GHSA-cfjx-w229-hgx5)
29+
- CVE-2024-53989 (GHSA-rxv5-gxqc-xx8g)
3030

3131
Please note that we _may_ restore support for allowing "noscript" in a future release. We do not
3232
expect to ever allow "mglyph" or "malignmark", though, especially since browser support is minimal

0 commit comments

Comments
 (0)