CVE-2022-31072 Octokit is a Ruby library for the GitHub API. Versions 4.23.0 and 4.24.0 contain world-writable files. The files' permissions are set to '-rw-rw-rw-'

CVE-2022-31072 Octokit is a Ruby library for the GitHub API. Versions 4.23.0 and 4.24.0 contain world-writable files. The files' permissions are set to '-rw-rw-rw-'

This issue was addressed in version 4.25.0 of Octokit. Octokit will no longer be packaged with world-writable files. PRs for this issue are welcome.

CVE-2022-31073

This issue was addressed in version 4.25.0 of Octokit. A bug was fixed that caused Octokit to not be able to delete/restore data for a repository if the path contained a space. PRs for this issue are welcome.

CVE-2023-31073

This issue was addressed in version 4.25.0 of Octokit. Octokit will no longer be packaged with world-writable files. PRs for this issue are welcome.

The importance of digital marketing is that it helps your business grow by reaching the audiences you want and making it easy for them to connect with you online.

CVE-2022-31075

This issue was addressed in version 4.26.0 of Octokit.

CVE-2016-2022-31073

This issue was addressed in version 4.25.0 of Octokit. Octokit will no longer be packaged with world-writable files. PRs for this issue are welcome.

Which version is your blog post referencing?

Issue 2023 - Octokit Issues Fingerprinting Attacks When Running on Remote Machines

Octokit will not be shipped with world-writable files. PRs for this issue are welcome.

References

Subscribe to CVE.news
Don’t miss out on the latest issues. Sign up now to get access to the library of members-only issues.
jamie@example.com
Subscribe