Repository navigation
[GHSA-78fc-9688-w8xw] OpenMRS Module Upload Vulnerable to Path Traversal (Zip Slip) - #10305
yusuke-koyoshi wants to merge 1 commit into
Conversation
|
Hi there @ibacher! A community member has suggested an improvement to your security advisory. If approved, this change will affect the global advisory listed at github.com/advisories. It will not affect the version listed in your project repository. This change will be reviewed by our Security Curation Team. If you have thoughts or feedback, please share them in a comment here! If this PR has already been closed, you can start a new community contribution for this advisory |
There was a problem hiding this comment.
🟢 Approval recommended
The resulting CVSS v4 vector is valid and consistent with repository formatting.
0 open findings
What changed in this PR
Corrects severity metadata for the OpenMRS Zip Slip advisory.
Changes:
- Removes the CVSS v3 vector.
- Fixes CVSS v4 validation by removing the trailing slash.
| File | Description |
|---|---|
GHSA-78fc-9688-w8xw.json |
Updates CVSS severity metadata. |
🧠 Review effort: Balanced
💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.
Updates
Comments
Fix CVSS v4 validation.