Context
Shared remediation for 2 Jira finding(s) in Scalingo/nsq-ruby.
The Jira issues below point to the same repository and remediation target, but they remain separate advisories at the Jira layer.
Jira Findings
- VUL-485 rack vulnerability in Scalingo/nsq-ruby
- VUL-484 rack vulnerability in Scalingo/nsq-ruby
Shared Remediation
- Upgrade
rack to 2.2.23
- Refresh the lockfile so the vulnerable version is no longer pinned
- Verify the application still boots and the dependency resolution remains clean
References
Context
Shared remediation for 2 Jira finding(s) in
Scalingo/nsq-ruby.The Jira issues below point to the same repository and remediation target, but they remain separate advisories at the Jira layer.
Jira Findings
rack2.2.6.4->2.2.23rack2.2.6.4->2.2.23Shared Remediation
rackto2.2.23References