[GHSA-25qh-j22f-pwp8] ACE vulnerability in conditional configuration file...#6336
Conversation
There was a problem hiding this comment.
Pull Request Overview
Updates a security advisory (GHSA-25qh-j22f-pwp8) for an ACE vulnerability in logback-core by adding critical metadata that was previously missing.
- Added summary, affected package information, and updated CVSS scoring
- Changed severity rating from MODERATE to LOW
- Replaced CVSS v4 scoring with CVSS v3.1 scoring
Tip: Customize your code reviews with copilot-instructions.md. Create the file or learn how to get started.
advisories/unreviewed/2025/10/GHSA-25qh-j22f-pwp8/GHSA-25qh-j22f-pwp8.json
Outdated
Show resolved
Hide resolved
advisories/unreviewed/2025/10/GHSA-25qh-j22f-pwp8/GHSA-25qh-j22f-pwp8.json
Outdated
Show resolved
Hide resolved
There was a problem hiding this comment.
Pull Request Overview
Copilot reviewed 1 out of 1 changed files in this pull request and generated no new comments.
Tip: Customize your code reviews with copilot-instructions.md. Create the file or learn how to get started.
0861ee3
into
chrismcmacken/advisory-improvement-6336
|
Hi @chrismcmacken! Thank you so much for contributing to the GitHub Advisory Database. This database is free, open, and accessible to all, and it's people like you who make it great. Thanks for choosing to help others. We hope you send in more contributions in the future! |
Updates
Comments
No linked package to the CVE