An open API service providing security vulnerability metadata for many open source software ecosystems.

rubygems

decidim

rubygems

A generator and multiple gems made with Ruby on Rails.

View on github.com · View on rubygems.org

Moderate
over 1 year ago

Possibility to circumvent the invitation token expiry period GSA_kwCzR0hTQS13M3E4LW00OTItNHB3cM4AA5Zd

rubygems decidim-system, decidim-admin, decidim, devise_invitable
High
almost 2 years ago

Decidim has broken access control in templates GSA_kwCzR0hTQS02MzloLTg2aHctcWNqcc4AA2Qo

rubygems decidim, decidim-templates