diff --git a/gems/faraday/CVE-2026-25765.yml b/gems/faraday/CVE-2026-25765.yml index 0dd0f85f48..634c630425 100644 --- a/gems/faraday/CVE-2026-25765.yml +++ b/gems/faraday/CVE-2026-25765.yml @@ -61,14 +61,17 @@ description: | ``` cvss_v3: 5.8 patched_versions: + - "~> 1.10.5" - ">= 2.14.1" related: url: - https://nvd.nist.gov/vuln/detail/CVE-2026-25765 - https://github.com/lostisland/faraday/security/advisories/GHSA-33mh-2634-fwr2 - https://github.com/lostisland/faraday/releases/tag/v2.14.1 + - https://github.com/lostisland/faraday/releases/tag/v1.10.5 - https://github.com/lostisland/faraday/pull/1569 - https://github.com/lostisland/faraday/commit/a6d3a3a0bf59c2ab307d0abd91bc126aef5561bc + - https://github.com/lostisland/faraday/commit/d0fc049beb0b0e4e3bd4a52711189130bba7c5f4 - https://www.rfc-editor.org/rfc/rfc3986#section-5.2.2 - https://www.rfc-editor.org/rfc/rfc3986#section-5.4 - https://advisories.gitlab.com/pkg/gem/faraday/CVE-2026-25765