Description
Just a todo list I figured I should put somewhere more public... Need to add advisories for all these:
ruby_rncryptor / ruby_rncryptor_secured -- https://srcclr.com/security/timing-attacks/ruby/s-1938
spina -- https://srcclr.com/security/cross-site-request-forgery-csrf/ruby/s-1686
logstash-core -- https://srcclr.com/security/factoring-attack-rsa-export-keys-freak/ruby/s-1745
https://srcclr.com/security/man-middle-mitm-attacks/ruby/s-1798
facter -- https://srcclr.com/security/disclosure-amazon-ec2-iam-instance/ruby/s-1508
https://srcclr.com/security/elevation-privileges-untrusted-search/ruby/s-1586
kafo -- https://srcclr.com/security/world-readable-permissions-as-default/ruby/s-740
puppet -- https://srcclr.com/catalog/search#query=type:vulnerability%20puppet