diff --git a/advisories/unreviewed/2026/07/GHSA-h4w6-wx8r-p68v/GHSA-h4w6-wx8r-p68v.json b/advisories/unreviewed/2026/07/GHSA-h4w6-wx8r-p68v/GHSA-h4w6-wx8r-p68v.json index 9773dab881c9..f262dcd4874f 100644 --- a/advisories/unreviewed/2026/07/GHSA-h4w6-wx8r-p68v/GHSA-h4w6-wx8r-p68v.json +++ b/advisories/unreviewed/2026/07/GHSA-h4w6-wx8r-p68v/GHSA-h4w6-wx8r-p68v.json @@ -6,14 +6,35 @@ "aliases": [ "CVE-2026-38969" ], - "details": "ruby webrick through v1.9.2 WEBrick reparses trailer Content-Length into canonical request state, enabling request smuggling.", + "summary": "WEBrick is vulnerable to HTTP request smuggling via trailer Content-Length", + "details": "WEBrick through version 1.9.2 reparses a Content-Length field from HTTP chunked trailers into the canonical request headers, which can enable HTTP request smuggling.", "severity": [ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [], + "affected": [ + { + "package": { + "ecosystem": "RubyGems", + "name": "webrick" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "0" + }, + { + "last_affected": "1.9.2" + } + ] + } + ] + } + ], "references": [ { "type": "ADVISORY", @@ -27,6 +48,14 @@ "type": "WEB", "url": "https://github.com/ruby/webrick/pull/199" }, + { + "type": "WEB", + "url": "https://github.com/ruby/webrick/commit/25b0e9206bf5991c6274893d53c428d23b3f2292" + }, + { + "type": "PACKAGE", + "url": "https://github.com/ruby/webrick" + }, { "type": "WEB", "url": "https://github.com/ruby/webrick/blob/master/README.md"