Repository navigation
Conversation
|
Hi there @glyph! A community member has suggested an improvement to your security advisory. If approved, this change will affect the global advisory listed at github.com/advisories. It will not affect the version listed in your project repository. This change will be reviewed by our Security Curation Team. If you have thoughts or feedback, please share them in a comment here! If this PR has already been closed, you can start a new community contribution for this advisory |
There was a problem hiding this comment.
🟢 Approval recommended
The affected range matches the upstream release and fix chronology.
0 open findings
What changed in this PR
Updates the Twisted security advisory to include the latest vulnerable release.
Changes:
- Extends the affected range through Twisted 26.4.0.
- Updates the advisory modification timestamp.
| File | Description |
|---|---|
GHSA-8pqf-f4m5-798g.json |
Records Twisted 26.4.0 as the last affected version. |
🧠 Review effort: Balanced
💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.
Updates
Comments
Twisted 26.4.0 is also affected. It was released on 2026-05-11, and the fix, twisted/twisted#12788 (2f8a3c29246f4eb324690e06a9767a11dc4aec9f), merged on 2026-08-15: the
twisted-26.4.0tag is 345 commits behind that commit, and no later Twisted release exists yet. The affected range should be<= 26.4.0, with no patched version.