# ruby3.4-rubygem-rails-7.0-7.0.8.6-1.3 on GA media Announcement ID: openSUSE-SU-2025:15124-1 Rating: moderate Cross-References: * CVE-2023-38037 * CVE-2024-26143 * CVE-2024-28103 * CVE-2024-34341 * CVE-2024-41128 * CVE-2024-47887 * CVE-2024-47888 * CVE-2024-47889 CVSS scores: * CVE-2024-26143 ( SUSE ): 5.4 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N * CVE-2024-28103 ( SUSE ): 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N * CVE-2024-41128 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2024-47887 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2024-47889 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H Affected Products: * openSUSE Tumbleweed An update that solves 8 vulnerabilities can now be installed. ## Description: These are all security issues fixed in the ruby3.4-rubygem-rails-7.0-7.0.8.6-1.3 package on the GA media of openSUSE Tumbleweed. ## Package List: * openSUSE Tumbleweed: * ruby3.4-rubygem-rails-7.0 7.0.8.6-1.3 ## References: * https://www.suse.com/security/cve/CVE-2023-38037.html * https://www.suse.com/security/cve/CVE-2024-26143.html * https://www.suse.com/security/cve/CVE-2024-28103.html * https://www.suse.com/security/cve/CVE-2024-34341.html * https://www.suse.com/security/cve/CVE-2024-41128.html * https://www.suse.com/security/cve/CVE-2024-47887.html * https://www.suse.com/security/cve/CVE-2024-47888.html * https://www.suse.com/security/cve/CVE-2024-47889.html