rubysec / ruby-advisory-db

A database of vulnerable Ruby Gems

Home Page:https://rubysec.com

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Place for ruby-advisory-db discussions

jasnow opened this issue · comments

Can we have a place to have discussions on ruby-advisory-db related topics?

I do not see any Discord/Slack channels or GitHub Discussions link related to this project.
Thanks.

Discussion 1:
I ran this command and got zero (great): Unreviewed Rubygem Advisories

  1. How do I query for a string, such as "ruby" or "rails" or whatever, in the description field?
  2. How do I query for empty/nil values should as empty package or ecosystem or affect fields?
  3. Any other tricks to find Ruby-related Advisories needing TLC?
    Thanks

Note that the GitHub Advisory Database is separate from the ruby-advisory-db (which pulls from GitHub Advisory Database, and which bundler-audit uses). You can however git grep the ruby-advisory-db.

I will use emails and GitHub issue for future discussions so I'm closing this issue.