ash_postgres
2.9.1
The PostgreSQL data layer for Ash Framework
Current section
1 Advisory
Jump to
Current section
1 Advisory
In AshPostgres, empty, atomic, non-bulk actions, policy bypass for side-effects vulnerability.
Affected Versions
References
- https://elixirforum.com/t/empty-update-action-with-policies/66954
- https://gist.github.com/zachdaniel/e49166b765978c48dfaf998d06df436e
- https://github.com/ash-project/ash_postgres
- https://github.com/ash-project/ash_postgres/commit/1228fcd851f29a68609e236f7d6a2622a4b5c4ba
- https://github.com/ash-project/ash_postgres/security/advisories/GHSA-hf59-7rwq-785m
- https://nvd.nist.gov/vuln/detail/CVE-2024-49756
Checksum
Dependency Config
mix.exs
rebar.config
Gleam
erlang.mk
Package Details
this version
20 325
yesterday
2 197
last 7 days
12 727
all time
1 116 805