Skip to content

[AUTOPATCHER-CORE] Upgrade rubygem-nokogiri to 1.19.4 for CVE-2026-57438, CVE-2026-57435, CVE-2026-57236, CVE-2026-57437, CVE-2026-57434, CVE-2026-57436, CVE-2026-57234, CVE-2026-57235#17834

Open
CBL-Mariner-Bot wants to merge 1 commit into
fasttrack/3.0from
cblmargh/rubygem-nokogiri-upgrade-to-1.19.4-fasttrack/3.0
Open

[AUTOPATCHER-CORE] Upgrade rubygem-nokogiri to 1.19.4 for CVE-2026-57438, CVE-2026-57435, CVE-2026-57236, CVE-2026-57437, CVE-2026-57434, CVE-2026-57436, CVE-2026-57234, CVE-2026-57235#17834
CBL-Mariner-Bot wants to merge 1 commit into
fasttrack/3.0from
cblmargh/rubygem-nokogiri-upgrade-to-1.19.4-fasttrack/3.0

Conversation

@CBL-Mariner-Bot

Copy link
Copy Markdown
Collaborator

[AUTOPATCHER-CORE] Upgrade rubygem-nokogiri to 1.19.4 for CVE-2026-57438, CVE-2026-57435, CVE-2026-57236, CVE-2026-57437, CVE-2026-57434, CVE-2026-57436, CVE-2026-57234, CVE-2026-57235
Upgrade pipeline run -> https://dev.azure.com/mariner-org/mariner/_build/results?buildId=1148420&view=results

…, CVE-2026-57236, CVE-2026-57437, CVE-2026-57434, CVE-2026-57436, CVE-2026-57234, CVE-2026-57235
@CBL-Mariner-Bot CBL-Mariner-Bot requested a review from a team as a code owner June 28, 2026 06:12
@Kanishk-Bansal Kanishk-Bansal changed the title [AUTOPATCHER-CORE] Upgrade rubygem-nokogiri to 1.19.4 for CVE-2026-57438, CVE-2026-57435, CVE-2026-57236, CVE-2026-57437, CVE-2026-57434, CVE-2026-57436, CVE-2026-57234, CVE-2026-57235 [AUTOPATCHER-CORE] Upgrade rubygem-nokogiri to 1.19.4 for CVE-2026-57438, CVE-2026-57435, CVE-2026-57236, CVE-2026-57437, CVE-2026-57434, CVE-2026-57436, CVE-2026-57234, CVE-2026-57235 Jun 28, 2026

@Kanishk-Bansal Kanishk-Bansal left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM, Minor version bump to fix the CVE.
the package builds fine, new tarball uploaded.

  • Buddy Build
  • Tarballs uploaded
  • Changelog entry
  • CG Manifest
  • PR has security & CVE-fixed-by-upgrade tag

@Kanishk-Bansal Kanishk-Bansal added the CVEFixReadyForMaintainerReview When a CVE fix has been reviewed by release manager and is ready for stable maintainer review label Jun 28, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Automatic PR AutoUpgrade Core CVEFixReadyForMaintainerReview When a CVE fix has been reviewed by release manager and is ready for stable maintainer review fasttrack/3.0 PRs Destined for Azure Linux 3.0 Packaging

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants