{"advisoryId":"45429-1","cves":["CVE-2024-39908"],"cvss":0.0,"database_specific":{"severity":"Medium"},"datePublished":"2025-03-03T22:12:58.113Z","description":"CVE-2024-39908 affecting package rubygem-rexml for versions less than 3.2.7-4. A patched version of the package is available.","id":"MARINER2-45429","ovalId":"oval:com.microsoft.cbl-mariner:def:45429","source":"azure_linux","title":"CVE-2024-39908 affecting package rubygem-rexml for versions less than 3.2.7-4","url":"https://github.com/microsoft/CBL-MarinerVulnerabilityData"}