Security update for tree-sitter-ruby
This update for tree-sitter-ruby fixes the following issues - CVE-2025-5889: brace-expansion: inefficient regular expression complexity in function expand of file index.js (bsc#1244345). - CVE-2025-59343: tar-fs: tar-fs symlink validation bypass (bsc#1250517). Changes for tree-sitter-ruby: - Use correct tree-sitter dirname instead of tree_sitter (bsc#1267461). - update to 0.23.1: * ci(publish): add attestations and generate parser * build: update bindings * fix: remove unnecessary empty string usage * chore: regenerate * ci: update workflows * fix(swift): include scanner.c - update to 0.23.0: * fix(go): correct test * fix: handle != operator definition * feat: support element references with blocks * fix: do not require newline after block comment =end * fix: parsing of multiple unicode escapes * fix: correct repo url - update to 0.21.0: * feat: rewrite scanner with array header and regenerate * build: update bindings and manifests * fix: reverse precedence queries * fix: escape braces in regex * docs: update badges - switch to download_files service - add neovim links - add license file to package
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
This update for tree-sitter-ruby fixes the following issues - CVE-2025-5889: brace-expansion: inefficient regular expression complexity in function expand of file index.js (bsc#1244345). - CVE-2025-59343: tar-fs: tar-fs symlink validation bypass (bsc#1250517). Changes for tree-sitter-ruby: - Use correct tree-sitter dirname instead of tree_sitter (bsc#1267461). - update to 0.23.1: * ci(publish): add attestations and generate parser * build: update bindings * fix: remove unnecessary empty string usage * chore: regenerate * ci: update workflows * fix(swift): include scanner.c - update to 0.23.0: * fix(go): correct test * fix: handle != operator definition * feat: support element references with blocks * fix: do not require newline after block comment =end * fix: parsing of multiple unicode escapes * fix: correct repo url - update to 0.21.0: * feat: rewrite scanner with array header and regenerate * build: update bindings and manifests * fix: reverse precedence queries * fix: escape braces in regex * docs: update badges - switch to download_files service - add neovim links - add license file to package
05 / REFERENCES