
CVE-2026-31830 sigstore-ruby is a pure Ruby implementation of the sigstore verify command from the sigstore/cosign project. Prior to 0.2.3, Sigstore::Verifier#verify does not propag… https://www.cve.org/CVERecord?id=CVE-2026-31830
Post summary
CVE-2026-31830 is noted in the sigstore-ruby project with minimal details, lacking evidence of PoC, exploit, active use, patch, or technical specifics.
