For [CVE2022-31160](https://github.com/rubysec/ruby-advisory-db/blob/master/gems/jquery-ui-rails/CVE-2022-31160.yml) the current fixed version range of patched_versions: ">= 7.0.0" is incorrect. A fix has only been released in v8.0.0. Adding ">= 8.0.0" to the patched versions will resolve this[1][2]. **References** [1] https://github.com/github/advisory-database/pull/5757 [2] https://github.com/jquery-ui-rails/jquery-ui-rails/pull/157