These are all security issues fixed in the ruby4.0-rubygem-loofah-2.23.1-1.5 package on the GA media of openSUSE Tumbleweed.
{ "binaries": [ { "ruby4.0-rubygem-loofah": "2.23.1-1.5" } ] }
"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2026:10353-1.json"