| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-32463 | phlex makes Cross-site Scripting (XSS) possible due to improper sanitisation of `href` attributes on `<a>` tags | phlex-ruby | phlex | High | 7.1 | 2024-04-17 15:29:14 | Deep Dive |
| CVE-2024-28199 | Cross-site Scripting (XSS) possible with maliciously formed HTML attribute names and values in Phlex | phlex-ruby | phlex | High | 7.1 | 2024-03-11 22:50:39 | Deep Dive |
| CVE-2023-1125 | Ruby Help Desk < 1.3.4 - Subscriber+ Ticket Update via IDOR | Unknown | Ruby Help Desk | 中危 | - | 2023-05-02 07:04:53 | Deep Dive |
| CVE-2022-47318 | ruby-git 安全漏洞 | ruby-git | ruby-git | 高危 | - | 2023-01-17 00:00:00 | Deep Dive |
| CVE-2022-46648 | ruby-git 代码注入漏洞 | ruby-git | ruby-git | 高危 | - | 2023-01-17 00:00:00 | Deep Dive |
| CVE-2022-3704 | Ruby on Rails _table.html.erb cross site scripting | unspecified | Ruby on Rails | Low | 3.5 | 2022-10-26 00:00:00 | Deep Dive |
| CVE-2022-39224 | Arbitrary shell execution when extracting or listing files contained in a malicious rpm. | jordansissel | ruby-arr-pm | High | 7.0 | 2022-09-21 23:10:08 | Deep Dive |
| CVE-2022-31115 | Unsafe YAML deserialization in opensearch-ruby | opensearch-project | opensearch-ruby | High | 8.8 | 2022-06-30 21:55:11 | Deep Dive |
| CVE-2021-3779 | Ruby-MySQL Gem Client File Read | Tomita Masahiro | ruby-mysql | 中危 | - | 2022-06-28 16:30:16 | Deep Dive |
| CVE-2022-24795 | Buffer Overflow and Integer Overflow in yajl-ruby | brianmario | yajl-ruby | Medium | 5.9 | 2022-04-05 00:00:00 | Deep Dive |
| CVE-2020-7663 | websocket-extensions 安全漏洞 | - | websocket-extensions (ruby) | 高危 | - | 2020-06-02 18:25:01 | Deep Dive |
| CVE-2020-8130 | Ruby Rake 操作系统命令注入漏洞 | - | https://github.com/ruby/ruby | 中危 | - | 2020-02-24 14:41:26 | Deep Dive |
| CVE-2019-10780 | BibTeX-ruby 操作系统命令注入漏洞 | - | BibTeX-ruby | 超危 | - | 2020-01-22 13:30:47 | Deep Dive |
| CVE-2015-1855 | Ruby OpenSSL extension 输入验证错误漏洞 | Ruby | Ruby | 中危 | - | 2019-11-29 20:46:48 | Deep Dive |
| CVE-2011-4121 | Ruby OpenSSL extension 加密问题漏洞 | OpenSSL | OpenSSL extension of Ruby (Git trunk) | 超危 | - | 2019-11-26 04:35:56 | Deep Dive |
| CVE-2011-3624 | Ruby 注入漏洞 | Ruby | Ruby | 中危 | - | 2019-11-26 02:50:40 | Deep Dive |
| CVE-2014-0083 | Ruby net-ldap gem 安全漏洞 | ruby-net-ldap | ruby-net-ldap | 中危 | - | 2019-11-21 13:57:00 | Deep Dive |
| CVE-2012-6135 | RubyGems passenger 输入验证错误漏洞 | ruby-passenger | ruby-passenger | 高危 | - | 2019-11-19 16:56:41 | Deep Dive |
| CVE-2013-6461 | Nokogiri 安全漏洞 | Ruby | Nokogiri gem | 中危 | - | 2019-11-05 14:07:42 | Deep Dive |
| CVE-2013-6460 | Nokogiri 安全漏洞 | Ruby | Nokogiri gem | 中危 | - | 2019-11-05 14:02:54 | Deep Dive |