Support Us — Your donation helps us keep running

Goal: 1000 CNY,Raised: 1000 CNY

100.0%
Associated Vulnerability
Found 83 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2024-32463 phlex makes Cross-site Scripting (XSS) possible due to improper sanitisation of `href` attributes on `<a>` tags phlex-rubyphlex High 7.1 2024-04-17 15:29:14 Deep Dive
CVE-2024-28199 Cross-site Scripting (XSS) possible with maliciously formed HTML attribute names and values in Phlex phlex-rubyphlex High 7.1 2024-03-11 22:50:39 Deep Dive
CVE-2023-1125 Ruby Help Desk < 1.3.4 - Subscriber+ Ticket Update via IDOR UnknownRuby Help Desk 中危 -2023-05-02 07:04:53 Deep Dive
CVE-2022-47318 ruby-git 安全漏洞 ruby-gitruby-git 高危 -2023-01-17 00:00:00 Deep Dive
CVE-2022-46648 ruby-git 代码注入漏洞 ruby-gitruby-git 高危 -2023-01-17 00:00:00 Deep Dive
CVE-2022-3704 Ruby on Rails _table.html.erb cross site scripting unspecifiedRuby on Rails Low 3.5 2022-10-26 00:00:00 Deep Dive
CVE-2022-39224 Arbitrary shell execution when extracting or listing files contained in a malicious rpm. jordansisselruby-arr-pm High 7.0 2022-09-21 23:10:08 Deep Dive
CVE-2022-31115 Unsafe YAML deserialization in opensearch-ruby opensearch-projectopensearch-ruby High 8.8 2022-06-30 21:55:11 Deep Dive
CVE-2021-3779 Ruby-MySQL Gem Client File Read Tomita Masahiroruby-mysql 中危 -2022-06-28 16:30:16 Deep Dive
CVE-2022-24795 Buffer Overflow and Integer Overflow in yajl-ruby brianmarioyajl-ruby Medium 5.9 2022-04-05 00:00:00 Deep Dive
CVE-2020-7663 websocket-extensions 安全漏洞 -websocket-extensions (ruby) 高危 -2020-06-02 18:25:01 Deep Dive
CVE-2020-8130 Ruby Rake 操作系统命令注入漏洞 -https://github.com/ruby/ruby 中危 -2020-02-24 14:41:26 Deep Dive
CVE-2019-10780 BibTeX-ruby 操作系统命令注入漏洞 -BibTeX-ruby 超危 -2020-01-22 13:30:47 Deep Dive
CVE-2015-1855 Ruby OpenSSL extension 输入验证错误漏洞 RubyRuby 中危 -2019-11-29 20:46:48 Deep Dive
CVE-2011-4121 Ruby OpenSSL extension 加密问题漏洞 OpenSSLOpenSSL extension of Ruby (Git trunk) 超危 -2019-11-26 04:35:56 Deep Dive
CVE-2011-3624 Ruby 注入漏洞 RubyRuby 中危 -2019-11-26 02:50:40 Deep Dive
CVE-2014-0083 Ruby net-ldap gem 安全漏洞 ruby-net-ldapruby-net-ldap 中危 -2019-11-21 13:57:00 Deep Dive
CVE-2012-6135 RubyGems passenger 输入验证错误漏洞 ruby-passengerruby-passenger 高危 -2019-11-19 16:56:41 Deep Dive
CVE-2013-6461 Nokogiri 安全漏洞 RubyNokogiri gem 中危 -2019-11-05 14:07:42 Deep Dive
CVE-2013-6460 Nokogiri 安全漏洞 RubyNokogiri gem 中危 -2019-11-05 14:02:54 Deep Dive