Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The URI.decode_www_form_component method in Ruby before 1.9.2-p330 allows remote attackers to cause a denial of service (catastrophic regular expression backtracking, resource consumption, or application crash) via a crafted string.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Ruby 安全漏洞
Vulnerability Description
Ruby是日本软件开发者松本行弘所研发的一种跨平台、面向对象的动态类型编程语言。 Ruby 1.9.2-p330之前的版本中的URI.decode_www_form_component方法存在安全漏洞。远程攻击者可借助特制的字符串利用该漏洞造成拒绝服务(资源消耗或应用程序崩溃)。
CVSS Information
N/A
Vulnerability Type
N/A