Severity Critical High Medium Low Informational Vulnerability Categories Abuse Of Functionality Acumonitor Arbitrary File Creation Arbitrary File Read Arbitrary File Write Authentication Bypass BOLA Bruteforce Possible Buffer Overflow CSRF CSTI Code Execution Configuration Crlf Injection Deepscan Default Credentials Denial-of-service Dev Files Directory Listing Directory Traversal Eli Injection Error Handling File Inclusion Http Parameter Pollution Http Response Splitting Information Disclosure Insecure Admin Access Insecure Deserialization Internal Ip Disclosure Known Vulnerabilitie Known Vulnerabilities Ldap Injection Malware Missing Update Path Traversal Privilege Escalation Remote Code Execution SSRF SSTI Sensitive Data Not Over Ssl Server Side Template Injection Session Fixation Source Code Disclosure Sql Injection Test Files Unauthenticated File Upload Url Redirection Weak Credentials Weak Crypto XFS XSS XXE Xpath Injection Vulnerability Name CVE CWE CWE Severity Ruby Numeric Errors Vulnerability (CVE-2009-1904) CVE-2009-1904 Medium Ruby Numeric Errors Vulnerability (CVE-2011-0188) CVE-2011-0188 Medium Ruby on Rails 7PK - Security Features Vulnerability (CVE-2015-7576) CVE-2015-7576 Low Ruby on Rails Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2019-5419) CVE-2019-5419 CWE-770 CWE-770 High Ruby on Rails Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') Vulnerability (CVE-2007-6077) CVE-2007-6077 CWE-362 CWE-362 Medium Ruby on Rails CookieStore session cookie persistence CWE-284 CWE-284 Low Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2008-5189) CVE-2008-5189 CWE-352 CWE-352 Medium Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2011-0447) CVE-2011-0447 CWE-352 CWE-352 Medium Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-8166) CVE-2020-8166 CWE-352 CWE-352 Medium Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-8167) CVE-2020-8167 CWE-352 CWE-352 Medium Ruby on Rails CVE-2006-4112 Vulnerability (CVE-2006-4112) CVE-2006-4112 High Ruby on Rails CVE-2013-0277 Vulnerability (CVE-2013-0277) CVE-2013-0277 Critical Ruby on Rails CVE-2015-3227 Vulnerability (CVE-2015-3227) CVE-2015-3227 Medium Ruby on Rails CVE-2018-16477 Vulnerability (CVE-2018-16477) CVE-2018-16477 Medium Ruby on Rails CVE-2019-5418 Vulnerability (CVE-2019-5418) CVE-2019-5418 High Ruby on Rails CVE-2021-22902 Vulnerability (CVE-2021-22902) CVE-2021-22902 High Ruby on Rails CVE-2022-23633 Vulnerability (CVE-2022-23633) CVE-2022-23633 Medium Ruby on Rails CVE-2022-23634 Vulnerability (CVE-2022-23634) CVE-2022-23634 Medium Ruby on Rails CVE-2024-26144 Vulnerability (CVE-2024-26144) CVE-2024-26144 Medium Ruby on Rails CVE-2024-28103 Vulnerability (CVE-2024-28103) CVE-2024-28103 Critical Ruby on Rails Data Processing Errors Vulnerability (CVE-2014-3916) CVE-2014-3916 Medium Ruby on Rails Deserialization of Untrusted Data Vulnerability (CVE-2018-16476) CVE-2018-16476 CWE-502 CWE-502 High Ruby on Rails Deserialization of Untrusted Data Vulnerability (CVE-2020-8164) CVE-2020-8164 CWE-502 CWE-502 High Ruby on Rails Deserialization of Untrusted Data Vulnerability (CVE-2020-8165) CVE-2020-8165 CWE-502 CWE-502 Critical Ruby on Rails directory traversal vulnerability CVE-2014-0130 CWE-22 CWE-22 High Ruby on Rails DoubleTap RCE (CVE-2019-5420) CVE-2019-5420 CWE-502 CWE-502 High Ruby on Rails Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2009-3086) CVE-2009-3086 CWE-200 CWE-200 Medium Ruby on Rails Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2012-6497) CVE-2012-6497 CWE-200 CWE-200 Medium Ruby on Rails Generation of Error Message Containing Sensitive Information Vulnerability (CVE-2021-22885) CVE-2021-22885 CWE-209 CWE-209 High Ruby on Rails Improper Access Control Vulnerability (CVE-2015-7577) CVE-2015-7577 CWE-284 CWE-284 Medium Ruby on Rails Improper Access Control Vulnerability (CVE-2016-6317) CVE-2016-6317 CWE-284 CWE-284 High Ruby on Rails Improper Authentication Vulnerability (CVE-2009-2422) CVE-2009-2422 CWE-287 CWE-287 Critical Ruby on Rails Improper Authentication Vulnerability (CVE-2012-3424) CVE-2012-3424 CWE-287 CWE-287 Medium Ruby on Rails Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2006-4111) CVE-2006-4111 CWE-94 CWE-94 High Ruby on Rails Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2011-3186) CVE-2011-3186 CWE-94 CWE-94 Medium Ruby on Rails Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2020-8163) CVE-2020-8163 CWE-94 CWE-94 High Ruby on Rails Improper Input Validation Vulnerability (CVE-2008-7248) CVE-2008-7248 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2010-3933) CVE-2010-3933 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2011-2929) CVE-2011-2929 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2011-3187) CVE-2011-3187 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-0156) CVE-2013-0156 CWE-20 CWE-20 High Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-1854) CVE-2013-1854 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-1856) CVE-2013-1856 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-3221) CVE-2013-3221 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-6414) CVE-2013-6414 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2014-0082) CVE-2014-0082 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2016-0753) CVE-2016-0753 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2016-2098) CVE-2016-2098 CWE-20 CWE-20 High Ruby on Rails Improper Input Validation Vulnerability (CVE-2019-5420) CVE-2019-5420 CWE-20 CWE-20 Critical Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2014-0130) CVE-2014-0130 CWE-22 CWE-22 Medium Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2014-7818) CVE-2014-7818 CWE-22 CWE-22 Medium Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2014-7829) CVE-2014-7829 CWE-22 CWE-22 Medium Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2016-0752) CVE-2016-0752 CWE-22 CWE-22 High Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2016-2097) CVE-2016-2097 CWE-22 CWE-22 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2007-3227) CVE-2007-3227 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2009-3009) CVE-2009-3009 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2009-4214) CVE-2009-4214 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-0446) CVE-2011-0446 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-1497) CVE-2011-1497 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-2197) CVE-2011-2197 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-2931) CVE-2011-2931 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-2932) CVE-2011-2932 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-4319) CVE-2011-4319 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-1098) CVE-2012-1098 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-1099) CVE-2012-1099 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-3463) CVE-2012-3463 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-3464) CVE-2012-3464 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-3465) CVE-2012-3465 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2013-1855) CVE-2013-1855 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2013-1857) CVE-2013-1857 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2013-4491) CVE-2013-4491 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2013-6415) CVE-2013-6415 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2013-6416) CVE-2013-6416 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2014-0081) CVE-2014-0081 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-3226) CVE-2015-3226 CWE-707 CWE-707 Medium 1...160161162163...307 161 / 307