Vulnerability Name CVE Severity
Ruby Numeric Errors Vulnerability (CVE-2009-1904) CVE-2009-1904
Ruby Numeric Errors Vulnerability (CVE-2011-0188) CVE-2011-0188
Ruby on Rails 7PK - Security Features Vulnerability (CVE-2015-7576) CVE-2015-7576
Ruby on Rails Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2019-5419) CVE-2019-5419
Ruby on Rails Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') Vulnerability (CVE-2007-6077) CVE-2007-6077
Ruby on Rails CookieStore session cookie persistence
Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2008-5189) CVE-2008-5189
Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2011-0447) CVE-2011-0447
Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-8166) CVE-2020-8166
Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-8167) CVE-2020-8167
Ruby on Rails CVE-2006-4112 Vulnerability (CVE-2006-4112) CVE-2006-4112
Ruby on Rails CVE-2013-0277 Vulnerability (CVE-2013-0277) CVE-2013-0277
Ruby on Rails CVE-2015-3227 Vulnerability (CVE-2015-3227) CVE-2015-3227
Ruby on Rails CVE-2018-16477 Vulnerability (CVE-2018-16477) CVE-2018-16477
Ruby on Rails CVE-2019-5418 Vulnerability (CVE-2019-5418) CVE-2019-5418
Ruby on Rails CVE-2021-22902 Vulnerability (CVE-2021-22902) CVE-2021-22902
Ruby on Rails CVE-2022-23633 Vulnerability (CVE-2022-23633) CVE-2022-23633
Ruby on Rails CVE-2022-23634 Vulnerability (CVE-2022-23634) CVE-2022-23634
Ruby on Rails CVE-2024-26144 Vulnerability (CVE-2024-26144) CVE-2024-26144
Ruby on Rails CVE-2024-28103 Vulnerability (CVE-2024-28103) CVE-2024-28103
Ruby on Rails Data Processing Errors Vulnerability (CVE-2014-3916) CVE-2014-3916
Ruby on Rails Deserialization of Untrusted Data Vulnerability (CVE-2018-16476) CVE-2018-16476
Ruby on Rails Deserialization of Untrusted Data Vulnerability (CVE-2020-8164) CVE-2020-8164
Ruby on Rails Deserialization of Untrusted Data Vulnerability (CVE-2020-8165) CVE-2020-8165
Ruby on Rails directory traversal vulnerability CVE-2014-0130
Ruby on Rails DoubleTap RCE (CVE-2019-5420) CVE-2019-5420
Ruby on Rails Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2009-3086) CVE-2009-3086
Ruby on Rails Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2012-6497) CVE-2012-6497
Ruby on Rails Generation of Error Message Containing Sensitive Information Vulnerability (CVE-2021-22885) CVE-2021-22885
Ruby on Rails Improper Access Control Vulnerability (CVE-2015-7577) CVE-2015-7577
Ruby on Rails Improper Access Control Vulnerability (CVE-2016-6317) CVE-2016-6317
Ruby on Rails Improper Authentication Vulnerability (CVE-2009-2422) CVE-2009-2422
Ruby on Rails Improper Authentication Vulnerability (CVE-2012-3424) CVE-2012-3424
Ruby on Rails Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2006-4111) CVE-2006-4111
Ruby on Rails Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2011-3186) CVE-2011-3186
Ruby on Rails Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2020-8163) CVE-2020-8163
Ruby on Rails Improper Input Validation Vulnerability (CVE-2008-7248) CVE-2008-7248
Ruby on Rails Improper Input Validation Vulnerability (CVE-2010-3933) CVE-2010-3933
Ruby on Rails Improper Input Validation Vulnerability (CVE-2011-2929) CVE-2011-2929
Ruby on Rails Improper Input Validation Vulnerability (CVE-2011-3187) CVE-2011-3187
Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-0156) CVE-2013-0156
Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-1854) CVE-2013-1854
Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-1856) CVE-2013-1856
Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-3221) CVE-2013-3221
Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-6414) CVE-2013-6414
Ruby on Rails Improper Input Validation Vulnerability (CVE-2014-0082) CVE-2014-0082
Ruby on Rails Improper Input Validation Vulnerability (CVE-2016-0753) CVE-2016-0753
Ruby on Rails Improper Input Validation Vulnerability (CVE-2016-2098) CVE-2016-2098
Ruby on Rails Improper Input Validation Vulnerability (CVE-2019-5420) CVE-2019-5420
Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2014-0130) CVE-2014-0130
Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2014-7818) CVE-2014-7818
Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2014-7829) CVE-2014-7829
Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2016-0752) CVE-2016-0752
Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2016-2097) CVE-2016-2097
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2007-3227) CVE-2007-3227
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2009-3009) CVE-2009-3009
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2009-4214) CVE-2009-4214
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-0446) CVE-2011-0446
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-1497) CVE-2011-1497
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-2197) CVE-2011-2197
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-2931) CVE-2011-2931
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-2932) CVE-2011-2932
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-4319) CVE-2011-4319
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-1098) CVE-2012-1098
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-1099) CVE-2012-1099
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-3463) CVE-2012-3463
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-3464) CVE-2012-3464
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-3465) CVE-2012-3465
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2013-1855) CVE-2013-1855
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2013-1857) CVE-2013-1857
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2013-4491) CVE-2013-4491
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2013-6415) CVE-2013-6415
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2013-6416) CVE-2013-6416
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2014-0081) CVE-2014-0081
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-3226) CVE-2015-3226