Vulnerability Name CVE Severity
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2018-19206) CVE-2018-19206
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-12625) CVE-2020-12625
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-13964) CVE-2020-13964
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-13965) CVE-2020-13965
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-15562) CVE-2020-15562
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-16145) CVE-2020-16145
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-18670) CVE-2020-18670
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-18671) CVE-2020-18671
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-35730) CVE-2020-35730
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2021-26925) CVE-2021-26925
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2021-44025) CVE-2021-44025
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2021-46144) CVE-2021-46144
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-5631) CVE-2023-5631
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-43770) CVE-2023-43770
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2023-47272) CVE-2023-47272
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-37383) CVE-2024-37383
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-37384) CVE-2024-37384
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-42008) CVE-2024-42008
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-42009) CVE-2024-42009
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2025-68461) CVE-2025-68461
Roundcube Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2026-35539) CVE-2026-35539
Roundcube Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) Vulnerability (CVE-2024-57004) CVE-2024-57004
Roundcube Improper Neutralization of Special Elements used in a Command ('Command Injection') Vulnerability (CVE-2024-37385) CVE-2024-37385
Roundcube Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2013-6172) CVE-2013-6172
Roundcube Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2021-44026) CVE-2021-44026
Roundcube Improper Privilege Management Vulnerability (CVE-2017-8114) CVE-2017-8114
Roundcube Incorrect Resource Transfer Between Spheres Vulnerability (CVE-2026-35540) CVE-2026-35540
Roundcube Incorrect Resource Transfer Between Spheres Vulnerability (CVE-2026-35542) CVE-2026-35542
Roundcube Incorrect Resource Transfer Between Spheres Vulnerability (CVE-2026-35543) CVE-2026-35543
Roundcube Incorrect Resource Transfer Between Spheres Vulnerability (CVE-2026-35544) CVE-2026-35544
Roundcube Incorrect Resource Transfer Between Spheres Vulnerability (CVE-2026-35545) CVE-2026-35545
Roundcube Multiple Buffer Overflow Vulnerabilities (CVE-2015-2181) CVE-2015-2181
Roundcube Multiple Cross-site Request Forgery (CSRF) Vulnerabilities (CVE-2014-9587) CVE-2014-9587
Roundcube Resource Management Errors Vulnerability (CVE-2008-5620) CVE-2008-5620
Roundcube Resource Management Errors Vulnerability (CVE-2011-4078) CVE-2011-4078
Roundcube security updates 0.8.6 and 0.7.3 CVE-2013-1904
Roundcube Unspesificed Vulnerability (CVE-2018-9846) CVE-2018-9846
Roundcube Unspesificed Vulnerability (CVE-2018-1000071) CVE-2018-1000071
Roundcube Unspesificed Vulnerability (CVE-2019-10740) CVE-2019-10740
Roundcube Unspesificed Vulnerability (CVE-2019-15237) CVE-2019-15237
RSA Private Key Detected
Ruby 7PK - Security Features Vulnerability (CVE-2015-3900) CVE-2015-3900
Ruby Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') Vulnerability (CVE-2026-46727) CVE-2026-46727
Ruby Cryptographic Issues Vulnerability (CVE-2011-2686) CVE-2011-2686
Ruby Cryptographic Issues Vulnerability (CVE-2012-5371) CVE-2012-5371
Ruby Cryptographic Issues Vulnerability (CVE-2013-4073) CVE-2013-4073
Ruby Cryptographic Issues Vulnerability (CVE-2013-4287) CVE-2013-4287
Ruby Cryptographic Issues Vulnerability (CVE-2013-4363) CVE-2013-4363
Ruby CVE-2018-16395 Vulnerability (CVE-2018-16395) CVE-2018-16395
Ruby CVE-2018-16396 Vulnerability (CVE-2018-16396) CVE-2018-16396
Ruby CVE-2019-15845 Vulnerability (CVE-2019-15845) CVE-2019-15845
Ruby CVE-2021-41819 Vulnerability (CVE-2021-41819) CVE-2021-41819
Ruby Double Free Vulnerability (CVE-2022-28738) CVE-2022-28738
Ruby Exposure of Resource to Wrong Sphere Vulnerability (CVE-2021-31810) CVE-2021-31810
Ruby Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2020-10933) CVE-2020-10933
Ruby framework weak secret key
RubyGems 7PK - Security Features Vulnerability (CVE-2015-3900) CVE-2015-3900
RubyGems Cryptographic Issues Vulnerability (CVE-2012-2126) CVE-2012-2126
RubyGems Cryptographic Issues Vulnerability (CVE-2013-4287) CVE-2013-4287
RubyGems Cryptographic Issues Vulnerability (CVE-2013-4363) CVE-2013-4363
RubyGems Deserialization of Untrusted Data Vulnerability (CVE-2017-0903) CVE-2017-0903
RubyGems Deserialization of Untrusted Data Vulnerability (CVE-2018-1000074) CVE-2018-1000074
RubyGems Improper Authentication Vulnerability (CVE-2022-36073) CVE-2022-36073
RubyGems Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2017-0899) CVE-2017-0899
RubyGems Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2019-8324) CVE-2019-8324
RubyGems Improper Input Validation Vulnerability (CVE-2015-4020) CVE-2015-4020
RubyGems Improper Input Validation Vulnerability (CVE-2017-0900) CVE-2017-0900
RubyGems Improper Input Validation Vulnerability (CVE-2017-0901) CVE-2017-0901
RubyGems Improper Input Validation Vulnerability (CVE-2018-1000077) CVE-2018-1000077
RubyGems Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2018-1000079) CVE-2018-1000079
RubyGems Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2019-8320) CVE-2019-8320
RubyGems Improper Link Resolution Before File Access ('Link Following') Vulnerability (CVE-2018-1000073) CVE-2018-1000073
RubyGems Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') Vulnerability (CVE-2019-8321) CVE-2019-8321
RubyGems Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2018-1000078) CVE-2018-1000078
RubyGems Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2019-8322) CVE-2019-8322