Vulnerability Name CVE Severity
RubyGems Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2019-8323) CVE-2019-8323
RubyGems Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2019-8325) CVE-2019-8325
RubyGems Improper Verification of Cryptographic Signature Vulnerability (CVE-2018-1000076) CVE-2018-1000076
RubyGems Loop with Unreachable Exit Condition ('Infinite Loop') Vulnerability (CVE-2018-1000075) CVE-2018-1000075
RubyGems Origin Validation Error Vulnerability (CVE-2017-0902) CVE-2017-0902
RubyGems Other Vulnerability (CVE-2012-2125) CVE-2012-2125
Ruby Improper Authentication Vulnerability (CVE-2007-5162) CVE-2007-5162
Ruby Improper Authentication Vulnerability (CVE-2007-5770) CVE-2007-5770
Ruby Improper Authentication Vulnerability (CVE-2008-3905) CVE-2008-3905
Ruby Improper Authentication Vulnerability (CVE-2009-0642) CVE-2009-0642
Ruby Improper Authentication Vulnerability (CVE-2017-10784) CVE-2017-10784
Ruby Improper Authentication Vulnerability (CVE-2019-16201) CVE-2019-16201
Ruby Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2019-16255) CVE-2019-16255
Ruby Improper Input Validation Vulnerability (CVE-2008-3657) CVE-2008-3657
Ruby Improper Input Validation Vulnerability (CVE-2008-3790) CVE-2008-3790
Ruby Improper Input Validation Vulnerability (CVE-2009-4492) CVE-2009-4492
Ruby Improper Input Validation Vulnerability (CVE-2009-5147) CVE-2009-5147
Ruby Improper Input Validation Vulnerability (CVE-2011-2705) CVE-2011-2705
Ruby Improper Input Validation Vulnerability (CVE-2011-4815) CVE-2011-4815
Ruby Improper Input Validation Vulnerability (CVE-2013-1821) CVE-2013-1821
Ruby Improper Input Validation Vulnerability (CVE-2015-1855) CVE-2015-1855
Ruby Improper Input Validation Vulnerability (CVE-2015-7551) CVE-2015-7551
Ruby Improper Input Validation Vulnerability (CVE-2017-6181) CVE-2017-6181
Ruby Improper Input Validation Vulnerability (CVE-2018-8779) CVE-2018-8779
Ruby Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2008-1891) CVE-2008-1891
Ruby Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2018-6914) CVE-2018-6914
Ruby Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2018-8780) CVE-2018-8780
Ruby Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2021-28966) CVE-2021-28966
Ruby Improper Link Resolution Before File Access ('Link Following') Vulnerability (CVE-2011-1004) CVE-2011-1004
Ruby Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') Vulnerability (CVE-2017-17742) CVE-2017-17742
Ruby Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2013-0256) CVE-2013-0256
Ruby Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2011-3624) CVE-2011-3624
Ruby Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2017-17790) CVE-2017-17790
Ruby Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2019-16254) CVE-2019-16254
Ruby Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2020-5247) CVE-2020-5247
Ruby Improper Neutralization of Special Elements used in a Command ('Command Injection') Vulnerability (CVE-2021-31799) CVE-2021-31799
Ruby Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2017-17405) CVE-2017-17405
Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2010-2489) CVE-2010-2489
Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2013-4164) CVE-2013-4164
Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2014-4975) CVE-2014-4975
Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-2339) CVE-2016-2339
Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2017-14033) CVE-2017-14033
Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2017-14064) CVE-2017-14064
Ruby Improper Restriction of XML External Entity Reference Vulnerability (CVE-2021-28965) CVE-2021-28965
Ruby Inadequate Encryption Strength Vulnerability (CVE-2011-4121) CVE-2011-4121
Ruby Inadequate Encryption Strength Vulnerability (CVE-2021-32066) CVE-2021-32066
Ruby Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') Vulnerability (CVE-2020-25613) CVE-2020-25613
Ruby Inefficient Regular Expression Complexity Vulnerability (CVE-2023-22795) CVE-2023-22795
Ruby Inefficient Regular Expression Complexity Vulnerability (CVE-2023-28756) CVE-2023-28756
Ruby Integer Overflow or Wraparound Vulnerability (CVE-2008-2663) CVE-2008-2663
Ruby Interpretation Conflict Vulnerability (CVE-2021-33621) CVE-2021-33621
Ruby Numeric Errors Vulnerability (CVE-2008-2376) CVE-2008-2376
Ruby Numeric Errors Vulnerability (CVE-2008-2662) CVE-2008-2662
Ruby Numeric Errors Vulnerability (CVE-2008-2725) CVE-2008-2725
Ruby Numeric Errors Vulnerability (CVE-2008-2726) CVE-2008-2726
Ruby Numeric Errors Vulnerability (CVE-2009-1904) CVE-2009-1904
Ruby Numeric Errors Vulnerability (CVE-2011-0188) CVE-2011-0188
Ruby on Rails 7PK - Security Features Vulnerability (CVE-2015-7576) CVE-2015-7576
Ruby on Rails Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2019-5419) CVE-2019-5419
Ruby on Rails Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2026-33658) CVE-2026-33658
Ruby on Rails Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') Vulnerability (CVE-2007-6077) CVE-2007-6077
Ruby on Rails CookieStore session cookie persistence
Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2008-5189) CVE-2008-5189
Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2011-0447) CVE-2011-0447
Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-8166) CVE-2020-8166
Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-8167) CVE-2020-8167
Ruby on Rails CVE-2006-4112 Vulnerability (CVE-2006-4112) CVE-2006-4112
Ruby on Rails CVE-2013-0277 Vulnerability (CVE-2013-0277) CVE-2013-0277
Ruby on Rails CVE-2015-3227 Vulnerability (CVE-2015-3227) CVE-2015-3227
Ruby on Rails CVE-2018-16477 Vulnerability (CVE-2018-16477) CVE-2018-16477
Ruby on Rails CVE-2019-5418 Vulnerability (CVE-2019-5418) CVE-2019-5418
Ruby on Rails CVE-2021-22902 Vulnerability (CVE-2021-22902) CVE-2021-22902
Ruby on Rails CVE-2022-23633 Vulnerability (CVE-2022-23633) CVE-2022-23633
Ruby on Rails CVE-2022-23634 Vulnerability (CVE-2022-23634) CVE-2022-23634
Ruby on Rails CVE-2024-26144 Vulnerability (CVE-2024-26144) CVE-2024-26144