Severity Critical High Medium Low Informational Vulnerability Categories Abuse Of Functionality Acumonitor Api Bfla Api Bola Api Broken Auth Api Broken Object Prop Auth Api Dos Api Improper Inventory Management Api Misconfiguration Api Ssrf Arbitrary File Creation Arbitrary File Read Authentication Bypass BOLA Bruteforce Possible Buffer Overflow CSRF CSTI Code Execution Configuration Crlf Injection Deepscan Default Credentials Denial Of Service Dev Files Directory Listing Directory Traversal Eli Injection Error Handling File Inclusion Http Parameter Pollution Http Response Splitting Information Disclosure Insecure Admin Access Insecure Deserialization Internal Ip Disclosure Known Vulnerabilities LLM Ldap Injection Llm Excessive Agency Llm Insecure Output Handling Llm Prompt Injection Llm Prompt Leakage Llm Sensitive Information Disclosure Malware Missing Update Privilege Escalation SSRF Sensitive Data Not Over Ssl Server Side Template Injection Session Fixation Source Code Disclosure Sql Injection Test Files Unauthenticated File Upload Url Redirection Weak Credentials Weak Crypto XFS XSS XXE Xpath Injection Vulnerability Name CVE CWE CWE Severity RubyGems Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2019-8323) CVE-2019-8323 CWE-138 CWE-138 High RubyGems Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2019-8325) CVE-2019-8325 CWE-138 CWE-138 High RubyGems Improper Verification of Cryptographic Signature Vulnerability (CVE-2018-1000076) CVE-2018-1000076 CWE-347 CWE-347 Critical RubyGems Loop with Unreachable Exit Condition ('Infinite Loop') Vulnerability (CVE-2018-1000075) CVE-2018-1000075 CWE-835 CWE-835 High RubyGems Origin Validation Error Vulnerability (CVE-2017-0902) CVE-2017-0902 CWE-346 CWE-346 High RubyGems Other Vulnerability (CVE-2012-2125) CVE-2012-2125 Medium Ruby Improper Authentication Vulnerability (CVE-2007-5162) CVE-2007-5162 CWE-287 CWE-287 Medium Ruby Improper Authentication Vulnerability (CVE-2007-5770) CVE-2007-5770 CWE-287 CWE-287 Medium Ruby Improper Authentication Vulnerability (CVE-2008-3905) CVE-2008-3905 CWE-287 CWE-287 Medium Ruby Improper Authentication Vulnerability (CVE-2009-0642) CVE-2009-0642 CWE-287 CWE-287 Medium Ruby Improper Authentication Vulnerability (CVE-2017-10784) CVE-2017-10784 CWE-287 CWE-287 High Ruby Improper Authentication Vulnerability (CVE-2019-16201) CVE-2019-16201 CWE-287 CWE-287 High Ruby Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2019-16255) CVE-2019-16255 CWE-94 CWE-94 High Ruby Improper Input Validation Vulnerability (CVE-2008-3657) CVE-2008-3657 CWE-20 CWE-20 High Ruby Improper Input Validation Vulnerability (CVE-2008-3790) CVE-2008-3790 CWE-20 CWE-20 Medium Ruby Improper Input Validation Vulnerability (CVE-2009-4492) CVE-2009-4492 CWE-20 CWE-20 Medium Ruby Improper Input Validation Vulnerability (CVE-2009-5147) CVE-2009-5147 CWE-20 CWE-20 High Ruby Improper Input Validation Vulnerability (CVE-2011-2705) CVE-2011-2705 CWE-20 CWE-20 Medium Ruby Improper Input Validation Vulnerability (CVE-2011-4815) CVE-2011-4815 CWE-20 CWE-20 High Ruby Improper Input Validation Vulnerability (CVE-2013-1821) CVE-2013-1821 CWE-20 CWE-20 Medium Ruby Improper Input Validation Vulnerability (CVE-2015-1855) CVE-2015-1855 CWE-20 CWE-20 Medium Ruby Improper Input Validation Vulnerability (CVE-2015-7551) CVE-2015-7551 CWE-20 CWE-20 High Ruby Improper Input Validation Vulnerability (CVE-2017-6181) CVE-2017-6181 CWE-20 CWE-20 High Ruby Improper Input Validation Vulnerability (CVE-2018-8779) CVE-2018-8779 CWE-20 CWE-20 High Ruby Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2008-1891) CVE-2008-1891 CWE-22 CWE-22 Medium Ruby Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2018-6914) CVE-2018-6914 CWE-22 CWE-22 High Ruby Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2018-8780) CVE-2018-8780 CWE-22 CWE-22 Critical Ruby Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2021-28966) CVE-2021-28966 CWE-22 CWE-22 High Ruby Improper Link Resolution Before File Access ('Link Following') Vulnerability (CVE-2011-1004) CVE-2011-1004 CWE-59 CWE-59 Medium Ruby Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') Vulnerability (CVE-2017-17742) CVE-2017-17742 CWE-113 CWE-113 Medium Ruby Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2013-0256) CVE-2013-0256 CWE-707 CWE-707 Medium Ruby Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2011-3624) CVE-2011-3624 CWE-138 CWE-138 Medium Ruby Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2017-17790) CVE-2017-17790 CWE-138 CWE-138 Critical Ruby Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2019-16254) CVE-2019-16254 CWE-138 CWE-138 Medium Ruby Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2020-5247) CVE-2020-5247 CWE-138 CWE-138 High Ruby Improper Neutralization of Special Elements used in a Command ('Command Injection') Vulnerability (CVE-2021-31799) CVE-2021-31799 CWE-138 CWE-138 Critical Ruby Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2017-17405) CVE-2017-17405 CWE-138 CWE-138 High Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2010-2489) CVE-2010-2489 CWE-119 CWE-119 High Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2013-4164) CVE-2013-4164 CWE-119 CWE-119 Medium Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2014-4975) CVE-2014-4975 CWE-119 CWE-119 Medium Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-2339) CVE-2016-2339 CWE-119 CWE-119 Critical Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2017-14033) CVE-2017-14033 CWE-119 CWE-119 High Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2017-14064) CVE-2017-14064 CWE-119 CWE-119 Critical Ruby Improper Restriction of XML External Entity Reference Vulnerability (CVE-2021-28965) CVE-2021-28965 CWE-611 CWE-611 High Ruby Inadequate Encryption Strength Vulnerability (CVE-2011-4121) CVE-2011-4121 CWE-326 CWE-326 Critical Ruby Inadequate Encryption Strength Vulnerability (CVE-2021-32066) CVE-2021-32066 CWE-326 CWE-326 High Ruby Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') Vulnerability (CVE-2020-25613) CVE-2020-25613 CWE-444 CWE-444 High Ruby Inefficient Regular Expression Complexity Vulnerability (CVE-2023-22795) CVE-2023-22795 CWE-1333 CWE-1333 High Ruby Inefficient Regular Expression Complexity Vulnerability (CVE-2023-28756) CVE-2023-28756 CWE-1333 CWE-1333 High Ruby Integer Overflow or Wraparound Vulnerability (CVE-2008-2663) CVE-2008-2663 CWE-190 CWE-190 Critical Ruby Interpretation Conflict Vulnerability (CVE-2021-33621) CVE-2021-33621 CWE-436 CWE-436 High Ruby Numeric Errors Vulnerability (CVE-2008-2376) CVE-2008-2376 High Ruby Numeric Errors Vulnerability (CVE-2008-2662) CVE-2008-2662 Critical Ruby Numeric Errors Vulnerability (CVE-2008-2725) CVE-2008-2725 High Ruby Numeric Errors Vulnerability (CVE-2008-2726) CVE-2008-2726 High Ruby Numeric Errors Vulnerability (CVE-2009-1904) CVE-2009-1904 Medium Ruby Numeric Errors Vulnerability (CVE-2011-0188) CVE-2011-0188 Medium Ruby on Rails 7PK - Security Features Vulnerability (CVE-2015-7576) CVE-2015-7576 Low Ruby on Rails Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2019-5419) CVE-2019-5419 CWE-770 CWE-770 High Ruby on Rails Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2026-33658) CVE-2026-33658 CWE-770 CWE-770 Medium Ruby on Rails Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') Vulnerability (CVE-2007-6077) CVE-2007-6077 CWE-362 CWE-362 Medium Ruby on Rails CookieStore session cookie persistence CWE-613 CWE-613 Low Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2008-5189) CVE-2008-5189 CWE-352 CWE-352 Medium Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2011-0447) CVE-2011-0447 CWE-352 CWE-352 Medium Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-8166) CVE-2020-8166 CWE-352 CWE-352 Medium Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-8167) CVE-2020-8167 CWE-352 CWE-352 Medium Ruby on Rails CVE-2006-4112 Vulnerability (CVE-2006-4112) CVE-2006-4112 High Ruby on Rails CVE-2013-0277 Vulnerability (CVE-2013-0277) CVE-2013-0277 Critical Ruby on Rails CVE-2015-3227 Vulnerability (CVE-2015-3227) CVE-2015-3227 Medium Ruby on Rails CVE-2018-16477 Vulnerability (CVE-2018-16477) CVE-2018-16477 Medium Ruby on Rails CVE-2019-5418 Vulnerability (CVE-2019-5418) CVE-2019-5418 High Ruby on Rails CVE-2021-22902 Vulnerability (CVE-2021-22902) CVE-2021-22902 High Ruby on Rails CVE-2022-23633 Vulnerability (CVE-2022-23633) CVE-2022-23633 Medium Ruby on Rails CVE-2022-23634 Vulnerability (CVE-2022-23634) CVE-2022-23634 Medium Ruby on Rails CVE-2024-26144 Vulnerability (CVE-2024-26144) CVE-2024-26144 Medium 1...176177178179...327 177 / 327