Severity Critical High Medium Low Informational Vulnerability Categories Abuse Of Functionality Acumonitor Api Bfla Api Bola Api Broken Auth Api Broken Object Prop Auth Api Dos Api Improper Inventory Management Api Misconfiguration Api Ssrf Arbitrary File Creation Arbitrary File Read Authentication Bypass BOLA Bruteforce Possible Buffer Overflow CSRF CSTI Code Execution Configuration Crlf Injection Deepscan Default Credentials Denial Of Service Dev Files Directory Listing Directory Traversal Eli Injection Error Handling File Inclusion Http Parameter Pollution Http Response Splitting Information Disclosure Insecure Admin Access Insecure Deserialization Internal Ip Disclosure Known Vulnerabilities LLM Ldap Injection Llm Excessive Agency Llm Insecure Output Handling Llm Prompt Injection Llm Prompt Leakage Llm Sensitive Information Disclosure Malware Missing Update Privilege Escalation SSRF Sensitive Data Not Over Ssl Server Side Template Injection Session Fixation Source Code Disclosure Sql Injection Test Files Unauthenticated File Upload Url Redirection Weak Credentials Weak Crypto XFS XSS XXE Xpath Injection Vulnerability Name CVE CWE CWE Severity Ruby on Rails CVE-2024-28103 Vulnerability (CVE-2024-28103) CVE-2024-28103 Critical Ruby on Rails Data Processing Errors Vulnerability (CVE-2014-3916) CVE-2014-3916 Medium Ruby on Rails Deserialization of Untrusted Data Vulnerability (CVE-2018-16476) CVE-2018-16476 CWE-502 CWE-502 High Ruby on Rails Deserialization of Untrusted Data Vulnerability (CVE-2020-8164) CVE-2020-8164 CWE-502 CWE-502 High Ruby on Rails Deserialization of Untrusted Data Vulnerability (CVE-2020-8165) CVE-2020-8165 CWE-502 CWE-502 Critical Ruby on Rails directory traversal vulnerability CVE-2014-0130 CWE-22 CWE-22 High Ruby on Rails DoubleTap RCE (CVE-2019-5420) CVE-2019-5420 CWE-502 CWE-502 High Ruby on Rails Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2009-3086) CVE-2009-3086 CWE-200 CWE-200 Medium Ruby on Rails Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2012-6497) CVE-2012-6497 CWE-200 CWE-200 Medium Ruby on Rails Generation of Error Message Containing Sensitive Information Vulnerability (CVE-2021-22885) CVE-2021-22885 CWE-209 CWE-209 High Ruby on Rails Improper Access Control Vulnerability (CVE-2015-7577) CVE-2015-7577 CWE-284 CWE-284 Medium Ruby on Rails Improper Access Control Vulnerability (CVE-2016-6317) CVE-2016-6317 CWE-284 CWE-284 High Ruby on Rails Improper Authentication Vulnerability (CVE-2009-2422) CVE-2009-2422 CWE-287 CWE-287 Critical Ruby on Rails Improper Authentication Vulnerability (CVE-2012-3424) CVE-2012-3424 CWE-287 CWE-287 Medium Ruby on Rails Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2006-4111) CVE-2006-4111 CWE-94 CWE-94 High Ruby on Rails Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2011-3186) CVE-2011-3186 CWE-94 CWE-94 Medium Ruby on Rails Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2020-8163) CVE-2020-8163 CWE-94 CWE-94 High Ruby on Rails Improper Input Validation Vulnerability (CVE-2008-7248) CVE-2008-7248 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2010-3933) CVE-2010-3933 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2011-2929) CVE-2011-2929 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2011-3187) CVE-2011-3187 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-0156) CVE-2013-0156 CWE-20 CWE-20 High Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-1854) CVE-2013-1854 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-1856) CVE-2013-1856 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-3221) CVE-2013-3221 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-6414) CVE-2013-6414 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2014-0082) CVE-2014-0082 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2016-0753) CVE-2016-0753 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2016-2098) CVE-2016-2098 CWE-20 CWE-20 High Ruby on Rails Improper Input Validation Vulnerability (CVE-2019-5420) CVE-2019-5420 CWE-20 CWE-20 Critical Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2014-0130) CVE-2014-0130 CWE-22 CWE-22 Medium Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2014-7818) CVE-2014-7818 CWE-22 CWE-22 Medium Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2014-7829) CVE-2014-7829 CWE-22 CWE-22 Medium Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2016-0752) CVE-2016-0752 CWE-22 CWE-22 High Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2016-2097) CVE-2016-2097 CWE-22 CWE-22 Medium Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2026-33195) CVE-2026-33195 CWE-22 CWE-22 Critical Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2007-3227) CVE-2007-3227 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2009-3009) CVE-2009-3009 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2009-4214) CVE-2009-4214 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-0446) CVE-2011-0446 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-1497) CVE-2011-1497 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-2197) CVE-2011-2197 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-2931) CVE-2011-2931 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-2932) CVE-2011-2932 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2011-4319) CVE-2011-4319 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-1098) CVE-2012-1098 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-1099) CVE-2012-1099 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-3463) CVE-2012-3463 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-3464) CVE-2012-3464 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-3465) CVE-2012-3465 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2013-1855) CVE-2013-1855 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2013-1857) CVE-2013-1857 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2013-4491) CVE-2013-4491 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2013-6415) CVE-2013-6415 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2013-6416) CVE-2013-6416 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2014-0081) CVE-2014-0081 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2015-3226) CVE-2015-3226 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2016-6316) CVE-2016-6316 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2020-8264) CVE-2020-8264 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-26143) CVE-2024-26143 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2024-32464) CVE-2024-32464 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2026-33170) CVE-2026-33170 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2026-33202) CVE-2026-33202 CWE-138 CWE-138 Critical Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2008-4094) CVE-2008-4094 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2011-0448) CVE-2011-0448 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2011-2930) CVE-2011-2930 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2012-2661) CVE-2012-2661 CWE-138 CWE-138 Medium Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2012-2695) CVE-2012-2695 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2012-6496) CVE-2012-6496 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2014-0080) CVE-2014-0080 CWE-138 CWE-138 Medium Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2014-3482) CVE-2014-3482 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2014-3483) CVE-2014-3483 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-17916) CVE-2017-17916 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-17917) CVE-2017-17917 CWE-138 CWE-138 High Ruby on Rails Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2017-17919) CVE-2017-17919 CWE-138 CWE-138 High 1...177178179180...327 178 / 327