Description
Date.parse in the date gem through 3.2.0 for Ruby allows ReDoS (regular expression Denial of Service) via a long string. The fixed versions are 3.2.1, 3.1.2, 3.0.2, and 2.0.1.
Remediation
References
Related Vulnerabilities
Joomla! Core 3.x.x SQL Injection (3.2.0 - 3.4.4)
WordPress Plugin WP Statistics Cross-Site Scripting (13.0.9)
WordPress Plugin N5 Upload Form Arbitrary File Upload (1.0)
Oracle Database Server Other Vulnerability (CVE-2002-0857)
WordPress Plugin Advanced Advertising System PHP Object Injection (1.3.1)