Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • M
Regular Expression Denial of Service (ReDoS)
fluentd>=0.14.14, <1.14.2.RubyGems31 Oct 2021
  • M
Cross-site Scripting (XSS)
rails<3.0.6RubyGems20 Oct 2021
  • H
Always-Incorrect Control Flow Implementation
evm<0.31.0RubyGems20 Oct 2021
  • M
Cross-site Scripting (XSS)
camaleon_cms<2.6.0.1RubyGems20 Oct 2021
  • M
Denial of Service (DoS)
camaleon_cms>=2.0.1, <2.6.0.1RubyGems20 Oct 2021
  • H
Insufficient Session Expiration
camaleon_cms>=0.1.7, <2.6.0.1RubyGems20 Oct 2021
  • M
Server-Side Request Forgery (SSRF)
camaleon_cms>=2.1.2.0, <2.6.0.1RubyGems20 Oct 2021
  • L
HTTP Request Smuggling
puma<4.3.9>=5.0.0, <5.5.1RubyGems13 Oct 2021
  • M
HTTP Request Smuggling
llhttp>=0.0.0RubyGems13 Oct 2021
  • M
HTTP Request Smuggling
llhttp>=0.0.0RubyGems13 Oct 2021
  • M
Cross-site Scripting (XSS)
sidekiq<5.2.0>=6.0.0, <6.2.1RubyGems8 Oct 2021
  • H
Arbitrary Code Execution
ruby-jss<1.6.0RubyGems8 Oct 2021
  • H
XML External Entity (XXE) Injection
nokogiri<1.12.5RubyGems28 Sept 2021
  • M
Denial of Service (DoS)
nokogiri<1.8.2RubyGems8 Sept 2021
  • M
Cross-site Request Forgery (CSRF)
better_errors<2.8.0RubyGems8 Sept 2021
  • H
Open Redirect
clearance<2.5.0RubyGems31 Aug 2021
  • H
Open Redirect
rails>=6.1.0, <6.1.4.1>=6.0.0, <6.0.4.1RubyGems20 Aug 2021
  • H
Command Injection
rdoc<6.3.1RubyGems8 Jul 2021
  • H
Regular Expression Denial of Service (ReDoS)
addressable>=2.3.0, <2.8.0RubyGems7 Jul 2021
  • M
Cross-site Scripting (XSS)
smashing<1.3.5RubyGems7 Jul 2021
  • C
SQL Injection
activerecord-jdbc-adapter>=1.2.6, <1.2.8RubyGems2 Jul 2021
  • M
Directory Traversal
webrick<1.4.0.beta1RubyGems1 Jul 2021
  • C
Improper Input Validation
webrick<1.4.0.beta1RubyGems1 Jul 2021
  • H
Arbitrary Code Injection
narou<3.8.0RubyGems28 Jun 2021
  • H
Data Injection
activerecord>=2.3.2, <4.0.0.beta1RubyGems25 Jun 2021
  • L
Denial of Service (DoS)
bindata<2.4.10RubyGems24 Jun 2021
  • M
Cross-site Scripting (XSS)
qiita-markdown<0.34.0RubyGems21 Jun 2021
  • M
Improper Authorization
foreman_ansible<2.0.0RubyGems10 Jun 2021
  • M
Information Exposure
foreman_fog_proxmox<0.13.1RubyGems8 Jun 2021
  • H
Arbitrary Code Execution
dragonfly<1.4.0RubyGems30 May 2021