Количество 12
Количество 12

CVE-2024-35176
REXML is an XML toolkit for Ruby. The REXML gem before 3.2.6 has a denial of service vulnerability when it parses an XML that has many `<`s in an attribute value. Those who need to parse untrusted XMLs may be impacted to this vulnerability. The REXML gem 3.2.7 or later include the patch to fix this vulnerability. As a workaround, don't parse untrusted XMLs.

CVE-2024-35176
REXML is an XML toolkit for Ruby. The REXML gem before 3.2.6 has a denial of service vulnerability when it parses an XML that has many `<`s in an attribute value. Those who need to parse untrusted XMLs may be impacted to this vulnerability. The REXML gem 3.2.7 or later include the patch to fix this vulnerability. As a workaround, don't parse untrusted XMLs.

CVE-2024-35176
REXML is an XML toolkit for Ruby. The REXML gem before 3.2.6 has a denial of service vulnerability when it parses an XML that has many `<`s in an attribute value. Those who need to parse untrusted XMLs may be impacted to this vulnerability. The REXML gem 3.2.7 or later include the patch to fix this vulnerability. As a workaround, don't parse untrusted XMLs.

CVE-2024-35176
CVE-2024-35176
REXML is an XML toolkit for Ruby. The REXML gem before 3.2.6 has a den ...
GHSA-vg3r-rm7w-2xgh
REXML contains a denial of service vulnerability
ELSA-2024-5338
ELSA-2024-5338: pcs security update (LOW)

BDU:2024-08622
Уязвимость набора инструментов XML для Ruby REXML, связанная с неконтролируемым потреблением ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

ROS-20241021-01
Множественные уязвимости rubygem-rexml

SUSE-SU-2024:3874-1
Security update for ruby2.5
ELSA-2024-4499
ELSA-2024-4499: ruby security update (MODERATE)

openSUSE-SU-2025:0129-1
Security update for rubygem-rexml
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2024-35176 REXML is an XML toolkit for Ruby. The REXML gem before 3.2.6 has a denial of service vulnerability when it parses an XML that has many `<`s in an attribute value. Those who need to parse untrusted XMLs may be impacted to this vulnerability. The REXML gem 3.2.7 or later include the patch to fix this vulnerability. As a workaround, don't parse untrusted XMLs. | CVSS3: 5.3 | 8% Низкий | около 1 года назад |
![]() | CVE-2024-35176 REXML is an XML toolkit for Ruby. The REXML gem before 3.2.6 has a denial of service vulnerability when it parses an XML that has many `<`s in an attribute value. Those who need to parse untrusted XMLs may be impacted to this vulnerability. The REXML gem 3.2.7 or later include the patch to fix this vulnerability. As a workaround, don't parse untrusted XMLs. | CVSS3: 5.3 | 8% Низкий | около 1 года назад |
![]() | CVE-2024-35176 REXML is an XML toolkit for Ruby. The REXML gem before 3.2.6 has a denial of service vulnerability when it parses an XML that has many `<`s in an attribute value. Those who need to parse untrusted XMLs may be impacted to this vulnerability. The REXML gem 3.2.7 or later include the patch to fix this vulnerability. As a workaround, don't parse untrusted XMLs. | CVSS3: 5.3 | 8% Низкий | около 1 года назад |
![]() | CVSS3: 5.3 | 8% Низкий | около 1 года назад | |
CVE-2024-35176 REXML is an XML toolkit for Ruby. The REXML gem before 3.2.6 has a den ... | CVSS3: 5.3 | 8% Низкий | около 1 года назад | |
GHSA-vg3r-rm7w-2xgh REXML contains a denial of service vulnerability | CVSS3: 5.3 | 8% Низкий | около 1 года назад | |
ELSA-2024-5338 ELSA-2024-5338: pcs security update (LOW) | 10 месяцев назад | |||
![]() | BDU:2024-08622 Уязвимость набора инструментов XML для Ruby REXML, связанная с неконтролируемым потреблением ресурсов, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 5.3 | 8% Низкий | около 1 года назад |
![]() | ROS-20241021-01 Множественные уязвимости rubygem-rexml | CVSS3: 5.3 | 8 месяцев назад | |
![]() | SUSE-SU-2024:3874-1 Security update for ruby2.5 | 8 месяцев назад | ||
ELSA-2024-4499 ELSA-2024-4499: ruby security update (MODERATE) | 11 месяцев назад | |||
![]() | openSUSE-SU-2025:0129-1 Security update for rubygem-rexml | 2 месяца назад |
Уязвимостей на страницу