Количество 51
Количество 51
RLSA-2023:7025
Moderate: ruby:2.5 security update
ELSA-2023-7025
ELSA-2023-7025: ruby:2.5 security update (MODERATE)
RLSA-2023:3821
Moderate: ruby:2.7 security, bug fix, and enhancement update
ELSA-2023-3821
ELSA-2023-3821: ruby:2.7 security, bug fix, and enhancement update (MODERATE)
SUSE-SU-2023:4176-1
Security update for ruby2.5
RLSA-2024:1576
Moderate: ruby:3.1 security, bug fix, and enhancement update
RLSA-2024:1431
Moderate: ruby:3.1 security, bug fix, and enhancement update
ELSA-2024-1576
ELSA-2024-1576: ruby:3.1 security, bug fix, and enhancement update (MODERATE)
ELSA-2024-1431
ELSA-2024-1431: ruby:3.1 security, bug fix, and enhancement update (MODERATE)
RLSA-2024:3500
Moderate: ruby:3.0 security update
ELSA-2024-3838
ELSA-2024-3838: ruby security update (MODERATE)
ELSA-2024-3500
ELSA-2024-3500: ruby:3.0 security update (MODERATE)
CVE-2021-33621
The cgi gem before 0.1.0.2, 0.2.x before 0.2.2, and 0.3.x before 0.3.5 for Ruby allows HTTP response splitting. This is relevant to applications that use untrusted user input either to generate an HTTP response or to create a CGI::Cookie object.
CVE-2021-33621
The cgi gem before 0.1.0.2, 0.2.x before 0.2.2, and 0.3.x before 0.3.5 for Ruby allows HTTP response splitting. This is relevant to applications that use untrusted user input either to generate an HTTP response or to create a CGI::Cookie object.
CVE-2021-33621
The cgi gem before 0.1.0.2, 0.2.x before 0.2.2, and 0.3.x before 0.3.5 for Ruby allows HTTP response splitting. This is relevant to applications that use untrusted user input either to generate an HTTP response or to create a CGI::Cookie object.
CVE-2021-33621
The cgi gem before 0.1.0.2, 0.2.x before 0.2.2, and 0.3.x before 0.3.5 ...
GHSA-vc47-6rqg-c7f5
HTTP response splitting in CGI
BDU:2023-03834
Уязвимость компонента CGI языка программирования Ruby, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании
ROS-20240827-04
Уязвимость ruby
CVE-2022-28739
There is a buffer over-read in Ruby before 2.6.10, 2.7.x before 2.7.6, 3.x before 3.0.4, and 3.1.x before 3.1.2. It occurs in String-to-Float conversion, including Kernel#Float and String#to_f.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
RLSA-2023:7025 Moderate: ruby:2.5 security update | 4 месяца назад | |||
ELSA-2023-7025 ELSA-2023-7025: ruby:2.5 security update (MODERATE) | больше 2 лет назад | |||
RLSA-2023:3821 Moderate: ruby:2.7 security, bug fix, and enhancement update | почти 3 года назад | |||
ELSA-2023-3821 ELSA-2023-3821: ruby:2.7 security, bug fix, and enhancement update (MODERATE) | около 3 лет назад | |||
SUSE-SU-2023:4176-1 Security update for ruby2.5 | почти 3 года назад | |||
RLSA-2024:1576 Moderate: ruby:3.1 security, bug fix, and enhancement update | больше 2 лет назад | |||
RLSA-2024:1431 Moderate: ruby:3.1 security, bug fix, and enhancement update | больше 2 лет назад | |||
ELSA-2024-1576 ELSA-2024-1576: ruby:3.1 security, bug fix, and enhancement update (MODERATE) | больше 2 лет назад | |||
ELSA-2024-1431 ELSA-2024-1431: ruby:3.1 security, bug fix, and enhancement update (MODERATE) | больше 2 лет назад | |||
RLSA-2024:3500 Moderate: ruby:3.0 security update | около 1 года назад | |||
ELSA-2024-3838 ELSA-2024-3838: ruby security update (MODERATE) | около 2 лет назад | |||
ELSA-2024-3500 ELSA-2024-3500: ruby:3.0 security update (MODERATE) | около 2 лет назад | |||
CVE-2021-33621 The cgi gem before 0.1.0.2, 0.2.x before 0.2.2, and 0.3.x before 0.3.5 for Ruby allows HTTP response splitting. This is relevant to applications that use untrusted user input either to generate an HTTP response or to create a CGI::Cookie object. | CVSS3: 8.8 | 2% Низкий | больше 3 лет назад | |
CVE-2021-33621 The cgi gem before 0.1.0.2, 0.2.x before 0.2.2, and 0.3.x before 0.3.5 for Ruby allows HTTP response splitting. This is relevant to applications that use untrusted user input either to generate an HTTP response or to create a CGI::Cookie object. | CVSS3: 8.8 | 2% Низкий | больше 3 лет назад | |
CVE-2021-33621 The cgi gem before 0.1.0.2, 0.2.x before 0.2.2, and 0.3.x before 0.3.5 for Ruby allows HTTP response splitting. This is relevant to applications that use untrusted user input either to generate an HTTP response or to create a CGI::Cookie object. | CVSS3: 8.8 | 2% Низкий | больше 3 лет назад | |
CVE-2021-33621 The cgi gem before 0.1.0.2, 0.2.x before 0.2.2, and 0.3.x before 0.3.5 ... | CVSS3: 8.8 | 2% Низкий | больше 3 лет назад | |
GHSA-vc47-6rqg-c7f5 HTTP response splitting in CGI | CVSS3: 8.8 | 2% Низкий | больше 3 лет назад | |
BDU:2023-03834 Уязвимость компонента CGI языка программирования Ruby, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании | CVSS3: 8.8 | 2% Низкий | больше 3 лет назад | |
ROS-20240827-04 Уязвимость ruby | CVSS3: 8.8 | 2% Низкий | почти 2 года назад | |
CVE-2022-28739 There is a buffer over-read in Ruby before 2.6.10, 2.7.x before 2.7.6, 3.x before 3.0.4, and 3.1.x before 3.1.2. It occurs in String-to-Float conversion, including Kernel#Float and String#to_f. | CVSS3: 7.5 | 4% Низкий | около 4 лет назад |
Уязвимостей на страницу