Количество 9
Количество 9
CVE-2026-33210
Ruby JSON is a JSON implementation for Ruby. From version 2.14.0 to before versions 2.15.2.1, 2.17.1.2, and 2.19.2, a format string injection vulnerability can lead to denial of service attacks or information disclosure, when the allow_duplicate_key: false parsing option is used to parse user supplied documents. This issue has been patched in versions 2.15.2.1, 2.17.1.2, and 2.19.2.
CVE-2026-33210
Ruby JSON is a JSON implementation for Ruby. From version 2.14.0 to before versions 2.15.2.1, 2.17.1.2, and 2.19.2, a format string injection vulnerability can lead to denial of service attacks or information disclosure, when the allow_duplicate_key: false parsing option is used to parse user supplied documents. This issue has been patched in versions 2.15.2.1, 2.17.1.2, and 2.19.2.
CVE-2026-33210
Ruby JSON is a JSON implementation for Ruby. From version 2.14.0 to before versions 2.15.2.1, 2.17.1.2, and 2.19.2, a format string injection vulnerability can lead to denial of service attacks or information disclosure, when the allow_duplicate_key: false parsing option is used to parse user supplied documents. This issue has been patched in versions 2.15.2.1, 2.17.1.2, and 2.19.2.
CVE-2026-33210
Ruby JSON is a JSON implementation for Ruby. From version 2.14.0 to be ...
GHSA-3m6g-2423-7cp3
Ruby JSON has a format string injection vulnerability
RLSA-2026:20606
Important: ruby4.0 security update
RLSA-2026:20596
Important: ruby:4.0 security update
ELSA-2026-20606
ELSA-2026-20606: ruby4.0 security update (IMPORTANT)
ELSA-2026-20596
ELSA-2026-20596: ruby:4.0 security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-33210 Ruby JSON is a JSON implementation for Ruby. From version 2.14.0 to before versions 2.15.2.1, 2.17.1.2, and 2.19.2, a format string injection vulnerability can lead to denial of service attacks or information disclosure, when the allow_duplicate_key: false parsing option is used to parse user supplied documents. This issue has been patched in versions 2.15.2.1, 2.17.1.2, and 2.19.2. | CVSS3: 9.1 | 1% Низкий | 4 месяца назад | |
CVE-2026-33210 Ruby JSON is a JSON implementation for Ruby. From version 2.14.0 to before versions 2.15.2.1, 2.17.1.2, and 2.19.2, a format string injection vulnerability can lead to denial of service attacks or information disclosure, when the allow_duplicate_key: false parsing option is used to parse user supplied documents. This issue has been patched in versions 2.15.2.1, 2.17.1.2, and 2.19.2. | CVSS3: 9.1 | 1% Низкий | 4 месяца назад | |
CVE-2026-33210 Ruby JSON is a JSON implementation for Ruby. From version 2.14.0 to before versions 2.15.2.1, 2.17.1.2, and 2.19.2, a format string injection vulnerability can lead to denial of service attacks or information disclosure, when the allow_duplicate_key: false parsing option is used to parse user supplied documents. This issue has been patched in versions 2.15.2.1, 2.17.1.2, and 2.19.2. | CVSS3: 9.1 | 1% Низкий | 4 месяца назад | |
CVE-2026-33210 Ruby JSON is a JSON implementation for Ruby. From version 2.14.0 to be ... | CVSS3: 9.1 | 1% Низкий | 4 месяца назад | |
GHSA-3m6g-2423-7cp3 Ruby JSON has a format string injection vulnerability | 1% Низкий | 5 месяцев назад | ||
RLSA-2026:20606 Important: ruby4.0 security update | около 2 месяцев назад | |||
RLSA-2026:20596 Important: ruby:4.0 security update | 2 месяца назад | |||
ELSA-2026-20606 ELSA-2026-20606: ruby4.0 security update (IMPORTANT) | 16 дней назад | |||
ELSA-2026-20596 ELSA-2026-20596: ruby:4.0 security update (IMPORTANT) | около 1 месяца назад |
Уязвимостей на страницу