rubygem-did_you_mean vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the rubygem-did_you_mean package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • H
Inefficient Regular Expression Complexity

<0:1.2.0-113.0.1.module+el8.10.0+90463+6f2d71f2
  • M
CVE-2024-27282

<0:1.2.0-112.module+el8.10.0+90367+ae9e8511
  • M
CVE-2024-27280

<0:1.2.0-112.module+el8.10.0+90367+ae9e8511
  • M
Inefficient Regular Expression Complexity

<0:1.2.0-112.module+el8.10.0+90367+ae9e8511
  • M
CVE-2024-35176

<0:1.2.0-112.module+el8.10.0+90367+ae9e8511
  • M
CVE-2024-27281

<0:1.2.0-112.module+el8.10.0+90367+ae9e8511
  • M
Arbitrary Code Injection

<0:1.2.0-111.module+el8.9.0+90042+a65659a6
  • M
Inefficient Regular Expression Complexity

<0:1.2.0-111.module+el8.9.0+90042+a65659a6
  • M
Inefficient Regular Expression Complexity

<0:1.2.0-111.module+el8.9.0+90042+a65659a6
  • H
Out-of-bounds Read

<0:1.2.0-110.0.1.module+el8.6.0+20904+a5ad2c6b
  • M
Inefficient Regular Expression Complexity

<0:1.2.0-110.module+el8.6.0+20712+84e27c2d
  • M
Reliance on Cookies without Validation and Integrity Checking

<0:1.2.0-110.module+el8.6.0+20712+84e27c2d
  • H
OS Command Injection

<0:1.3.0-108.module+el8.5.0+20495+db24e7b4
  • H
CVE-2020-36327

<0:1.2.0-107.module+el8.5.0+20497+d0a7b862
  • M
Improper Handling of Exceptional Conditions

<0:1.2.0-109.0.1.module+el8.5.0+20513+af7be134
  • M
CVE-2021-31810

<0:1.2.0-109.0.1.module+el8.5.0+20513+af7be134
  • M
Uncontrolled Search Path Element

<0:1.3.0-107.module+el8.4.0+20235+1e5b8be3
  • M
Improper Authentication

<0:1.3.0-107.module+el8.4.0+20235+1e5b8be3
  • M
CVE-2019-15845

<0:1.3.0-107.module+el8.4.0+20235+1e5b8be3
  • M
Arbitrary Code Injection

<0:1.3.0-107.module+el8.4.0+20235+1e5b8be3
  • M
Use of Uninitialized Resource

<0:1.3.0-107.module+el8.4.0+20235+1e5b8be3
  • M
Arbitrary Code Injection

<0:1.3.0-107.module+el8.4.0+20235+1e5b8be3
  • M
HTTP Request Smuggling

<0:1.2.0-107.module+el8.4.0+20203+c00aa653
  • M
CVE-2021-28965

<0:1.3.0-107.module+el8.4.0+20235+1e5b8be3
  • M
Improper Input Validation

<0:1.3.0-107.module+el8.4.0+20235+1e5b8be3
  • H
Arbitrary Code Injection

<0:1.2.0-104.module+el8.0.0+5238+4f9ac61b