rh-ruby27-rubygem-psych vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the rh-ruby27-rubygem-psych package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
Improper Input Validation

<0:3.1.0-132.el7
  • M
Improper Input Validation

<0:3.1.0-132.el7
  • M
HTTP Response Splitting

<0:3.1.0-132.el7
  • M
Out-of-bounds Read

<0:3.1.0-131.el7
  • M
Reliance on Cookies without Validation and Integrity Checking

<0:3.1.0-131.el7
  • M
Out-of-Bounds

<0:3.1.0-131.el7
  • M
Resource Exhaustion

<0:3.1.0-131.el7
  • M
XML External Entity (XXE) Injection

<0:3.1.0-129.el7
  • M
HTTP Request Smuggling

<0:3.1.0-129.el7
  • H
Cleartext Transmission of Sensitive Information

<0:3.1.0-130.el7
  • H
Information Exposure

<0:3.1.0-130.el7
  • H
Arbitrary Command Injection

<0:3.1.0-130.el7
  • H
Download of Code Without Integrity Check

<0:3.1.0-130.el7