ruby2.5 vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the ruby2.5 package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • H
CVE-2024-43398

<2.5.9-150000.4.32.1
  • M
Resource Exhaustion

<2.5.9-150000.4.32.1
  • M
Resource Exhaustion

<2.5.9-150000.4.32.1
  • M
CVE-2024-39908

<2.5.9-150000.4.32.1
  • M
CVE-2024-35176

<2.5.9-150000.4.32.1
  • M
Inefficient Regular Expression Complexity

<2.5.9-150000.4.29.1
  • M
Inefficient Regular Expression Complexity

<2.5.9-150000.4.29.1
  • M
Inefficient Regular Expression Complexity

<2.5.9-150000.4.29.1
  • H
Arbitrary Code Injection

<2.5.9-150000.4.29.1
  • M
Out-of-bounds Read

<2.5.9-150000.4.23.1
  • M
Inefficient Regular Expression Complexity

<2.5.9-150000.4.23.1
  • H
Improper Handling of Exceptional Conditions

<2.5.9-150000.4.23.1
  • H
CVE-2021-31810

<2.5.9-150000.4.23.1
  • H
OS Command Injection

<2.5.9-150000.4.23.1
  • M
HTTP Request Smuggling

<2.5.8-4.14.1
  • M
CVE-2021-28965

<2.5.9-4.17.1
  • H
Improper Handling of Exceptional Conditions

<2.5.9-4.20.1
  • H
CVE-2021-31810

<2.5.9-4.20.1
  • H
OS Command Injection

<2.5.9-4.20.1