Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • H
Denial of Service (DoS)
nokogiri<1.11.4RubyGems18 May 2021
  • H
Denial of Service (DoS)
nokogiri<1.11.4RubyGems18 May 2021
  • H
Denial of Service (DoS)
nokogiri<1.11.4RubyGems18 May 2021
  • M
Improper Authorization
smart_proxy_shellhooks<0.9.2RubyGems13 May 2021
  • H
Denial of Service (DoS)
puma>=5.0.0.beta1, <5.3.1<4.3.8RubyGems12 May 2021
  • H
Arbitrary Code Execution
bundler>=1.14.0, <2.1.0RubyGems11 May 2021
  • H
Regular Expression Denial of Service (ReDoS)
actionpack>=6.1.0, <6.1.3.2>=6.0.0, <6.0.3.7RubyGems6 May 2021
  • M
Regular Expression Denial of Service (ReDoS)
actionpack>=6.1.0, <6.1.3.2RubyGems6 May 2021
  • H
Denial of Service (DoS)
actionpack>=2.0.0, <5.2.4.6>=5.2.5, <5.2.6>=6.0.0, <6.0.3.7>=6.1.0, <6.1.3.2RubyGems6 May 2021
  • M
Information Exposure
actionpack>=2.0.0, <5.2.4.6>=5.2.5, <5.2.6>=6.0.0, <6.0.3.7>=6.1.0, <6.1.3.2RubyGems6 May 2021
  • H
Directory Traversal
rubysl-tmpdir>=0.0.0RubyGems6 May 2021
  • H
Directory Traversal
tmpdir<0.1.2RubyGems6 May 2021
  • H
Command Injection
rdoc>=3.11, <6.3.0RubyGems5 May 2021
  • H
Arbitrary Code Execution
exiftool_vendored<12.25.0RubyGems4 May 2021
  • M
Information Exposure
pgsync<0.6.7RubyGems27 Apr 2021
  • M
Web Cache Poisoning
rack<3.0.0.beta1RubyGems19 Apr 2021
  • M
Cross-site Request Forgery (CSRF)
trestle-auth>=0.4.0, <0.4.2RubyGems15 Apr 2021
  • M
Improper Input Validation
puppet<6.13.0RubyGems14 Apr 2021
  • M
Cross-site Request Forgery (CSRF)
trestle-auth>=0.4.0, <0.4.2RubyGems14 Apr 2021
  • M
Improper Certificate Validation
tweetstream>=0.0.0RubyGems14 Apr 2021
  • H
Information Exposure
foreman_azure_rm<2.2.0RubyGems9 Apr 2021
  • L
Improper Input Validation
rexml<3.2.5RubyGems9 Apr 2021
  • M
Cross-site Scripting (XSS)
sidekiq<6.2.1RubyGems6 Apr 2021
  • M
Cross-site Scripting (XSS)
qiita-markdown<0.33.0RubyGems19 Mar 2021
  • M
Deserialization of Untrusted Data
kramdown>=1.16.0, <2.3.1RubyGems19 Mar 2021
  • H
Denial of Service (DoS)
spree<4.2.0RubyGems8 Mar 2021
  • M
Timing Attack
activerecord-session_store<2.0.0RubyGems5 Mar 2021
  • M
Open Redirect
actionpack>=6.0.0, <6.0.3.5>=6.1.0.rc1, <6.1.2.1RubyGems2 Mar 2021
  • H
Regular Expression Denial of Service (ReDoS)
activerecord>=6.1.0, <6.1.2.1>=6.0.0, <6.0.3.5>=4.2.0, <5.2.4.5RubyGems2 Mar 2021
  • H
Unsafe Dependency Resolution
bundler>=1.16.0, <2.2.10>=2.2.11, <2.2.16RubyGems22 Feb 2021