Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • H
CSS Injection
chartkick<3.4.0RubyGems6 Aug 2020
  • H
Cross-site Request Forgery (CSRF)
field_test<0.4.0RubyGems5 Aug 2020
  • H
Cross-site Request Forgery (CSRF)
pghero<2.7.0RubyGems5 Aug 2020
  • H
Improper Input Validation
solidus_frontend>=2.8.0, <2.8.6>=2.9.0, <2.9.6>=2.10.0, <2.10.2RubyGems5 Aug 2020
  • H
Improper Input Validation
solidus_api>=2.8.0, <2.8.6>=2.9.0, <2.9.6>=2.10.0, <2.10.2RubyGems5 Aug 2020
  • H
Improper Certificate Validation
faye-websocket<0.11.0RubyGems2 Aug 2020
  • H
Remote Code Execution
kramdown<2.3.0RubyGems19 Jul 2020
  • H
Improper Authorization
actionpack>=6.0.0, <6.0.3.2RubyGems17 Jun 2020
  • C
Cross-site Scripting (XSS)
sanitize>=3.0.0, <5.2.1RubyGems17 Jun 2020
  • M
Cross-site Request Forgery (CSRF)
rack<2.1.4>=2.2.0, <2.2.3RubyGems16 Jun 2020
  • M
HTTP Request Smuggling
iodine<0.7.39RubyGems8 Jun 2020
  • M
Cross-site Scripting (XSS)
elastic-app-search<7.7.0RubyGems4 Jun 2020
  • M
HTTP Request Smuggling
agoo<2.14.0RubyGems3 Jun 2020
  • M
HTTP Request Smuggling
goliath>=0.0.0RubyGems3 Jun 2020
  • H
Regular Expression Denial of Service (ReDoS)
websocket-extensions<0.1.5RubyGems2 Jun 2020
  • M
Cross-site Scripting (XSS)
kaminari<1.2.1RubyGems29 May 2020
  • H
HTTP Request Smuggling
reel>=0.0.0RubyGems29 May 2020
  • H
Man-in-the-Middle (MitM)
em-http-request<1.1.6RubyGems26 May 2020
  • M
HTTP Request Smuggling
puma<3.12.5>=4.0.0, <4.3.4RubyGems22 May 2020
  • M
HTTP Request Smuggling
puma<3.12.6>=4.0.0, <4.3.5RubyGems22 May 2020
  • H
Man-in-the-Middle (MitM)
em-imap>=0.0.0RubyGems20 May 2020
  • M
Information Exposure
actionpack<5.2.4.3>=6.0.0, <6.0.3.1RubyGems19 May 2020
  • H
Deserialization of Untrusted Data
activesupport<5.2.4.3>=6.0.0, <6.0.3.1RubyGems19 May 2020
  • M
Cross-site Request Forgery (CSRF)
actionpack<5.2.4.3>=6.0.0, <6.0.3.1RubyGems19 May 2020
  • M
Cross-site Request Forgery (CSRF)
actionview<5.2.4.3>=6.0.0, <6.0.3.1RubyGems19 May 2020
  • M
Improper Validation
activestorage<5.2.4.3>=6.0.0, <6.0.3.1RubyGems19 May 2020
  • C
Remote Code Execution (RCE)
actionview<4.2.11.3>=5.0.0, <5.0.1RubyGems17 May 2020
  • H
Directory Traversal
rack<2.1.3RubyGems13 May 2020
  • H
Authentication Bypass
sorcery<0.15.0RubyGems8 May 2020
  • H
Arbitrary File Write
actionpack-page_caching<1.2.1RubyGems6 May 2020