Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
Affects rack | Versions >=3.0.0.beta1, <3.1.21>=3.2.0, <3.2.6
Affects rack | Versions >=3.0.0.beta1, <3.1.21>=3.2.0, <3.2.6
  • M
Affects rack | Versions <2.2.23>=3.0.0.beta1, <3.1.21>=3.2.0, <3.2.6
Affects lodash-rails | Versions >=0.7.0
Affects action_text-trix | Versions <2.1.18
  • H
Affects ruby-lsp | Versions <0.26.9
Affects graphiti | Versions <1.10.2
  • H
Session FixationCVE-2026-33946
Affects mcp | Versions <0.9.2
Affects activestorage | Versions <7.2.3.1>=8.0.0, <8.0.4.1>=8.1.0, <8.1.2.1
  • M
SQL InjectionCVE-2026-4324
Affects katello | Versions <4.19.1
  • M
CRLF InjectionCVE-2026-33635
Affects icalendar | Versions >=2.0.0, <2.12.2
Affects actionpack | Versions >=8.1.0.beta1, <8.1.2.1
Affects actionview | Versions <7.2.3.1>=8.0.0.beta1, <8.0.4.1>=8.1.0.beta1, <8.1.2.1
Affects activesupport | Versions <7.2.3.1>=8.0.0.beta1, <8.0.4.1>=8.1.0.beta1, <8.1.2.1
Affects activestorage | Versions <7.2.3.1>=8.0.0.beta1, <8.0.4.1>=8.1.0.beta1, <8.1.2.1
Affects activesupport | Versions <7.2.3.1>=8.0.0.beta1, <8.0.4.1>=8.1.0.beta1, <8.1.2.1
Affects activesupport | Versions <7.2.3.1>=8.0.0.beta1, <8.0.4.1>=8.1.0.beta1, <8.1.2.1
Affects activestorage | Versions <7.2.3.1>=8.0.0.beta1, <8.0.4.1>=8.1.0.beta1, <8.1.2.1
  • C
Directory TraversalCVE-2026-33195
Affects activestorage | Versions <7.2.3.1>=8.0.0.beta1, <8.0.4.1>=8.1.0.beta1, <8.1.2.1
  • M
Glob InjectionCVE-2026-33202
Affects activestorage | Versions <7.2.3.1>=8.0.0.beta1, <8.0.4.1>=8.1.0.beta1, <8.1.2.1
Affects bcrypt | Versions <3.1.22
Affects json | Versions >=2.14.0, <2.15.2.1>=2.16.0, <2.17.1.2>=2.18.0, <2.19.2
Affects avo | Versions <3.30.3
Affects loofah | Versions >=2.25.0, <2.25.1
  • M
Race ConditionCVE-2026-32700
Affects devise | Versions <5.0.3
  • H
Affects sigstore | Versions <0.2.3
Affects action_text-trix | Versions <2.1.17
  • H
Buffer OverflowCVE-2026-27820
Affects zlib | Versions <3.0.1>=3.1.0, <3.1.2>=3.2.0, <3.2.3
  • M
Directory TraversalCVE-2026-1776
Affects camaleon_cms | Versions >=2.4.5.0, <2.9.2
  • H
Command InjectionCVE-2026-0980
Affects rubyipmi | Versions <0.13.0