Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • M
Cross-site Scripting (XSS)
resque<2.1.0RubyGems19 Dec 2023
  • M
Information Exposure
activeadmin<2.12.0RubyGems17 Dec 2023
  • M
Insufficient Entropy
pubnub<5.3.0RubyGems5 Dec 2023
  • M
Cross-site Scripting (XSS)
carrierwave<2.2.5>=3.0.0, <3.0.5RubyGems30 Nov 2023
  • M
Uncontrolled Resource Consumption ('Resource Exhaustion')
rmagick<5.3.0RubyGems31 Oct 2023
  • M
Missing Cryptographic Step
openssl>=3.0.0, <3.2.0RubyGems26 Oct 2023
  • M
XML External Entity (XXE) Injection
svg_optimizer>=0.2.6, <0.3.0RubyGems22 Oct 2023
  • M
Improper Privilege Management
bolt<3.27.4RubyGems16 Oct 2023
  • C
Improper Access Control
decidim-templates>=0.23.2, <0.26.8>=0.27.0, <0.27.4RubyGems6 Oct 2023
  • H
Command Injection
geokit-rails<2.5.0RubyGems5 Oct 2023
  • M
Directory Traversal
mongrel>=1.0.4, <1.0.5>=1.1.0, <1.1.3RubyGems2 Oct 2023
  • H
Uncaught Exception
grpc>=1.23.0, <1.53.2>=1.54.0, <1.54.3>=1.55.0, <1.55.3>=1.56.0, <1.56.2RubyGems14 Sept 2023
  • M
Uncontrolled Resource Consumption
sidekiq<6.5.10>=7.0.0, <7.1.3RubyGems12 Sept 2023
  • C
Malicious Package
gunther>=0.0.0RubyGems4 Sept 2023
  • H
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
openshift-origin-controller>=0.0.0RubyGems29 Aug 2023
  • M
Information Exposure
railties>=5.2.0, <6.1.7.5>=7.0.0, <7.0.7.1RubyGems23 Aug 2023
  • M
Information Exposure
activesupport>=5.2.0, <6.1.7.5>=7.0.0, <7.0.7.1RubyGems23 Aug 2023
  • H
HTTP Request Smuggling
puma<5.6.7>=6.0.0, <6.3.1RubyGems19 Aug 2023
  • H
Excessive Iteration
grpc<1.53.2>=1.54.0, <1.54.3>=1.55.0, <1.55.2>=1.56.0, <1.56.2RubyGems9 Aug 2023
  • M
HTTP Request Smuggling
protocol-http1<0.15.1RubyGems4 Aug 2023
  • M
Cross-site Scripting (XSS)
alchemy_cms>=0.0.0RubyGems2 Aug 2023
  • M
Information Exposure
logstash-core<5.0.1RubyGems1 Aug 2023
  • M
Information Exposure
logstash-core<2.3.4RubyGems1 Aug 2023
  • M
Regular Expression Denial of Service (ReDoS)
uri<0.10.3>=0.11.0, <0.12.2RubyGems16 Jul 2023
  • H
Directory Traversal
rswag<2.10.1RubyGems16 Jul 2023
  • H
Insecure Defaults
ransack<4.0.0RubyGems14 Jul 2023
  • M
Denial of Service (DoS)
commonmarker<0.23.10RubyGems14 Jul 2023
  • H
Cross-site Scripting (XSS)
decidim>=0.14.0, <0.26.6>=0.27.0, <0.27.3RubyGems12 Jul 2023
  • H
Cross-site Scripting (XSS)
decidim-core>=0.14.0, <0.26.6>=0.27.0, <0.27.3RubyGems12 Jul 2023
  • H
Information Exposure
decidim-meetings>=0.27.0, <0.27.3RubyGems12 Jul 2023