Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • C
Improper Access Control
decidim-templates>=0.23.2, <0.26.8>=0.27.0, <0.27.4RubyGems6 Oct 2023
  • H
Command Injection
geokit-rails<2.5.0RubyGems5 Oct 2023
  • M
Directory Traversal
mongrel>=1.0.4, <1.0.5>=1.1.0, <1.1.3RubyGems2 Oct 2023
  • H
Uncaught Exception
grpc>=1.23.0, <1.53.2>=1.54.0, <1.54.3>=1.55.0, <1.55.3>=1.56.0, <1.56.2RubyGems14 Sept 2023
  • M
Uncontrolled Resource Consumption
sidekiq<6.5.10>=7.0.0, <7.1.3RubyGems12 Sept 2023
  • C
Malicious Package
gunther>=0.0.0RubyGems4 Sept 2023
  • H
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
openshift-origin-controller>=0.0.0RubyGems29 Aug 2023
  • M
Information Exposure
railties>=5.2.0, <6.1.7.5>=7.0.0, <7.0.7.1RubyGems23 Aug 2023
  • M
Information Exposure
activesupport>=5.2.0, <6.1.7.5>=7.0.0, <7.0.7.1RubyGems23 Aug 2023
  • H
HTTP Request Smuggling
puma<5.6.7>=6.0.0, <6.3.1RubyGems19 Aug 2023
  • H
Excessive Iteration
grpc<1.53.2>=1.54.0, <1.54.3>=1.55.0, <1.55.2>=1.56.0, <1.56.2RubyGems9 Aug 2023
  • M
HTTP Request Smuggling
protocol-http1<0.15.1RubyGems4 Aug 2023
  • M
Cross-site Scripting (XSS)
alchemy_cms>=0.0.0RubyGems2 Aug 2023
  • M
Information Exposure
logstash-core<5.0.1RubyGems1 Aug 2023
  • M
Information Exposure
logstash-core<2.3.4RubyGems1 Aug 2023
  • M
Regular Expression Denial of Service (ReDoS)
uri<0.10.3>=0.11.0, <0.11.2>=0.12.0, <0.12.2RubyGems16 Jul 2023
  • H
Directory Traversal
rswag<2.10.1RubyGems16 Jul 2023
  • H
Insecure Defaults
ransack<4.0.0RubyGems14 Jul 2023
  • M
Denial of Service (DoS)
commonmarker<0.23.10RubyGems14 Jul 2023
  • H
Cross-site Scripting (XSS)
decidim>=0.14.0, <0.26.6>=0.27.0, <0.27.3RubyGems12 Jul 2023
  • H
Cross-site Scripting (XSS)
decidim-core>=0.14.0, <0.26.6>=0.27.0, <0.27.3RubyGems12 Jul 2023
  • H
Information Exposure
decidim-meetings>=0.27.0, <0.27.3RubyGems12 Jul 2023
  • H
Information Exposure
decidim>=0.27.0, <0.27.3RubyGems12 Jul 2023
  • H
Cross-site Scripting (XSS)
decidim-core>=0.25.0, <0.26.6>=0.27.0, <0.27.3RubyGems12 Jul 2023
  • H
Cross-site Scripting (XSS)
decidim>=0.25.0, <0.26.6>=0.27.0, <0.27.3RubyGems12 Jul 2023
  • H
Cross-site Scripting (XSS)
sanitize>=3.0.0, <6.0.2RubyGems7 Jul 2023
  • L
Cross-site Scripting (XSS)
spina<2.15.1RubyGems29 Jun 2023
  • M
Cross-site Scripting (XSS)
actionpack<6.1.7.4>=7.0.0.0, <7.0.5.1RubyGems28 Jun 2023
  • M
Improper Authentication
doorkeeper<5.6.6RubyGems13 Jun 2023
  • H
Deserialization of Untrusted Data
kredis<1.3.0.1RubyGems11 Jun 2023