Severity Critical High Medium Low Informational Vulnerability Categories Abuse Of Functionality Acumonitor Arbitrary File Creation Arbitrary File Read Arbitrary File Write Authentication Bypass BOLA Bruteforce Possible Buffer Overflow CSRF CSTI Code Execution Configuration Crlf Injection Deepscan Default Credentials Denial-of-service Dev Files Directory Listing Directory Traversal Eli Injection Error Handling File Inclusion Http Parameter Pollution Http Response Splitting Information Disclosure Insecure Admin Access Insecure Deserialization Internal Ip Disclosure Known Vulnerabilitie Known Vulnerabilities Ldap Injection Malware Missing Update Path Traversal Privilege Escalation Remote Code Execution SSRF SSTI Sensitive Data Not Over Ssl Server Side Template Injection Session Fixation Source Code Disclosure Sql Injection Test Files Unauthenticated File Upload Url Redirection Weak Credentials Weak Crypto XFS XSS XXE Xpath Injection Vulnerability Name CVE CWE CWE Severity Ruby Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2017-17405) CVE-2017-17405 CWE-138 CWE-138 High Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2010-2489) CVE-2010-2489 CWE-119 CWE-119 High Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2013-4164) CVE-2013-4164 CWE-119 CWE-119 Medium Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2014-4975) CVE-2014-4975 CWE-119 CWE-119 Medium Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-2339) CVE-2016-2339 CWE-119 CWE-119 Critical Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2017-14033) CVE-2017-14033 CWE-119 CWE-119 High Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2017-14064) CVE-2017-14064 CWE-119 CWE-119 Critical Ruby Improper Restriction of XML External Entity Reference Vulnerability (CVE-2021-28965) CVE-2021-28965 CWE-611 CWE-611 High Ruby Inadequate Encryption Strength Vulnerability (CVE-2011-4121) CVE-2011-4121 CWE-326 CWE-326 Critical Ruby Inadequate Encryption Strength Vulnerability (CVE-2021-32066) CVE-2021-32066 CWE-326 CWE-326 High Ruby Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') Vulnerability (CVE-2020-25613) CVE-2020-25613 CWE-444 CWE-444 High Ruby Inefficient Regular Expression Complexity Vulnerability (CVE-2023-22795) CVE-2023-22795 CWE-1333 CWE-1333 High Ruby Inefficient Regular Expression Complexity Vulnerability (CVE-2023-28756) CVE-2023-28756 CWE-1333 CWE-1333 High Ruby Integer Overflow or Wraparound Vulnerability (CVE-2008-2663) CVE-2008-2663 CWE-190 CWE-190 Critical Ruby Interpretation Conflict Vulnerability (CVE-2021-33621) CVE-2021-33621 CWE-436 CWE-436 High Ruby Numeric Errors Vulnerability (CVE-2008-2376) CVE-2008-2376 High Ruby Numeric Errors Vulnerability (CVE-2008-2662) CVE-2008-2662 Critical Ruby Numeric Errors Vulnerability (CVE-2008-2725) CVE-2008-2725 High Ruby Numeric Errors Vulnerability (CVE-2008-2726) CVE-2008-2726 High Ruby Numeric Errors Vulnerability (CVE-2009-1904) CVE-2009-1904 Medium Ruby Numeric Errors Vulnerability (CVE-2011-0188) CVE-2011-0188 Medium Ruby on Rails 7PK - Security Features Vulnerability (CVE-2015-7576) CVE-2015-7576 Low Ruby on Rails Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2019-5419) CVE-2019-5419 CWE-770 CWE-770 High Ruby on Rails Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') Vulnerability (CVE-2007-6077) CVE-2007-6077 CWE-362 CWE-362 Medium Ruby on Rails CookieStore session cookie persistence CWE-284 CWE-284 Low Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2008-5189) CVE-2008-5189 CWE-352 CWE-352 Medium Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2011-0447) CVE-2011-0447 CWE-352 CWE-352 Medium Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-8166) CVE-2020-8166 CWE-352 CWE-352 Medium Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-8167) CVE-2020-8167 CWE-352 CWE-352 Medium Ruby on Rails CVE-2006-4112 Vulnerability (CVE-2006-4112) CVE-2006-4112 High Ruby on Rails CVE-2013-0277 Vulnerability (CVE-2013-0277) CVE-2013-0277 Critical Ruby on Rails CVE-2015-3227 Vulnerability (CVE-2015-3227) CVE-2015-3227 Medium Ruby on Rails CVE-2018-16477 Vulnerability (CVE-2018-16477) CVE-2018-16477 Medium Ruby on Rails CVE-2019-5418 Vulnerability (CVE-2019-5418) CVE-2019-5418 High Ruby on Rails CVE-2021-22902 Vulnerability (CVE-2021-22902) CVE-2021-22902 High Ruby on Rails CVE-2022-23633 Vulnerability (CVE-2022-23633) CVE-2022-23633 Medium Ruby on Rails CVE-2022-23634 Vulnerability (CVE-2022-23634) CVE-2022-23634 Medium Ruby on Rails CVE-2024-26144 Vulnerability (CVE-2024-26144) CVE-2024-26144 Medium Ruby on Rails CVE-2024-28103 Vulnerability (CVE-2024-28103) CVE-2024-28103 Critical Ruby on Rails Data Processing Errors Vulnerability (CVE-2014-3916) CVE-2014-3916 Medium Ruby on Rails Deserialization of Untrusted Data Vulnerability (CVE-2018-16476) CVE-2018-16476 CWE-502 CWE-502 High Ruby on Rails Deserialization of Untrusted Data Vulnerability (CVE-2020-8164) CVE-2020-8164 CWE-502 CWE-502 High Ruby on Rails Deserialization of Untrusted Data Vulnerability (CVE-2020-8165) CVE-2020-8165 CWE-502 CWE-502 Critical Ruby on Rails directory traversal vulnerability CVE-2014-0130 CWE-22 CWE-22 High Ruby on Rails DoubleTap RCE (CVE-2019-5420) CVE-2019-5420 CWE-502 CWE-502 High Ruby on Rails Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2009-3086) CVE-2009-3086 CWE-200 CWE-200 Medium Ruby on Rails Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2012-6497) CVE-2012-6497 CWE-200 CWE-200 Medium Ruby on Rails Generation of Error Message Containing Sensitive Information Vulnerability (CVE-2021-22885) CVE-2021-22885 CWE-209 CWE-209 High Ruby on Rails Improper Access Control Vulnerability (CVE-2015-7577) CVE-2015-7577 CWE-284 CWE-284 Medium Ruby on Rails Improper Access Control Vulnerability (CVE-2016-6317) CVE-2016-6317 CWE-284 CWE-284 High Ruby on Rails Improper Authentication Vulnerability (CVE-2009-2422) CVE-2009-2422 CWE-287 CWE-287 Critical Ruby on Rails Improper Authentication Vulnerability (CVE-2012-3424) CVE-2012-3424 CWE-287 CWE-287 Medium Ruby on Rails Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2006-4111) CVE-2006-4111 CWE-94 CWE-94 High Ruby on Rails Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2011-3186) CVE-2011-3186 CWE-94 CWE-94 Medium Ruby on Rails Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2020-8163) CVE-2020-8163 CWE-94 CWE-94 High Ruby on Rails Improper Input Validation Vulnerability (CVE-2008-7248) CVE-2008-7248 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2010-3933) CVE-2010-3933 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2011-2929) CVE-2011-2929 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2011-3187) CVE-2011-3187 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-0156) CVE-2013-0156 CWE-20 CWE-20 High Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-1854) CVE-2013-1854 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-1856) CVE-2013-1856 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-3221) CVE-2013-3221 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-6414) CVE-2013-6414 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2014-0082) CVE-2014-0082 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2016-0753) CVE-2016-0753 CWE-20 CWE-20 Medium Ruby on Rails Improper Input Validation Vulnerability (CVE-2016-2098) CVE-2016-2098 CWE-20 CWE-20 High Ruby on Rails Improper Input Validation Vulnerability (CVE-2019-5420) CVE-2019-5420 CWE-20 CWE-20 Critical Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2014-0130) CVE-2014-0130 CWE-22 CWE-22 Medium Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2014-7818) CVE-2014-7818 CWE-22 CWE-22 Medium Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2014-7829) CVE-2014-7829 CWE-22 CWE-22 Medium Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2016-0752) CVE-2016-0752 CWE-22 CWE-22 High Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2016-2097) CVE-2016-2097 CWE-22 CWE-22 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2007-3227) CVE-2007-3227 CWE-707 CWE-707 Medium Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2009-3009) CVE-2009-3009 CWE-707 CWE-707 Medium 1...159160161162...306 160 / 306