Vulnerability Name CVE Severity
Ruby Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2017-17405) CVE-2017-17405
Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2010-2489) CVE-2010-2489
Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2013-4164) CVE-2013-4164
Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2014-4975) CVE-2014-4975
Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2016-2339) CVE-2016-2339
Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2017-14033) CVE-2017-14033
Ruby Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2017-14064) CVE-2017-14064
Ruby Improper Restriction of XML External Entity Reference Vulnerability (CVE-2021-28965) CVE-2021-28965
Ruby Inadequate Encryption Strength Vulnerability (CVE-2011-4121) CVE-2011-4121
Ruby Inadequate Encryption Strength Vulnerability (CVE-2021-32066) CVE-2021-32066
Ruby Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') Vulnerability (CVE-2020-25613) CVE-2020-25613
Ruby Inefficient Regular Expression Complexity Vulnerability (CVE-2023-22795) CVE-2023-22795
Ruby Inefficient Regular Expression Complexity Vulnerability (CVE-2023-28756) CVE-2023-28756
Ruby Integer Overflow or Wraparound Vulnerability (CVE-2008-2663) CVE-2008-2663
Ruby Interpretation Conflict Vulnerability (CVE-2021-33621) CVE-2021-33621
Ruby Numeric Errors Vulnerability (CVE-2008-2376) CVE-2008-2376
Ruby Numeric Errors Vulnerability (CVE-2008-2662) CVE-2008-2662
Ruby Numeric Errors Vulnerability (CVE-2008-2725) CVE-2008-2725
Ruby Numeric Errors Vulnerability (CVE-2008-2726) CVE-2008-2726
Ruby Numeric Errors Vulnerability (CVE-2009-1904) CVE-2009-1904
Ruby Numeric Errors Vulnerability (CVE-2011-0188) CVE-2011-0188
Ruby on Rails 7PK - Security Features Vulnerability (CVE-2015-7576) CVE-2015-7576
Ruby on Rails Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2019-5419) CVE-2019-5419
Ruby on Rails Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') Vulnerability (CVE-2007-6077) CVE-2007-6077
Ruby on Rails CookieStore session cookie persistence
Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2008-5189) CVE-2008-5189
Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2011-0447) CVE-2011-0447
Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-8166) CVE-2020-8166
Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-8167) CVE-2020-8167
Ruby on Rails CVE-2006-4112 Vulnerability (CVE-2006-4112) CVE-2006-4112
Ruby on Rails CVE-2013-0277 Vulnerability (CVE-2013-0277) CVE-2013-0277
Ruby on Rails CVE-2015-3227 Vulnerability (CVE-2015-3227) CVE-2015-3227
Ruby on Rails CVE-2018-16477 Vulnerability (CVE-2018-16477) CVE-2018-16477
Ruby on Rails CVE-2019-5418 Vulnerability (CVE-2019-5418) CVE-2019-5418
Ruby on Rails CVE-2021-22902 Vulnerability (CVE-2021-22902) CVE-2021-22902
Ruby on Rails CVE-2022-23633 Vulnerability (CVE-2022-23633) CVE-2022-23633
Ruby on Rails CVE-2022-23634 Vulnerability (CVE-2022-23634) CVE-2022-23634
Ruby on Rails CVE-2024-26144 Vulnerability (CVE-2024-26144) CVE-2024-26144
Ruby on Rails CVE-2024-28103 Vulnerability (CVE-2024-28103) CVE-2024-28103
Ruby on Rails Data Processing Errors Vulnerability (CVE-2014-3916) CVE-2014-3916
Ruby on Rails Deserialization of Untrusted Data Vulnerability (CVE-2018-16476) CVE-2018-16476
Ruby on Rails Deserialization of Untrusted Data Vulnerability (CVE-2020-8164) CVE-2020-8164
Ruby on Rails Deserialization of Untrusted Data Vulnerability (CVE-2020-8165) CVE-2020-8165
Ruby on Rails directory traversal vulnerability CVE-2014-0130
Ruby on Rails DoubleTap RCE (CVE-2019-5420) CVE-2019-5420
Ruby on Rails Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2009-3086) CVE-2009-3086
Ruby on Rails Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2012-6497) CVE-2012-6497
Ruby on Rails Generation of Error Message Containing Sensitive Information Vulnerability (CVE-2021-22885) CVE-2021-22885
Ruby on Rails Improper Access Control Vulnerability (CVE-2015-7577) CVE-2015-7577
Ruby on Rails Improper Access Control Vulnerability (CVE-2016-6317) CVE-2016-6317
Ruby on Rails Improper Authentication Vulnerability (CVE-2009-2422) CVE-2009-2422
Ruby on Rails Improper Authentication Vulnerability (CVE-2012-3424) CVE-2012-3424
Ruby on Rails Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2006-4111) CVE-2006-4111
Ruby on Rails Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2011-3186) CVE-2011-3186
Ruby on Rails Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2020-8163) CVE-2020-8163
Ruby on Rails Improper Input Validation Vulnerability (CVE-2008-7248) CVE-2008-7248
Ruby on Rails Improper Input Validation Vulnerability (CVE-2010-3933) CVE-2010-3933
Ruby on Rails Improper Input Validation Vulnerability (CVE-2011-2929) CVE-2011-2929
Ruby on Rails Improper Input Validation Vulnerability (CVE-2011-3187) CVE-2011-3187
Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-0156) CVE-2013-0156
Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-1854) CVE-2013-1854
Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-1856) CVE-2013-1856
Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-3221) CVE-2013-3221
Ruby on Rails Improper Input Validation Vulnerability (CVE-2013-6414) CVE-2013-6414
Ruby on Rails Improper Input Validation Vulnerability (CVE-2014-0082) CVE-2014-0082
Ruby on Rails Improper Input Validation Vulnerability (CVE-2016-0753) CVE-2016-0753
Ruby on Rails Improper Input Validation Vulnerability (CVE-2016-2098) CVE-2016-2098
Ruby on Rails Improper Input Validation Vulnerability (CVE-2019-5420) CVE-2019-5420
Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2014-0130) CVE-2014-0130
Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2014-7818) CVE-2014-7818
Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2014-7829) CVE-2014-7829
Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2016-0752) CVE-2016-0752
Ruby on Rails Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Vulnerability (CVE-2016-2097) CVE-2016-2097
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2007-3227) CVE-2007-3227
Ruby on Rails Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2009-3009) CVE-2009-3009