ruby vulnerabilities

Continuously find & fix vulnerabilities like these in your dependencies. Test and protect your applications

Direct Vulnerabilities

Known vulnerabilities in the ruby package. This does not include vulnerabilities belonging to this package’s dependencies.

Report new vulnerabilities
Vulnerability Vulnerable versions Snyk patch Published
  • M
Cross-site Scripting (XSS)
<2.5.8-r0 Not available 21 Jul, 2020
  • M
Information Exposure
<2.5.8-r0 Not available 21 Jul, 2020
  • H
Improper Authentication
<2.5.7-r0 Not available 13 Nov, 2019
  • H
Arbitrary Code Injection
<2.5.7-r0 Not available 13 Nov, 2019
  • M
CVE-2019-15845
<2.5.7-r0 Not available 13 Nov, 2019
  • M
Arbitrary Code Injection
<2.5.7-r0 Not available 13 Nov, 2019
  • H
Directory Traversal
<2.5.5-r0 Not available 27 Mar, 2019
  • H
Arbitrary Code Injection
<2.5.5-r0 Not available 27 Mar, 2019
  • H
Arbitrary Code Injection
<2.5.5-r0 Not available 27 Mar, 2019
  • H
Arbitrary Argument Injection
<2.5.5-r0 Not available 27 Mar, 2019
  • H
Arbitrary Code Injection
<2.5.5-r0 Not available 27 Mar, 2019
  • H
Arbitrary Code Injection
<2.5.5-r0 Not available 27 Mar, 2019
  • H
Security Features
<2.5.2-r0 Not available 19 Oct, 2018
  • H
Improper Data Handling
<2.5.2-r0 Not available 19 Oct, 2018
  • H
Improper Input Validation
<2.5.1-r0 Not available 03 Apr, 2018
  • H
Directory Traversal
<2.5.1-r0 Not available 03 Apr, 2018
  • H
Resource Exhaustion
<2.5.1-r0 Not available 03 Apr, 2018
  • H
Use of Externally-Controlled Format String
<2.5.1-r0 Not available 03 Apr, 2018
  • M
HTTP Response Splitting
<2.5.1-r0 Not available 03 Apr, 2018
  • H
Directory Traversal
<2.5.1-r0 Not available 03 Apr, 2018
  • H
OS Command Injection
<2.4.3-r0 Not available 15 Dec, 2017
  • H
Out-of-Bounds
<2.4.2-r0 Not available 19 Sep, 2017
  • H
Improper Authentication
<2.4.2-r0 Not available 19 Sep, 2017
  • H
Use of Externally-Controlled Format String
<2.4.2-r0 Not available 15 Sep, 2017
  • H
Arbitrary Code Injection
<2.4.2-r0 Not available 31 Aug, 2017
  • H
Origin Validation Error
<2.4.2-r0 Not available 31 Aug, 2017
  • H
Improper Input Validation
<2.4.2-r0 Not available 31 Aug, 2017
  • H
Improper Input Validation
<2.4.2-r0 Not available 31 Aug, 2017
  • H
Out-of-Bounds
<2.4.2-r0 Not available 31 Aug, 2017