Ruby-Lang / Ruby
93 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2009-1904 | ruby: DoS vulnerability in BigDecimal | MEDIUM | 5.0 | Jun 11, 2009 |
| CVE-2009-0642 | ruby: Incorrect checks for validity of X.509 certificates | MEDIUM | 6.8 | Feb 18, 2009 |
| CVE-2008-4310 | ruby: Incomplete fix for CVE-2008-3656 | HIGH | 7.8 | Dec 9, 2008 |
| CVE-2008-3905 | ruby: use of predictable source port and transaction id in DNS requests done by resolv.rb module | MEDIUM | 5.8 | Sep 4, 2008 |
| CVE-2008-3790 | ruby: DoS vulnerability in the REXML module | MEDIUM | 5.0 | Aug 27, 2008 |
| CVE-2008-3443 | ruby: Memory allocation failure in Ruby regex engine (remotely exploitable DoS) | MEDIUM | 5.0 | Aug 14, 2008 |
| CVE-2008-3657 | ruby: missing "taintness" checks in dl module | HIGH | 7.5 | Aug 13, 2008 |
| CVE-2008-3656 | ruby: WEBrick DoS vulnerability (CPU consumption) | HIGH | 7.8 | Aug 13, 2008 |
| CVE-2008-3655 | ruby: multiple insufficient safe mode restrictions | HIGH | 7.5 | Aug 13, 2008 |
| CVE-2008-2376 | ruby: integer overflows in rb_ary_fill() / Array#fill | HIGH | 7.5 | Jul 9, 2008 |
| CVE-2008-2726 | ruby: integer overflow in rb_ary_splice/update/replace() - beg + rlen | HIGH | 7.8 | Jun 24, 2008 |
| CVE-2008-2725 | ruby: integer overflow in rb_ary_splice/update/replace() - REALLOC_N | HIGH | 7.8 | Jun 24, 2008 |
| CVE-2008-2664 | ruby: Unsafe use of alloca in rb_str_format() | HIGH | 7.8 | Jun 24, 2008 |
| CVE-2008-2663 | ruby: Integer overflows in rb_ary_store() | HIGH | 10.0 | Jun 24, 2008 |
| CVE-2008-2662 | ruby: Integer overflows in rb_str_buf_append() | HIGH | 10.0 | Jun 24, 2008 |
| CVE-2008-1891 | ruby: WEBrick CGI source disclosure | MEDIUM | 5.0 | Apr 18, 2008 |
| CVE-2007-5770 | net:: * modules | MEDIUM | 5.0 | Nov 14, 2007 |
| CVE-2007-5162 | Net: HTTP insufficient verification of SSL certificate | MEDIUM | 4.3 | Oct 1, 2007 |
Showing 76 to 93 of 93 CVEs