Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2950▲ 8 respecto a la semana anterior
Críticas / altas1450▲ 184 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)272▼ 254 respecto a la semana anterior
478 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5) | 2.8% | — | Ruby-lang Ruby | 2/3/2011 | 16/6/2026 | The safe-level feature in Ruby 1.8.6 through 1.8.6-420, 1.8.7 through 1.8.7-330, and 1.8.8dev allows context-dependent attackers to modify strings via the Exception#to_s method, as demonstrated by changing an intended pathname. | |
| Modificada | Media (6.3) | 0.39% | — | Ruby-lang Ruby | 2/3/2011 | 16/6/2026 | The FileUtils.remove_entry_secure method in Ruby 1.8.6 through 1.8.6-420, 1.8.7 through 1.8.7-330, 1.8.8dev, 1.9.1 through 1.9.1-430, 1.9.2 through 1.9.2-136, and 1.9.3dev allows local users to delete arbitrary files via a symlink attack. | |
| Modificada | Alta (7.5) | 2.5% | — | Rubyonrails Rails | 21/2/2011 | 16/6/2026 | actionpack/lib/action_view/template/resolver.rb in Ruby on Rails 3.0.x before 3.0.4, when a case-insensitive filesystem is used, does not properly implement filters associated with the list of available templates, which allows remote attackers to bypass intended access restrictions via an action name that uses an… | |
| Modificada | Alta (7.5) | 2.2% | — | Rubyonrails Rails | 21/2/2011 | 16/6/2026 | Ruby on Rails 3.0.x before 3.0.4 does not ensure that arguments to the limit function specify integer values, which makes it easier for remote attackers to conduct SQL injection attacks via a non-numeric argument. | |
| Modificada | Media (6.8) | 1.4% | — | Rubyonrails Rails | 14/2/2011 | 16/6/2026 | Ruby on Rails 2.1.x, 2.2.x, and 2.3.x before 2.3.11, and 3.x before 3.0.4, does not properly validate HTTP requests that contain an X-Requested-With header, which makes it easier for remote attackers to conduct cross-site request forgery (CSRF) attacks via forged (1) AJAX or (2) API requests that leverage… | |
| Modificada | Media (4.3) | 2.4% | — | Rubyonrails Rails | 14/2/2011 | 16/6/2026 | Multiple cross-site scripting (XSS) vulnerabilities in the mail_to helper in Ruby on Rails before 2.3.11, and 3.x before 3.0.4, when javascript encoding is used, allow remote attackers to inject arbitrary web script or HTML via a crafted (1) name or (2) email value. | |
| Modificada | Media (6.8) | 1.8% | — | Wayneeseguin Ruby Version Manager | 20/1/2011 | 16/6/2026 | Ruby Version Manager (RVM) before 1.2.1 writes file contents to a terminal without sanitizing non-printable characters, which might allow remote attackers to execute arbitrary commands via a crafted file, related to an "escape sequence injection vulnerability." NOTE: some of these details are obtained from third party… | |
| Modificada | Media (6.4) | 2.2% | — | Rubyonrails Rails | 28/10/2010 | 16/6/2026 | Ruby on Rails 2.3.9 and 3.0.0 does not properly handle nested attributes, which allows remote attackers to modify arbitrary records by changing the names of parameters for form inputs. | |
| Modificada | Alta (7.2) | 0.41% | — | Ruby-lang Ruby | 12/7/2010 | 16/6/2026 | Buffer overflow in Ruby 1.9.x before 1.9.1-p429 on Windows might allow local users to gain privileges via a crafted ARGF.inplace_mode value that is not properly handled when constructing the filenames of the backup files. | |
| Modificada | Alta (7.5) | 16% | — | Ruby-lang Webrick | 13/1/2010 | 16/6/2026 | WEBrick 1.3.1 in Ruby 1.8.6 through patchlevel 383, 1.8.7 through patchlevel 248, 1.8.8dev, 1.9.1 through patchlevel 376, and 1.9.2dev writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or… | |
| Modificada | Media (6.8) | 8.1% | — | Rubyonrails Rails | 16/12/2009 | 16/6/2026 | Ruby on Rails 2.1 before 2.1.3 and 2.2.x before 2.2.2 does not verify tokens for requests with certain content types, which allows remote attackers to bypass cross-site request forgery (CSRF) protection for requests to applications that rely on this protection, as demonstrated using text/plain. | |
| Modificada | Alta (10) | 3.9% | — | Ruby-lang Ruby | 11/12/2009 | 16/6/2026 | Heap-based buffer overflow in the rb_str_justify function in string.c in Ruby 1.9.1 before 1.9.1-p376 allows context-dependent attackers to execute arbitrary code via unspecified vectors involving (1) String#ljust, (2) String#center, or (3) String#rjust. NOTE: some of these details are obtained from third party… | |
| Modificada | Media (4.3) | 3.0% | — | Rubyonrails RailsRubyonrails Ruby ON Rails | 7/12/2009 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in the strip_tags function in Ruby on Rails before 2.2.s, and 2.3.x before 2.3.5, allows remote attackers to inject arbitrary web script or HTML via vectors involving non-printing ASCII characters, related to HTML::Tokenizer and… | |
| Modificada | Media (5) | 2.2% | — | Rubyonrails Rails | 8/9/2009 | 16/6/2026 | A certain algorithm in Ruby on Rails 2.1.0 through 2.2.2, and 2.3.x before 2.3.4, leaks information about the complexity of message-digest signature verification in the cookie store, which might allow remote attackers to forge a digest via multiple attempts. | |
| Modificada | Media (4.3) | 3.0% | — | Rubyonrails Rails | 8/9/2009 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in Ruby on Rails 2.x before 2.2.3, and 2.3.x before 2.3.4, allows remote attackers to inject arbitrary web script or HTML by placing malformed Unicode strings into a form helper. | |
| Modificada | Crítica (9.8) | 3.4% | — | Rubyonrails Ruby ON RailsApple MAC OS XApple MAC OS X Server | 10/7/2009 | 16/6/2026 | The example code for the digest authentication functionality (http_authentication.rb) in Ruby on Rails before 2.3.3 defines an authenticate_or_request_with_http_digest block that returns nil instead of false when the user does not exist, which allows context-dependent attackers to bypass authentication for… | |
| Modificada | Media (5) | 13% | — | Ruby-lang Ruby | 11/6/2009 | 16/6/2026 | The BigDecimal library in Ruby 1.8.6 before p369 and 1.8.7 before p173 allows context-dependent attackers to cause a denial of service (application crash) via a string argument that represents a large number, as demonstrated by an attempted conversion to the Float data type. | |
| Modificada | Media (6.8) | 2.6% | — | Ruby-lang Ruby | 20/2/2009 | 16/6/2026 | ext/openssl/ossl_ocsp.c in Ruby 1.8 and 1.9 does not properly check the return value from the OCSP_basic_verify function, which might allow remote attackers to successfully present an invalid X.509 certificate, possibly involving a revoked certificate. | |
| Modificada | Alta (7.8) | 14% | — | Ruby-lang Ruby | 9/12/2008 | 16/6/2026 | httputils.rb in WEBrick in Ruby 1.8.1 and 1.8.5, as used in Red Hat Enterprise Linux 4 and 5, allows remote attackers to cause a denial of service (CPU consumption) via a crafted HTTP request. NOTE: this issue exists because of an incomplete fix for CVE-2008-3656. | |
| Modificada | Media (5) | 1.5% | — | Rubyonrails RailsRubyonrails Ruby ON Rails | 21/11/2008 | 16/6/2026 | CRLF injection vulnerability in Ruby on Rails before 2.0.5 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted URL to the redirect_to function. | |
| Modificada | Alta (7.5) | 3.0% | — | Rubyonrails RailsRubyonrails Ruby ON Rails | 30/9/2008 | 16/6/2026 | Multiple SQL injection vulnerabilities in Ruby on Rails before 2.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) :limit and (2) :offset parameters, related to ActiveRecord, ActiveSupport, ActiveResource, ActionPack, and ActionMailer. | |
| Modificada | Media (5.8) | 2.4% | — | Ruby-lang Ruby | 4/9/2008 | 16/6/2026 | resolv.rb in Ruby 1.8.5 and earlier, 1.8.6 before 1.8.6-p287, 1.8.7 before 1.8.7-p72, and 1.9 r18423 and earlier uses sequential transaction IDs and constant source ports for DNS requests, which makes it easier for remote attackers to spoof DNS responses, a different vulnerability than CVE-2008-1447. | |
| Modificada | Media (5) | 15% | — | Ruby-lang Ruby | 27/8/2008 | 16/6/2026 | The REXML module in Ruby 1.8.6 through 1.8.6-p287, 1.8.7 through 1.8.7-p72, and 1.9 allows context-dependent attackers to cause a denial of service (CPU consumption) via an XML document with recursively nested entities, aka an "XML entity explosion." | |
| Modificada | Media (5) | 16% | — | Ruby-lang Ruby | 14/8/2008 | 16/6/2026 | The regular expression engine (regex.c) in Ruby 1.8.5 and earlier, 1.8.6 through 1.8.6-p286, 1.8.7 through 1.8.7-p71, and 1.9 through r18423 allows remote attackers to cause a denial of service (infinite loop and crash) via multiple long requests to a Ruby socket, related to memory allocation failure, and as… | |
| Modificada | Alta (7.8) | 70% | — | Ruby-lang Ruby | 13/8/2008 | 16/6/2026 | Algorithmic complexity vulnerability in the WEBrick::HTTPUtils.split_header_value function in WEBrick::HTTP::DefaultFileHandler in WEBrick in Ruby 1.8.5 and earlier, 1.8.6 through 1.8.6-p286, 1.8.7 through 1.8.7-p71, and 1.9 through r18423 allows context-dependent attackers to cause a denial of service (CPU… |