Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2811▼ 173 respecto a la semana anterior
Críticas / altas1356▲ 48 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)267▼ 256 respecto a la semana anterior
125 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.3) | 2.5% | — | Ruby-lang RubyRuby-lang TimeDebian LinuxFedoraproject Fedora | 31/3/2023 | 17/6/2026 | A ReDoS issue was discovered in the Time component through 0.2.1 in Ruby through 3.2.1. The Time parser mishandles invalid URLs that have specific characters. It causes an increase in execution time for parsing strings to Time objects. The fixed versions are 0.1.1 and 0.2.2. | |
| Modificada | Media (5.3) | 2.6% | — | Ruby-lang URIDebian LinuxFedoraproject Fedora | 31/3/2023 | 17/6/2026 | A ReDoS issue was discovered in the URI component through 0.12.0 in Ruby through 3.2.1. The URI parser mishandles invalid URLs that have specific characters. It causes an increase in execution time for parsing strings to URI objects. The fixed versions are 0.12.1, 0.11.1, 0.10.2 and 0.10.0.1. | |
| Modificada | Alta (8.8) | 2.4% | — | Ruby-lang CGIFedoraproject FedoraRuby-lang Ruby | 18/11/2022 | 17/6/2026 | The cgi gem before 0.1.0.2, 0.2.x before 0.2.2, and 0.3.x before 0.3.5 for Ruby allows HTTP response splitting. This is relevant to applications that use untrusted user input either to generate an HTTP response or to create a CGI::Cookie object. | |
| Modificada | Crítica (9.8) | 4.7% | — | Ruby-lang RubyDebian Linux | 29/9/2022 | 17/6/2026 | An exploitable heap overflow vulnerability exists in the Psych::Emitter start_document function of Ruby. In Psych::Emitter start_document function heap buffer "head" allocation is made based on tags array length. Specially constructed object passed as element of tags array can increase this array size after mentioned… | |
| Modificada | Alta (7.5) | 4.4% | — | Ruby-lang RubyDebian LinuxApple Macos | 9/5/2022 | 17/6/2026 | There is a buffer over-read in Ruby before 2.6.10, 2.7.x before 2.7.6, 3.x before 3.0.4, and 3.1.x before 3.1.2. It occurs in String-to-Float conversion, including Kernel#Float and String#to_f. | |
| Modificada | Crítica (9.8) | 3.0% | — | Ruby-lang Ruby | 9/5/2022 | 17/6/2026 | A double free was found in the Regexp compiler in Ruby 3.x before 3.0.4 and 3.1.x before 3.1.2. If a victim attempts to create a Regexp from untrusted user input, an attacker may be able to write to unexpected memory locations. | |
| Modificada | Crítica (9.8) | 4.9% | — | Ruby-lang CGIFedoraproject Fedora | 6/2/2022 | 17/6/2026 | CGI.escape_html in Ruby before 2.7.5 and 3.x before 3.0.3 has an integer overflow and resultant buffer overflow via a long string on platforms (such as Windows) where size_t and long have different numbers of bytes. This also affects the CGI gem before 0.3.1 for Ruby. | |
| Modificada | Alta (7.5) | 2.9% | — | Ruby-lang CGIRuby-lang RubyRedhat Software CollectionsRedhat Enterprise Linux+5 | 1/1/2022 | 17/6/2026 | CGI::Cookie.parse in Ruby through 2.6.8 mishandles security prefixes in cookie names. This also affects the CGI gem through 0.3.0 for Ruby. | |
| Modificada | Alta (7.5) | 3.2% | — | Ruby-lang DateRuby-lang RubyRedhat Software CollectionsRedhat Enterprise Linux+5 | 1/1/2022 | 17/6/2026 | Date.parse in the date gem through 3.2.0 for Ruby allows ReDoS (regular expression Denial of Service) via a long string. The fixed versions are 3.2.1, 3.1.2, 3.0.2, and 2.0.1. | |
| Modificada | Alta (7.4) | 2.9% | — | Ruby-lang RubyOracle JD Edwards Enterpriseone Tools | 1/8/2021 | 17/6/2026 | An issue was discovered in Ruby through 2.6.7, 2.7.x through 2.7.3, and 3.x through 3.0.1. Net::IMAP does not raise an exception when StartTLS fails with an an unknown response, which might allow man-in-the-middle attackers to bypass the TLS protections by leveraging a network position between the client and the… | |
| Modificada | Alta (7) | 1.5% | — | Debian LinuxRuby-lang RdocOracle JD Edwards Enterpriseone Tools | 30/7/2021 | 17/6/2026 | In RDoc 3.11 through 6.x before 6.3.1, as distributed with Ruby through 3.0.1, it is possible to execute arbitrary code via | and tags in a filename. | |
| Modificada | Alta (7.5) | 58% | — | Ruby-lang Ruby | 30/7/2021 | 17/6/2026 | In Ruby through 3.0 on Windows, a remote attacker can submit a crafted path when a Web application handles a parameter with TmpDir. | |
| Modificada | Media (5.8) | 3.0% | — | Ruby-lang RubyDebian LinuxOracle JD Edwards Enterpriseone Tools | 13/7/2021 | 17/6/2026 | An issue was discovered in Ruby through 2.6.7, 2.7.x through 2.7.3, and 3.x through 3.0.1. A malicious FTP server can use the PASV response to trick Net::FTP into connecting back to a given IP address and port. This potentially makes curl extract information about services that are otherwise private and not disclosed… | |
| Modificada | Alta (7.5) | 5.1% | — | Ruby-lang RexmlRuby-lang RubyFedoraproject Fedora | 21/4/2021 | 17/6/2026 | The REXML gem before 3.2.5 in Ruby before 2.6.7, 2.7.x before 2.7.3, and 3.x before 3.0.1 does not properly address XML round-trip issues. An incorrect document can be produced after parsing and serializing. | |
| Modificada | Alta (7.5) | 3.8% | — | Ruby-lang RubyRuby-lang WebrickFedoraproject Fedora | 6/10/2020 | 17/6/2026 | An issue was discovered in Ruby through 2.5.8, 2.6.x through 2.6.6, and 2.7.x through 2.7.1. WEBrick, a simple HTTP server bundled with Ruby, had not checked the transfer-encoding header value rigorously. An attacker may potentially exploit this issue to bypass a reverse proxy (which also has a poor header check),… | |
| Modificada | Media (5.3) | 2.5% | — | Ruby-lang RubyFedoraproject FedoraDebian Linux | 4/5/2020 | 17/6/2026 | An issue was discovered in Ruby 2.5.x through 2.5.7, 2.6.x through 2.6.5, and 2.7.0. If a victim calls BasicSocket#read_nonblock(requested_size, buffer, exception: false), the method resizes the buffer to fit the requested size, but no data is copied. Thus, the buffer string provides the previous value of the heap.… | |
| Modificada | Alta (7.5) | 2.5% | — | PumaRuby-lang RubyDebian LinuxFedoraproject Fedora | 28/2/2020 | 17/6/2026 | In Puma (RubyGem) before 4.3.2 and before 3.12.3, if an application using Puma allows untrusted input in a response header, an attacker can use newline characters (i.e. `CR`, `LF` or`/r`, `/n`) to end the header and inject malicious content, such as additional headers or an entirely new response body. This… | |
| Modificada | Media (6.4) | 1.4% | — | Ruby-lang RakeCanonical Ubuntu LinuxDebian LinuxFedoraproject Fedora+1 | 24/2/2020 | 17/6/2026 | There is an OS command injection vulnerability in Ruby Rake < 12.3.3 in Rake::FileList when supplying a filename that begins with the pipe character `|`. | |
| Modificada | Media (5.9) | 2.8% | — | Ruby-lang RubyRuby-lang TrunkDebian LinuxPuppet Agent+1 | 29/11/2019 | 17/6/2026 | verify_certificate_identity in the OpenSSL extension in Ruby before 2.0.0 patchlevel 645, 2.1.x before 2.1.6, and 2.2.x before 2.2.2 does not properly validate hostnames, which allows remote attackers to spoof servers via vectors related to (1) multiple wildcards, (1) wildcards in IDNA names, (3) case sensitivity, and… | |
| Modificada | Alta (8.1) | 4.2% | — | Ruby-lang RubyDebian LinuxOpensuse LeapOracle Graalvm | 26/11/2019 | 17/6/2026 | Ruby through 2.4.7, 2.5.x through 2.5.6, and 2.6.x through 2.6.4 allows code injection if the first argument (aka the "command" argument) to Shell#[] or Shell#test in lib/shell.rb is untrusted data. An attacker can exploit this to call an arbitrary Ruby method. | |
| Modificada | Media (5.3) | 4.6% | — | Ruby-lang RubyDebian Linux | 26/11/2019 | 17/6/2026 | Ruby through 2.4.7, 2.5.x through 2.5.6, and 2.6.x through 2.6.4 allows HTTP Response Splitting. If a program using WEBrick inserts untrusted input into the response header, an attacker can exploit it to insert a newline character to split a header, and inject malicious content to deceive clients. NOTE: this issue… | |
| Modificada | Alta (7.5) | 5.1% | — | Ruby-lang RubyDebian Linux | 26/11/2019 | 17/6/2026 | WEBrick::HTTPAuth::DigestAuth in Ruby through 2.4.7, 2.5.x through 2.5.6, and 2.6.x through 2.6.4 has a regular expression Denial of Service cause by looping/backtracking. A victim must expose a WEBrick server that uses DigestAuth to the Internet or a untrusted network. | |
| Modificada | Media (6.5) | 3.3% | — | Ruby-lang RubyCanonical Ubuntu Linux | 26/11/2019 | 17/6/2026 | Ruby through 2.4.7, 2.5.x through 2.5.6, and 2.6.x through 2.6.4 mishandles path checking within File.fnmatch functions. | |
| Modificada | Crítica (9.8) | 2.5% | — | Ruby-lang Ruby | 26/11/2019 | 16/6/2026 | The OpenSSL extension of Ruby (Git trunk) versions after 2011-09-01 up to 2011-11-03 always generated an exponent value of '1' to be used for private RSA key generation. A remote attacker could use this flaw to bypass or corrupt integrity of services, depending on strong private RSA keys generation mechanism. | |
| Modificada | Media (5.3) | 1.5% | — | Ruby-lang Ruby | 26/11/2019 | 16/6/2026 | Various methods in WEBrick::HTTPRequest in Ruby 1.9.2 and 1.8.7 and earlier do not validate the X-Forwarded-For, X-Forwarded-Host and X-Forwarded-Server headers in requests, which might allow remote attackers to inject arbitrary text into log files or bypass intended address parsing via a crafted header. |