Vulnerabilities
Summary — last 7 days
New vulnerabilities2,720▼ 353 vs. last week
Critical / high1,288▼ 193 vs. last week
New active exploitation (KEV)3▼ 5 vs. last week
Unscored (no CVSS)216▼ 113 vs. last week
1 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Modified | Medium (5.9) | 1.5% | — | Http.rb Project Http.rb | 10/6/2017 | 6/17/2026 | The Ruby http gem before 0.7.3 does not verify hostnames in SSL connections, which might allow remote attackers to obtain sensitive information via a man-in-the-middle-attack. |