Showing 145 of 145 total issues
Possible Information Disclosure / Unintended Method Execution in Action Pack Open
actionpack (4.1.8)
- Read upRead up
- Exclude checks
json Gem for Ruby Unsafe Object Creation Vulnerability (additional fix) Open
json (1.8.3)
- Read upRead up
- Exclude checks
Possible RCE escalation bug with Serialized Columns in Active Record Open
activerecord (4.1.8)
- Read upRead up
- Exclude checks
Code Injection vulnerability in CarrierWave::RMagick Open
carrierwave (0.11.2)
- Read upRead up
- Exclude checks
Percent-encoded cookies can be used to overwrite existing prefixed cookie names Open
rack (1.5.5)
- Read upRead up
- Exclude checks
Denial of Service Vulnerability in Rack Content-Disposition parsing Open
rack (1.5.5)
- Read upRead up
- Exclude checks
Possible XSS Vulnerability in Action View tag helpers Open
actionview (4.1.8)
- Read upRead up
- Exclude checks
Possible shell escape sequence injection vulnerability in Rack Open
rack (1.5.5)
- Read upRead up
- Exclude checks
Directory traversal in Rack::Directory app bundled with Rack Open
rack (1.5.5)
- Read upRead up
- Exclude checks
Denial of Service Vulnerability in Rack Multipart Parsing Open
rack (1.5.5)
- Read upRead up
- Exclude checks
Ability to forge per-form CSRF tokens given a global CSRF token Open
actionpack (4.1.8)
- Read upRead up
- Exclude checks
ReDoS based DoS vulnerability in Action Dispatch Open
actionpack (4.1.8)
- Read upRead up
- Exclude checks