Showing 308 of 313 total issues
Keepalive Connections Causing Denial Of Service in puma Open
puma (3.12.1)
- Read upRead up
- Exclude checks
Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') in puma Open
puma (3.12.1)
- Read upRead up
- Exclude checks
Class has too many lines. [108/100] Open
class RebateForm < ApplicationRecord include Discard::Model audited only: [:discarded_at], on: :update has_many :signatures, dependent: :destroy
- Read upRead up
- Exclude checks
Update packaged libxml2 (2.9.12 → 2.9.13) and libxslt (1.1.34 → 1.1.35) Open
nokogiri (1.10.5)
- Read upRead up
- Exclude checks
Remote shell execution vulnerability when applying commands from user input Open
image_processing (1.9.0)
- Read upRead up
- Exclude checks
Improper neutralization of data URIs may allow XSS in Loofah Open
loofah (2.3.1)
- Read upRead up
- Exclude checks
Directory traversal in Rack::Directory app bundled with Rack Open
rack (2.0.7)
- Read upRead up
- Exclude checks
Nokogiri::XML::Schema trusts input by default, exposing risk of an XXE vulnerability Open
nokogiri (1.10.5)
- Read upRead up
- Exclude checks
json Gem for Ruby Unsafe Object Creation Vulnerability (additional fix) Open
json (2.2.0)
- Read upRead up
- Exclude checks
Integer Overflow or Wraparound in libxml2 affects Nokogiri Open
nokogiri (1.10.5)
- Read upRead up
- Exclude checks
Update packaged dependency libxml2 from 2.9.10 to 2.9.12 Open
nokogiri (1.10.5)
- Read upRead up
- Exclude checks
Percent-encoded cookies can be used to overwrite existing prefixed cookie names Open
rack (2.0.7)
- Read upRead up
- Exclude checks