ServiceInnovationLab/serviceinnovationlab.github.io

View on GitHub
Gemfile.lock

Summary

Maintainability
Test Coverage

Showing 22 of 22 total issues

Remote code execution in Kramdown
Open

kramdown (1.17.0)
Severity: Minor
Found in Gemfile.lock by bundler-audit

Unintended read access in kramdown gem
Open

kramdown (1.17.0)
Severity: Minor
Found in Gemfile.lock by bundler-audit

Integer Overflow or Wraparound in libxml2 affects Nokogiri
Open

nokogiri (1.10.9)
Severity: Critical
Found in Gemfile.lock by bundler-audit

Out-of-bounds Write in zlib affects Nokogiri
Open

nokogiri (1.10.9)
Severity: Critical
Found in Gemfile.lock by bundler-audit

ReDoS based DoS vulnerability in Active Support’s underscore
Open

activesupport (6.0.3.2)
Severity: Minor
Found in Gemfile.lock by bundler-audit

Update packaged dependency libxml2 from 2.9.10 to 2.9.12
Open

nokogiri (1.10.9)
Severity: Critical
Found in Gemfile.lock by bundler-audit

Update bundled libxml2 to v2.10.3 to resolve multiple CVEs
Open

nokogiri (1.10.9)
Severity: Minor
Found in Gemfile.lock by bundler-audit

Regular Expression Denial of Service in Addressable templates
Open

addressable (2.7.0)
Severity: Critical
Found in Gemfile.lock by bundler-audit

Denial of Service (DoS) in Nokogiri on JRuby
Open

nokogiri (1.10.9)
Severity: Critical
Found in Gemfile.lock by bundler-audit

Update packaged libxml2 (2.9.12 → 2.9.13) and libxslt (1.1.34 → 1.1.35)
Open

nokogiri (1.10.9)
Severity: Critical
Found in Gemfile.lock by bundler-audit

Improper Handling of Unexpected Data Type in Nokogiri
Open

nokogiri (1.10.9)
Severity: Critical
Found in Gemfile.lock by bundler-audit

Improper Restriction of XML External Entity Reference (XXE) in Nokogiri on JRuby
Open

nokogiri (1.10.9)
Severity: Critical
Found in Gemfile.lock by bundler-audit

Nokogiri::XML::Schema trusts input by default, exposing risk of an XXE vulnerability
Open

nokogiri (1.10.9)
Severity: Info
Found in Gemfile.lock by bundler-audit

XML Injection in Xerces Java affects Nokogiri
Open

nokogiri (1.10.9)
Severity: Minor
Found in Gemfile.lock by bundler-audit

Inefficient Regular Expression Complexity in Nokogiri
Open

nokogiri (1.10.9)
Severity: Critical
Found in Gemfile.lock by bundler-audit

TZInfo relative path traversal vulnerability allows loading of arbitrary files
Open

tzinfo (1.2.7)
Severity: Critical
Found in Gemfile.lock by bundler-audit

XML round-trip vulnerability in REXML
Open

rexml (3.2.4)
Severity: Critical
Found in Gemfile.lock by bundler-audit

Denial of service via header parsing in Rack
Open

rack (2.2.3)
Severity: Minor
Found in Gemfile.lock by bundler-audit

Denial of service via multipart parsing in Rack
Open

rack (2.2.3)
Severity: Minor
Found in Gemfile.lock by bundler-audit

Denial of Service Vulnerability in Rack Content-Disposition parsing
Open

rack (2.2.3)
Severity: Minor
Found in Gemfile.lock by bundler-audit

Possible shell escape sequence injection vulnerability in Rack
Open

rack (2.2.3)
Severity: Minor
Found in Gemfile.lock by bundler-audit

Denial of Service Vulnerability in Rack Multipart Parsing
Open

rack (2.2.3)
Severity: Critical
Found in Gemfile.lock by bundler-audit

There are no issues that match your filters.

Category
Status