Showing 22 of 22 total issues
Integer Overflow or Wraparound in libxml2 affects Nokogiri Open
nokogiri (1.10.9)
- Read upRead up
- Exclude checks
ReDoS based DoS vulnerability in Active Support’s underscore Open
activesupport (6.0.3.2)
- Read upRead up
- Exclude checks
Update packaged dependency libxml2 from 2.9.10 to 2.9.12 Open
nokogiri (1.10.9)
- Read upRead up
- Exclude checks
Update bundled libxml2 to v2.10.3 to resolve multiple CVEs Open
nokogiri (1.10.9)
- Read upRead up
- Exclude checks
Regular Expression Denial of Service in Addressable templates Open
addressable (2.7.0)
- Read upRead up
- Exclude checks
Update packaged libxml2 (2.9.12 → 2.9.13) and libxslt (1.1.34 → 1.1.35) Open
nokogiri (1.10.9)
- Read upRead up
- Exclude checks
Improper Handling of Unexpected Data Type in Nokogiri Open
nokogiri (1.10.9)
- Read upRead up
- Exclude checks
Improper Restriction of XML External Entity Reference (XXE) in Nokogiri on JRuby Open
nokogiri (1.10.9)
- Read upRead up
- Exclude checks
Nokogiri::XML::Schema trusts input by default, exposing risk of an XXE vulnerability Open
nokogiri (1.10.9)
- Read upRead up
- Exclude checks
Inefficient Regular Expression Complexity in Nokogiri Open
nokogiri (1.10.9)
- Read upRead up
- Exclude checks
TZInfo relative path traversal vulnerability allows loading of arbitrary files Open
tzinfo (1.2.7)
- Read upRead up
- Exclude checks
Denial of Service Vulnerability in Rack Content-Disposition parsing Open
rack (2.2.3)
- Read upRead up
- Exclude checks
Possible shell escape sequence injection vulnerability in Rack Open
rack (2.2.3)
- Read upRead up
- Exclude checks
Denial of Service Vulnerability in Rack Multipart Parsing Open
rack (2.2.3)
- Read upRead up
- Exclude checks