Showing 218 of 218 total issues
Denial of Service Vulnerability in Rack Content-Disposition parsing Open
rack (1.6.4)
- Read upRead up
- Create a ticketCreate a ticket
- Exclude checks
Directory traversal in Rack::Directory app bundled with Rack Open
rack (1.6.4)
- Read upRead up
- Create a ticketCreate a ticket
- Exclude checks
Possible Information Disclosure / Unintended Method Execution in Action Pack Open
actionpack (4.2.4)
- Read upRead up
- Create a ticketCreate a ticket
- Exclude checks
Possible RCE escalation bug with Serialized Columns in Active Record Open
activerecord (4.2.4)
- Read upRead up
- Create a ticketCreate a ticket
- Exclude checks
Possible DoS Vulnerability in Active Record PostgreSQL adapter Open
activerecord (4.2.4)
- Read upRead up
- Create a ticketCreate a ticket
- Exclude checks
Devise Gem for Ruby confirmation token validation with a blank string Open
devise (3.5.2)
- Read upRead up
- Create a ticketCreate a ticket
- Exclude checks
HTTP Smuggling via Transfer-Encoding Header in Puma Open
puma (2.14.0)
- Read upRead up
- Create a ticketCreate a ticket
- Exclude checks
Possible shell escape sequence injection vulnerability in Rack Open
rack (1.6.4)
- Read upRead up
- Create a ticketCreate a ticket
- Exclude checks
ReDoS based DoS vulnerability in Action Dispatch Open
actionpack (4.2.4)
- Read upRead up
- Create a ticketCreate a ticket
- Exclude checks
Keepalive thread overload/DoS in puma Open
puma (2.14.0)
- Read upRead up
- Create a ticketCreate a ticket
- Exclude checks
Information Exposure with Puma when used with Rails Open
puma (2.14.0)
- Read upRead up
- Create a ticketCreate a ticket
- Exclude checks
ReDoS based DoS vulnerability in Active Support’s underscore Open
activesupport (4.2.4)
- Read upRead up
- Create a ticketCreate a ticket
- Exclude checks
HTTP Response Splitting vulnerability in puma Open
puma (2.14.0)
- Read upRead up
- Create a ticketCreate a ticket
- Exclude checks
HTTP Request Smuggling in puma Open
puma (2.14.0)
- Read upRead up
- Create a ticketCreate a ticket
- Exclude checks
Cross-site Scripting in Sidekiq Open
sidekiq (3.5.2)
- Read upRead up
- Create a ticketCreate a ticket
- Exclude checks
Ability to forge per-form CSRF tokens given a global CSRF token Open
actionpack (4.2.4)
- Read upRead up
- Create a ticketCreate a ticket
- Exclude checks
CSRF Vulnerability in rails-ujs Open
actionview (4.2.4)
- Read upRead up
- Create a ticketCreate a ticket
- Exclude checks
Denial of service via header parsing in Rack Open
rack (1.6.4)
- Read upRead up
- Create a ticketCreate a ticket
- Exclude checks
Denial of service in sidekiq Open
sidekiq (3.5.2)
- Read upRead up
- Create a ticketCreate a ticket
- Exclude checks
Keepalive Connections Causing Denial Of Service in puma Open
puma (2.14.0)
- Read upRead up
- Create a ticketCreate a ticket
- Exclude checks