atzorvas/ccradio

View on GitHub

Showing 218 of 218 total issues

Revert libxml2 behavior in Nokogiri gem that could cause XSS
Open

nokogiri (1.6.6.2)
Severity: Minor
Found in Gemfile.lock by bundler-audit

OmniAuth's lib/omniauth/failure_endpoint.rb does not escape message_key value
Open

omniauth (1.2.2)
Severity: Minor
Found in Gemfile.lock by bundler-audit

Path Traversal in Sprockets
Open

sprockets (3.4.0)
Severity: Critical
Found in Gemfile.lock by bundler-audit

Loofah XSS Vulnerability
Open

loofah (2.0.3)
Severity: Minor
Found in Gemfile.lock by bundler-audit

Nokogiri Command Injection Vulnerability via Nokogiri::CSS::Tokenizer#load_file
Open

nokogiri (1.6.6.2)
Severity: Minor
Found in Gemfile.lock by bundler-audit

Nokogiri gem, via libxslt, is affected by multiple vulnerabilities
Open

nokogiri (1.6.6.2)
Severity: Minor
Found in Gemfile.lock by bundler-audit

Possible XSS vulnerability with certain configurations of rails-html-sanitizer
Open

rails-html-sanitizer (1.0.2)
Severity: Minor
Found in Gemfile.lock by bundler-audit

Possible XSS vulnerability with certain configurations of rails-html-sanitizer
Open

rails-html-sanitizer (1.0.2)
Severity: Minor
Found in Gemfile.lock by bundler-audit

i18n Gem for Ruby lib/i18n/core_ext/hash.rb Hash#slice() Function Hash Handling DoS
Open

i18n (0.7.0)
Severity: Minor
Found in Gemfile.lock by bundler-audit

Inefficient Regular Expression Complexity in Loofah
Open

loofah (2.0.3)
Severity: Critical
Found in Gemfile.lock by bundler-audit

Moderate severity vulnerability that affects nokogiri
Open

nokogiri (1.6.6.2)
Severity: Minor
Found in Gemfile.lock by bundler-audit

Improper Restriction of XML External Entity Reference (XXE) in Nokogiri on JRuby
Open

nokogiri (1.6.6.2)
Severity: Critical
Found in Gemfile.lock by bundler-audit

Nokogiri gem, via libxml, is affected by DoS vulnerabilities
Open

nokogiri (1.6.6.2)
Severity: Minor
Found in Gemfile.lock by bundler-audit

Inefficient Regular Expression Complexity in rails-html-sanitizer
Open

rails-html-sanitizer (1.0.2)
Severity: Critical
Found in Gemfile.lock by bundler-audit

XSS vulnerability in bootstrap-sass
Open

bootstrap-sass (3.3.5.1)
Severity: Minor
Found in Gemfile.lock by bundler-audit

Nokogiri gem, via libxml, is affected by DoS vulnerabilities
Open

nokogiri (1.6.6.2)
Severity: Minor
Found in Gemfile.lock by bundler-audit

Prototype pollution attack through jQuery $.extend
Open

jquery-rails (4.0.5)
Severity: Minor
Found in Gemfile.lock by bundler-audit

Out-of-bounds Write in zlib affects Nokogiri
Open

nokogiri (1.6.6.2)
Severity: Critical
Found in Gemfile.lock by bundler-audit

Inefficient Regular Expression Complexity in Nokogiri
Open

nokogiri (1.6.6.2)
Severity: Critical
Found in Gemfile.lock by bundler-audit

Nokogiri gem contains several vulnerabilities in libxml2 and libxslt
Open

nokogiri (1.6.6.2)
Severity: Minor
Found in Gemfile.lock by bundler-audit
Severity
Category
Status
Source
Language