Showing 168 of 168 total issues
simple_form Gem for Ruby Incorrect Access Control for forms based on user input Open
simple_form (3.4.0)
- Read upRead up
- Exclude checks
Denial of Service Vulnerability in Rack Multipart Parsing Open
rack (1.6.4)
- Read upRead up
- Exclude checks
Possible DoS Vulnerability in Active Record PostgreSQL adapter Open
activerecord (4.2.4)
- Read upRead up
- Exclude checks
Percent-encoded cookies can be used to overwrite existing prefixed cookie names Open
rack (1.6.4)
- Read upRead up
- Exclude checks
ReDoS based DoS vulnerability in Action Dispatch Open
actionpack (4.2.4)
- Read upRead up
- Exclude checks
ReDoS based DoS vulnerability in Action Dispatch Open
actionpack (4.2.4)
- Read upRead up
- Exclude checks
Possible RCE escalation bug with Serialized Columns in Active Record Open
activerecord (4.2.4)
- Read upRead up
- Exclude checks
ReDoS based DoS vulnerability in Active Support’s underscore Open
activesupport (4.2.4)
- Read upRead up
- Exclude checks
Potentially unintended unmarshalling of user-provided objects in MemCacheStore and RedisCacheStore Open
activesupport (4.2.4)
- Read upRead up
- Exclude checks
json Gem for Ruby Unsafe Object Creation Vulnerability (additional fix) Open
json (1.8.3)
- Read upRead up
- Exclude checks
Possible Information Disclosure / Unintended Method Execution in Action Pack Open
actionpack (4.2.4)
- Read upRead up
- Exclude checks
Possible DoS Vulnerability in Action Controller Token Authentication Open
actionpack (4.2.4)
- Read upRead up
- Exclude checks