V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
Filters

All vulnerabilities

26 / 26
Product: redhat:ruby193_rubygem_activesupport×Clear all
7.5
CVE-2013-0156DEB
active_support/core_ext/hash/conversions.rb in Ruby on Rails before 2.3.15, 3.0.x before 3.0.19…
2013-01-01
EPSS99.4%
pct 99
7.5
CVE-2016-0752DEB KEV
Directory traversal vulnerability in Action View in Ruby on Rails before 3.2.22.1, 4.0.x and 4.…
2016-01-01KEV
EPSS95.5%
pct 99
7.3
CVE-2016-2098DEB
Action Pack in Ruby on Rails before 3.2.22.2, 4.x before 4.1.14.2, and 4.2.x before 4.2.5.2 all…
2016-01-01Pre-auth
EPSS81.4%
pct 99
5.0
CVE-2013-1899DEB
Argument injection vulnerability in PostgreSQL 9.2.x before 9.2.4, 9.1.x before 9.1.9, and 9.0.…
2013-01-01
EPSS54.3%
pct 98
7.5
CVE-2014-0130DEB KEV
Directory traversal vulnerability in actionpack/lib/abstract_controller/base.rb in the implicit…
2014-01-01KEV
EPSS53.7%
pct 98
5.0
CVE-2013-6414DEB
actionpack/lib/action_view/lookup_context.rb in Action View in Ruby on Rails 3.x before 3.2.16 …
2013-01-01
EPSS20.7%
pct 97
7.5
CVE-2013-2050CVE
SQL injection vulnerability in the miq_policy controller in Red Hat CloudForms 2.0 Management E…
2013-01-01
EPSS16.1%
pct 96
7.5
CVE-2016-0751DEB
actionpack/lib/action_dispatch/http/mime_type.rb in Action Pack in Ruby on Rails before 3.2.22.…
2016-01-01Pre-auth
EPSS9.7%
pct 94
3.7
CVE-2015-7576DEB
The http_basic_authenticate_with method in actionpack/lib/action_controller/metal/http_authenti…
2015-01-01Pre-auth
EPSS4.9%
pct 90
4.3
CVE-2013-1900DEB
PostgreSQL 9.2.x before 9.2.4, 9.1.x before 9.1.9, 9.0.x before 9.0.13, and 8.4.x before 8.4.17…
2013-01-01
EPSS4.5%
pct 90
5.3
CVE-2016-2097DEB
Directory traversal vulnerability in Action View in Ruby on Rails before 3.2.22.2 and 4.x befor…
2016-01-01Pre-auth
EPSS4.4%
pct 90
5.3
CVE-2015-7577DEB
activerecord/lib/active_record/nested_attributes.rb in Active Record in Ruby on Rails 3.1.x and…
2015-01-01Pre-auth
EPSS4.2%
pct 89
5.0
CVE-2013-0256DEB
darkfish.js in RDoc 2.3.0 through 3.12 and 4.x before 4.0.0.preview2.1, as used in Ruby, does n…
2013-01-01
EPSS3.6%
pct 87
4.3
CVE-2013-1854DEB
The Active Record component in Ruby on Rails 2.3.x before 2.3.18, 3.1.x before 3.1.12, and 3.2.…
2013-01-01
EPSS3.4%
pct 87
5.0
CVE-2013-1901DEB
PostgreSQL 9.2.x before 9.2.4 and 9.1.x before 9.1.9 does not properly check REPLICATION privil…
2013-01-01
EPSS3.3%
pct 86
4.3
CVE-2013-6415DEB
Cross-site scripting (XSS) vulnerability in the number_to_currency helper in actionpack/lib/act…
2013-01-01
EPSS3.2%
pct 86
4.3
CVE-2013-1855DEB
The sanitize_css method in lib/action_controller/vendor/html-scanner/html/sanitizer.rb in the A…
2013-01-01
EPSS2.6%
pct 83
4.3
CVE-2013-4491DEB
Cross-site scripting (XSS) vulnerability in actionpack/lib/action_view/helpers/translation_help…
2013-01-01
EPSS2.2%
pct 80
4.3
CVE-2013-1857DEB
The sanitize helper in lib/action_controller/vendor/html-scanner/html/sanitizer.rb in the Actio…
2013-01-01
EPSS1.9%
pct 76
6.0
CVE-2014-3642CVE
vmdb/app/controllers/application_controller/performance.rb in Red Hat CloudForms 3.1 Management…
2014-01-01
EPSS1.3%
pct 66
8.5
CVE-2013-4172CVE
The Red Hat CloudForms Management Engine 5.1 allow remote administrators to execute arbitrary R…
2013-01-01
EPSS1.3%
pct 65
4.3
CVE-2014-0140CVE
Red Hat CloudForms 3.1 Management Engine (CFME) before 5.3 allows remote authenticated users to…
2014-01-01
EPSS1.2%
pct 65
7.5
CVE-2013-2049CVE
Red Hat CloudForms 2 Management Engine (CFME) allows remote attackers to conduct session tamper…
2013-01-01Pre-auth
EPSS1.2%
pct 64
8.8
CVE-2013-0185CVE
Cross-site request forgery (CSRF) vulnerability in ManageIQ Enterprise Virtualization Manager (…
2013-01-01Pre-auth
EPSS0.7%
pct 49
6.5
CVE-2013-0196CVE
A CSRF issue was found in OpenShift Enterprise 1.2. The web console is using 'Basic authenticat…
2013-01-01Pre-auth
EPSS0.4%
pct 34
5.5
CVE-2013-4423CVE
CloudForms stores user passwords in recoverable format
2013-01-01
EPSS0.3%
pct 22
Select a vulnerability on the left to open the preview.