Known vulnerabilities in puma (Debian package)

Vendor: Debian
Software CPE: cpe:2.3:o:debian:puma_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 3
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.8

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting puma (Debian package) puma (Debian package) is affected by 3 known vulnerabilities: 3 medium Critical High Medium Low

Vulnerabilities (3)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU63635 - Exposure of sensitive information to an unauthorized actor
CVE-2022-23634
CWE-200 Medium
No
No
4.3.8-1+deb11u2 25.05.2022 SB2022052518
SB2022052603
SB2024030762
and 10 more
#VU63634 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2021-41136
CWE-444 Medium
No
No
4.3.8-1+deb11u2 25.05.2022 SB2022052517
SB2022052603
SB2021111919
and 4 more
#VU61798 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-24790
CWE-444 Medium
No
No
4.3.8-1+deb11u2 01.04.2022 SB2022040112
SB2022052603
SB2022092241
and 12 more