Known vulnerabilities in rubygem-activerecord
Vendor:
openEuler
Software:
rubygem-activerecord
Software CPE:
cpe:2.3:o:openeuler:rubygem-activerecord:*:*:*:*:*:openeuler:*:*
Website:
https://www.openeuler.org/
Total vulnerabilities:
2
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (2)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU71305 - Improper input validation CVE-2022-44566 |
CWE-20 | Medium | 6.1.4.1-2 | 18.01.2023 |
SB2023011833 SB2023022358 SB2023022503 and 5 more |
||
| #VU71304 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2023-22794 |
CWE-89 | High | 6.1.4.1-2 | 18.01.2023 |
SB2023011833 SB20230816140 SB2023112747 and 2 more |