Known vulnerabilities in rubygem-railties (Red Hat package) - page 3
Vendor:
Red Hat Inc.
Software:
rubygem-railties (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:rubygem-railties_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
43
Public exploits:
3
Known exploited (KEV):
2
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (43)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU85884 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') CVE-2024-23829 |
CWE-444 | Medium | 6.1.7.6-1.el8sat | 30.01.2024 |
SB2024013007 SB2024013089 SB2024013101 and 14 more |
||
| #VU68307 - Improper Control of Generation of Code ('Code Injection') CVE-2022-42889 |
CWE-94 | High | 6.0.6-2.el8sat | 14.10.2022 |
SB2022101405 SB2022102709 SB2022110306 and 91 more |
||
| #VU65868 - Deserialization of Untrusted Data CVE-2022-32224 |
CWE-502 | Medium | 6.0.6-2.el8sat | 28.07.2022 |
SB2022072836 SB2023011881 SB2023050806 and 2 more |
Showing elements 41 - 60 out of 43