İçeriğe atla
Noroxi

activerecord project kayıtları

activerecord project üreticisine ait 3 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
1
Düzeltme kaydı olan
%100
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

3 kayıt
  • CVE-2022-32224
    40Planlayın

    A possible escalation to RCE vulnerability exists when using YAML serialized columns in Active Record < 7.0.3.1, <6.1.6.1, <6.0.5.1 and <5.2

    KritikCVSS 9,8Kavram kanıtıEPSS %2

    activerecord project · activerecord5 Ara 2022

  • CVE-2023-22794
    36İzleyin

    A vulnerability in ActiveRecord <6.0.6.1, v6.1.7.1 and v7.0.4.1 related to the sanitization of comments.

    YüksekCVSS 8,8İstismar yokEPSS %2

    activerecord project · activerecord9 Şub 2023

  • CVE-2022-44566
    30İzleyin

    A denial of service vulnerability present in ActiveRecord's PostgreSQL adapter <7.0.4.1 and <6.1.7.1.

    YüksekCVSS 7,5İstismar yokEPSS %1

    activerecord project · activerecord9 Şub 2023