ruby-lang records
138 published records for vendor ruby-lang.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 3 · 2.2%
- Pre-auth RCE
- 20
- With a fix record
- 89.1%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-20 Improper Input Validation14
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')8
- CWE-264 Permissions, Privileges, and Access Controls8
- CWE-400 Uncontrolled Resource Consumption8
- CWE-399 Resource Management Errors7
- CWE-1333 Inefficient Regular Expression Complexity7
The weakness classes this vendor ships most often: where to look.
CWEBug bounty scope
The product’s vendor appears in a public program. Matched by name; verify the scope text in the program.
All records
138 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
57Plan | CVE-2017-17405Proof of concept | Ruby before 2.4.3 allows Net::FTP command injection.ruby-lang · ruby · CWE-78 | High8.8 | — | 73.8% | Dec 15, 2017 |
52Plan | CVE-2008-3656Weaponized | Algorithmic complexity vulnerability in the WEBrick::HTTPUtils.split_header_value function in WEBrick::HTTP::DefaultFileHandler in WEBrick iruby-lang · ruby · CWE-399 | High7.8 | — | 70.2% | Aug 12, 2008 |
47Plan | CVE-2021-28966No exploit | In Ruby through 3.0 on Windows, a remote attacker can submit a crafted path when a Web application handles a parameter with TmpDir.ruby-lang · ruby · CWE-22 | High7.5 | — | 57.1% | Jul 30, 2021 |
42Plan | CVE-2018-16395No exploit | An issue was discovered in the OpenSSL library in Ruby before 2.3.8, 2.4.x before 2.4.5, 2.5.x before 2.5.2, and 2.6.x before 2.6.0-preview3ruby-lang · openssl | Critical9.8 | — | 10.7% | Nov 16, 2018 |
42Plan | CVE-2017-14064No exploit | Ruby through 2.2.7, 2.3.x through 2.3.4, and 2.4.x through 2.4.1 can expose arbitrary memory during a JSON.generate call.ruby-lang · ruby · CWE-119 | Critical9.8 | — | 9.4% | Aug 31, 2017 |
41Plan | CVE-2016-2337No exploit | Type confusion exists in _cancel_eval Ruby's TclTkIp class method.ruby-lang · ruby | Critical9.8 | — | 6.2% | Jan 6, 2017 |
41Plan | CVE-2017-17790No exploit | The lazy_initialize function in lib/resolv.rb in Ruby through 2.4.3 uses Kernel#open, which might allow Command Injection attacks, as demonsruby-lang · ruby · CWE-74 | Critical9.8 | — | 5.9% | Dec 20, 2017 |
41Plan | CVE-2016-2339No exploit | An exploitable heap overflow vulnerability exists in the Fiddle::Function.new "initialize" function functionality of Ruby.ruby-lang · ruby · CWE-119 | Critical9.8 | — | 5.2% | Jan 6, 2017 |
41Plan | CVE-2008-2663No exploit | Multiple integer overflows in the rb_ary_store function in Ruby 1.8.4 and earlier, 1.8.5 before 1.8.5-p231, 1.8.6 before 1.8.6-p230, and 1.8ruby-lang · ruby · CWE-190 | Critical10.0 | — | 4.5% | Jun 24, 2008 |
41Plan | CVE-2008-2662No exploit | Multiple integer overflows in the rb_str_buf_append function in Ruby 1.8.4 and earlier, 1.8.5 before 1.8.5-p231, 1.8.6 before 1.8.6-p230, 1.ruby-lang · ruby · CWE-189 | Critical10.0 | — | 4.3% | Jun 24, 2008 |
41Plan | CVE-2009-4124No exploit | Heap-based buffer overflow in the rb_str_justify function in string.c in Ruby 1.9.1 before 1.9.1-p376 allows context-dependent attackers to ruby-lang · ruby · CWE-119 | Critical10.0 | — | 3.9% | Dec 11, 2009 |
41Plan | CVE-2013-1948No exploit | converter.rb in the md2pdf gem 0.0.1 for Ruby allows context-dependent attackers to execute arbitrary commands via shell metacharacters in arob westgeest · md2pdf | Critical10.0 | — | 2.2% | Apr 25, 2013 |
40Plan | CVE-2017-10784No exploit | The Basic authentication code in WEBrick library in Ruby before 2.2.8, 2.3.x before 2.3.5, and 2.4.x through 2.4.1 allows remote attackers truby-lang · ruby · CWE-287 | High8.8 | — | 16.4% | Sep 19, 2017 |
40Plan | CVE-2021-41816No exploit | CGI.escape_html in Ruby before 2.7.5 and 3.x before 3.0.3 has an integer overflow and resultant buffer overflow via a long string on platforruby-lang · cgi · CWE-190 | Critical9.8 | — | 4.8% | Feb 6, 2022 |
40Plan | CVE-2016-2338Proof of concept | An exploitable heap overflow vulnerability exists in the Psych::Emitter start_document function of Ruby.ruby-lang · ruby · CWE-787 | Critical9.8 | — | 4.7% | Sep 28, 2022 |
40Plan | CVE-2016-2336No exploit | Type confusion exists in two methods of Ruby's WIN32OLE class, ole_invoke and ole_query_interface.ruby-lang · ruby | Critical9.8 | — | 3.3% | Jan 6, 2017 |
40Plan | CVE-2017-9225No exploit | An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod in Ruby through 2.4.1 and mbstring in PHP through 7.1.5.php · php · CWE-787 | Critical9.8 | — | 3.1% | May 24, 2017 |
40Plan | CVE-2022-28738No exploit | A double free was found in the Regexp compiler in Ruby 3.x before 3.0.4 and 3.1.x before 3.1.2.ruby-lang · ruby · CWE-415 | Critical9.8 | — | 2.9% | May 9, 2022 |
40Plan | CVE-2011-4121No exploit | The OpenSSL extension of Ruby (Git trunk) versions after 2011-09-01 up to 2011-11-03 always generated an exponent value of '1' to be used foruby-lang · ruby · CWE-326 | Critical9.8 | — | 2.5% | Nov 26, 2019 |
40Plan | CVE-2024-27280No exploit | A buffer-overread issue was discovered in StringIO 3.0.1, as distributed in Ruby 3.0.x through 3.0.6 and 3.1.x through 3.1.4.CWE-120 | Critical9.8 | — | 2.4% | May 14, 2024 |
40Plan | CVE-2017-11465No exploit | The parser_yyerror function in the UTF-8 parser in Ruby 2.4.1 allows attackers to cause a denial of service (invalid write or read) or possiruby-lang · ruby · CWE-125 | Critical9.8 | — | 1.7% | Jul 19, 2017 |
39Monitor | CVE-2018-8780No exploit | In Ruby before 2.2.10, 2.3.x before 2.3.7, 2.4.x before 2.4.4, 2.5.x before 2.5.1, and 2.6.0-preview1, the Dir.open, Dir.new, Dir.entries anruby-lang · ruby · CWE-22 | Critical9.1 | — | 9.7% | Apr 3, 2018 |
39Monitor | CVE-2017-0898No exploit | Ruby before 2.4.2, 2.3.5, and 2.2.8 is vulnerable to a malicious format string which contains a precious specifier (*) with a huge minus valruby-lang · ruby · CWE-134 | Critical9.1 | — | 9.7% | Sep 15, 2017 |
38Monitor | CVE-2013-1933No exploit | The extract_from_ocr function in lib/docsplit/text_extractor.rb in the Karteek Docsplit (karteek-docsplit) gem 0.5.4 for Ruby allows contextdocumentcloud · karteek-docsplit · CWE-78 | Critical9.3 | — | 1.8% | Apr 25, 2013 |
37Monitor | CVE-2013-4164Weaponized | Heap-based buffer overflow in Ruby 1.8, 1.9 before 1.9.3-p484, 2.0 before 2.0.0-p353, 2.1 before 2.1.0 preview2, and trunk before revision 4ruby-lang · ruby · CWE-119 | Medium6.8 | — | 35.0% | Nov 23, 2013 |
- CVE-2017-1740557Plan
Ruby before 2.4.3 allows Net::FTP command injection.
HighCVSS 8.8Proof of conceptEPSS 74%ruby-lang · rubyDec 15, 2017
- CVE-2008-365652Plan
Algorithmic complexity vulnerability in the WEBrick::HTTPUtils.split_header_value function in WEBrick::HTTP::DefaultFileHandler in WEBrick i
HighCVSS 7.8WeaponizedEPSS 70%ruby-lang · rubyAug 12, 2008
- CVE-2021-2896647Plan
In Ruby through 3.0 on Windows, a remote attacker can submit a crafted path when a Web application handles a parameter with TmpDir.
HighCVSS 7.5No exploitEPSS 57%ruby-lang · rubyJul 30, 2021
- CVE-2018-1639542Plan
An issue was discovered in the OpenSSL library in Ruby before 2.3.8, 2.4.x before 2.4.5, 2.5.x before 2.5.2, and 2.6.x before 2.6.0-preview3
CriticalCVSS 9.8No exploitEPSS 11%ruby-lang · opensslNov 16, 2018
- CVE-2017-1406442Plan
Ruby through 2.2.7, 2.3.x through 2.3.4, and 2.4.x through 2.4.1 can expose arbitrary memory during a JSON.generate call.
CriticalCVSS 9.8No exploitEPSS 9%ruby-lang · rubyAug 31, 2017
- CVE-2016-233741Plan
Type confusion exists in _cancel_eval Ruby's TclTkIp class method.
CriticalCVSS 9.8No exploitEPSS 6%ruby-lang · rubyJan 6, 2017
- CVE-2017-1779041Plan
The lazy_initialize function in lib/resolv.rb in Ruby through 2.4.3 uses Kernel#open, which might allow Command Injection attacks, as demons
CriticalCVSS 9.8No exploitEPSS 6%ruby-lang · rubyDec 20, 2017
- CVE-2016-233941Plan
An exploitable heap overflow vulnerability exists in the Fiddle::Function.new "initialize" function functionality of Ruby.
CriticalCVSS 9.8No exploitEPSS 5%ruby-lang · rubyJan 6, 2017
- CVE-2008-266341Plan
Multiple integer overflows in the rb_ary_store function in Ruby 1.8.4 and earlier, 1.8.5 before 1.8.5-p231, 1.8.6 before 1.8.6-p230, and 1.8
CriticalCVSS 10.0No exploitEPSS 4%ruby-lang · rubyJun 24, 2008
- CVE-2008-266241Plan
Multiple integer overflows in the rb_str_buf_append function in Ruby 1.8.4 and earlier, 1.8.5 before 1.8.5-p231, 1.8.6 before 1.8.6-p230, 1.
CriticalCVSS 10.0No exploitEPSS 4%ruby-lang · rubyJun 24, 2008
- CVE-2009-412441Plan
Heap-based buffer overflow in the rb_str_justify function in string.c in Ruby 1.9.1 before 1.9.1-p376 allows context-dependent attackers to
CriticalCVSS 10.0No exploitEPSS 4%ruby-lang · rubyDec 11, 2009
- CVE-2013-194841Plan
converter.rb in the md2pdf gem 0.0.1 for Ruby allows context-dependent attackers to execute arbitrary commands via shell metacharacters in a
CriticalCVSS 10.0No exploitEPSS 2%rob westgeest · md2pdfApr 25, 2013
- CVE-2017-1078440Plan
The Basic authentication code in WEBrick library in Ruby before 2.2.8, 2.3.x before 2.3.5, and 2.4.x through 2.4.1 allows remote attackers t
HighCVSS 8.8No exploitEPSS 16%ruby-lang · rubySep 19, 2017
- CVE-2021-4181640Plan
CGI.escape_html in Ruby before 2.7.5 and 3.x before 3.0.3 has an integer overflow and resultant buffer overflow via a long string on platfor
CriticalCVSS 9.8No exploitEPSS 5%ruby-lang · cgiFeb 6, 2022
- CVE-2016-233840Plan
An exploitable heap overflow vulnerability exists in the Psych::Emitter start_document function of Ruby.
CriticalCVSS 9.8Proof of conceptEPSS 5%ruby-lang · rubySep 28, 2022
- CVE-2016-233640Plan
Type confusion exists in two methods of Ruby's WIN32OLE class, ole_invoke and ole_query_interface.
CriticalCVSS 9.8No exploitEPSS 3%ruby-lang · rubyJan 6, 2017
- CVE-2017-922540Plan
An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod in Ruby through 2.4.1 and mbstring in PHP through 7.1.5.
CriticalCVSS 9.8No exploitEPSS 3%php · phpMay 24, 2017
- CVE-2022-2873840Plan
A double free was found in the Regexp compiler in Ruby 3.x before 3.0.4 and 3.1.x before 3.1.2.
CriticalCVSS 9.8No exploitEPSS 3%ruby-lang · rubyMay 9, 2022
- CVE-2011-412140Plan
The OpenSSL extension of Ruby (Git trunk) versions after 2011-09-01 up to 2011-11-03 always generated an exponent value of '1' to be used fo
CriticalCVSS 9.8No exploitEPSS 3%ruby-lang · rubyNov 26, 2019
- CVE-2024-2728040Plan
A buffer-overread issue was discovered in StringIO 3.0.1, as distributed in Ruby 3.0.x through 3.0.6 and 3.1.x through 3.1.4.
CriticalCVSS 9.8No exploitEPSS 2%May 14, 2024
- CVE-2017-1146540Plan
The parser_yyerror function in the UTF-8 parser in Ruby 2.4.1 allows attackers to cause a denial of service (invalid write or read) or possi
CriticalCVSS 9.8No exploitEPSS 2%ruby-lang · rubyJul 19, 2017
- CVE-2018-878039Monitor
In Ruby before 2.2.10, 2.3.x before 2.3.7, 2.4.x before 2.4.4, 2.5.x before 2.5.1, and 2.6.0-preview1, the Dir.open, Dir.new, Dir.entries an
CriticalCVSS 9.1No exploitEPSS 10%ruby-lang · rubyApr 3, 2018
- CVE-2017-089839Monitor
Ruby before 2.4.2, 2.3.5, and 2.2.8 is vulnerable to a malicious format string which contains a precious specifier (*) with a huge minus val
CriticalCVSS 9.1No exploitEPSS 10%ruby-lang · rubySep 15, 2017
- CVE-2013-193338Monitor
The extract_from_ocr function in lib/docsplit/text_extractor.rb in the Karteek Docsplit (karteek-docsplit) gem 0.5.4 for Ruby allows context
CriticalCVSS 9.3No exploitEPSS 2%documentcloud · karteek-docsplitApr 25, 2013
- CVE-2013-416437Monitor
Heap-based buffer overflow in Ruby 1.8, 1.9 before 1.9.3-p484, 2.0 before 2.0.0-p353, 2.1 before 2.1.0 preview2, and trunk before revision 4
MediumCVSS 6.8WeaponizedEPSS 35%ruby-lang · rubyNov 23, 2013