rubyforge records
2 published records for vendor rubyforge.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Attack profile
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
38Monitor | CVE-2007-0469No exploit | The extract_files function in installer.rb in RubyGems before 0.9.1 does not check whether files exist before overwriting them, which allowsrubyforge · rubygems | Critical9.3 | — | 4.9% | Jan 23, 2007 |
8Monitor | CVE-2011-0995No exploit | The sqlite3-ruby gem in the rubygem-sqlite3 package before 1.2.4-0.5.1 in SUSE Linux Enterprise (SLE) 11 SP1 uses weak permissions for unsperubyforge · rubygem-sqlite3 · CWE-264 | Low2.1 | — | 0.4% | May 13, 2011 |
- CVE-2007-046938Monitor
The extract_files function in installer.rb in RubyGems before 0.9.1 does not check whether files exist before overwriting them, which allows
CriticalCVSS 9.3No exploitEPSS 5%rubyforge · rubygemsJan 23, 2007
- CVE-2011-09958Monitor
The sqlite3-ruby gem in the rubygem-sqlite3 package before 1.2.4-0.5.1 in SUSE Linux Enterprise (SLE) 11 SP1 uses weak permissions for unspe
LowCVSS 2.1No exploitEPSS 0%rubyforge · rubygem-sqlite3May 13, 2011