jruby kayıtları
jruby üreticisine ait 5 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-295 Improper Certificate Validation2
- CWE-310 Cryptographic Issues1
- CWE-400 Uncontrolled Resource Consumption1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
5 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
30İzleyin | CVE-2009-4123İstismar yok | The jruby-openssl gem before 0.6 for JRuby mishandles SSL certificate validation.jruby · jruby-openssl · CWE-295 | Yüksek7,5 | — | %0,6 | 12 Ara 2023 |
22İzleyin | CVE-2025-46551İstismar yok | JRuby-OpenSSL has hostname verification disabled by defaultjruby · jruby · CWE-295 | Orta5,7 | — | %0,2 | 7 May 2025 |
21İzleyin | CVE-2011-4838İstismar yok | JRuby before 1.6.5.1 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-depenjruby · jruby · CWE-400 | Orta5,0 | — | %4,2 | 29 Ara 2011 |
21İzleyin | CVE-2012-5370İstismar yok | JRuby computes hash values without properly restricting the ability to trigger hash collisions predictably, which allows context-dependent ajruby · jruby · CWE-310 | Orta5,0 | — | %2,2 | 28 Kas 2012 |
18İzleyin | CVE-2010-1330İstismar yok | The regular expression engine in JRuby before 1.4.1, when $KCODE is set to 'u', does not properly handle characters immediately after a UTF-jruby · jruby · CWE-79 | Orta4,3 | — | %2,2 | 23 Kas 2012 |
- CVE-2009-412330İzleyin
The jruby-openssl gem before 0.6 for JRuby mishandles SSL certificate validation.
YüksekCVSS 7,5İstismar yokEPSS %1jruby · jruby-openssl12 Ara 2023
- CVE-2025-4655122İzleyin
JRuby-OpenSSL has hostname verification disabled by default
OrtaCVSS 5,7İstismar yokEPSS %0jruby · jruby7 May 2025
- CVE-2011-483821İzleyin
JRuby before 1.6.5.1 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-depen
OrtaCVSS 5,0İstismar yokEPSS %4jruby · jruby29 Ara 2011
- CVE-2012-537021İzleyin
JRuby computes hash values without properly restricting the ability to trigger hash collisions predictably, which allows context-dependent a
OrtaCVSS 5,0İstismar yokEPSS %2jruby · jruby28 Kas 2012
- CVE-2010-133018İzleyin
The regular expression engine in JRuby before 1.4.1, when $KCODE is set to 'u', does not properly handle characters immediately after a UTF-
OrtaCVSS 4,3İstismar yokEPSS %2jruby · jruby23 Kas 2012