CVE-2021-41275 spree_auth_devise is an open source library which provides authentication and authorization services for use with the Spree s... 9.3 - CRITICAL 2021-11-17 2021-11-17
CVE-2021-41136 Puma is a HTTP 1.1 server for Ruby/Rack applications. Prior to versions 5.5.1 and 4.3.9, using `puma` with a proxy which forw... 3.7 - LOW 2021-10-12 2021-10-12
CVE-2021-39880 A Denial Of Service vulnerability in the apollo_upload_server Ruby gem in GitLab CE/EE version 11.11 and above allows an atta... 6.4 - MEDIUM 2021-10-05 2021-10-05
CVE-2021-32066 An issue was discovered in Ruby through 2.6.7, 2.7.x through 2.7.3, and 3.x through 3.0.1. Net::IMAP does not raise an except... 6.4 - MEDIUM 2021-08-01 2021-10-13
CVE-2021-31810 An issue was discovered in Ruby through 2.6.7, 2.7.x through 2.7.3, and 3.x through 3.0.1. A malicious FTP server can use the... 6.4 - MEDIUM 2021-07-13 2021-10-13
CVE-2021-31799 In RDoc 3.11 through 6.x before 6.3.1, as distributed with Ruby through 3.0.1, it is possible to execute arbitrary code via |... 6.4 - MEDIUM 2021-07-30 2021-10-13
CVE-2021-28966 In Ruby through 3.0 on Windows, a remote attacker can submit a crafted path when a Web application handles a parameter with T... 7.5 - HIGH 2021-07-30 2021-10-18
CVE-2021-28965 The REXML gem before 3.2.5 in Ruby before 2.6.7, 2.7.x before 2.7.3, and 3.x before 3.0.1 does not properly address XML round... 7.5 - HIGH 2021-04-21 2021-06-02
CVE-2020-25613 An issue was discovered in Ruby through 2.5.8, 2.6.x through 2.6.6, and 2.7.x through 2.7.1. WEBrick, a simple HTTP server bu... 7.5 - HIGH 2020-10-06 2021-01-15
CVE-2020-10933 An issue was discovered in Ruby 2.5.x through 2.5.7, 2.6.x through 2.6.5, and 2.7.0. If a victim calls BasicSocket#read_nonbl... 5.3 - MEDIUM 2020-05-04 2021-07-21

