Known Vulnerabilities for Active Storage by Rubyonrails
Listed below are 1 of the newest known vulnerabilities associated with "Active Storage" by "Rubyonrails".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-100288 json | Cleartext storage of sensitive information in the database in Devolutions Server 2026.3.5.0 and earlier allows an attacker w... | Not Provided | 2026-09-29 | 2026-09-30 |
| CVE-2026-90534 json | Flowise is a low-code platform for building LLM applications. In versions up to and including 3.1.3, the POST /api/v1/node-lo... | Not Provided | 2026-09-12 | 2026-09-14 |
| CVE-2026-90313 json | In the Linux kernel, the following vulnerability has been resolved: bpf, cgroup: Fix invalid storage access after __cgroup_b... | Not Provided | 2026-09-17 | 2026-09-17 |
| CVE-2026-90031 json | In the Linux kernel, the following vulnerability has been resolved: usb-storage: ene_ub6250: fix race between scan work and ... | Not Provided | 2026-09-16 | 2026-09-17 |
| CVE-2026-89834 json | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to migrate all curseg types during free_segmen... | Not Provided | 2026-09-16 | 2026-09-16 |
| CVE-2026-82723 json | Insertion of Sensitive Information into Log File vulnerability in team-alembic AshAuthentication allows disclosure of user pa... | Not Provided | 2026-09-17 | 2026-09-17 |
| CVE-2026-71310 json | rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1.75.0... | Not Provided | 2026-08-05 | 2026-08-31 |
| CVE-2026-66066 json | Action Pack is a framework for handling and responding to web requests. In versions prior to 7.2.3.2, 8.0.5.1 and 8.1.3.1, Ac... | Not Provided | 2026-07-30 | 2026-08-05 |
| CVE-2026-62348 json | TDengine is a time-series database optimized for Internet of Things devices. Prior to 3.4.1.15, TDengine Enterprise allowed a... | Not Provided | 2026-07-15 | 2026-07-16 |
| CVE-2026-61525 json | Zammad is a web based open source helpdesk/customer support system. In 7.0.2 and 7.1.0, zammad's session management for webso... | Not Provided | 2026-09-25 | 2026-09-25 |