rubygems-update
A package (also known as a library) contains a set of functionality that can be invoked by a Ruby program, such as reading and parsing an XML file. We call these packages 'gems' and RubyGems is a tool to install, create, manage and load these packages in your Ruby environment. RubyGems is also a client for RubyGems.org, a public repository of Gems that allows you to publish a Gem that can be shared and used by other developers. See our guide on publishing a Gem at guides.rubygems.org
Security Advisories for rubygems-update in rubygems
Moderate
over 3 years ago
RubyGems Path Traversal vulnerability
maven, rubygems
org.jruby:jruby-stdlib, rubygems-update
Moderate
over 3 years ago
RubyGems Regular Expression Denial of Service vulnerability
rubygems
rubygems-update
Critical
over 3 years ago
RubyGems Improper Verification of Cryptographic Signature vulnerability
maven, rubygems
org.jruby:jruby-stdlib, rubygems-update
High
over 3 years ago
RubyGems Deserialization of Untrusted Data vulnerability
maven, rubygems
org.jruby:jruby-stdlib, rubygems-update
Moderate
over 3 years ago
RubyGems Cross-site Scripting vulnerability
maven, rubygems
org.jruby:jruby-stdlib, rubygems-update
Moderate
over 3 years ago
RubyGems Improper Input Validation vulnerability
maven, rubygems
org.jruby:jruby-stdlib, rubygems-update
High
over 3 years ago
RubyGems Infinite Loop vulnerability
maven, rubygems
org.jruby:jruby-stdlib, rubygems-update
High
over 3 years ago
RubyGems may allow a maliciously crafted gem to overwrite files
rubygems
rubygems-update
Critical
over 3 years ago
RubyGems vulnerable to Deserialization of Untrusted Data
rubygems
rubygems-update
High
over 3 years ago
RubyGems Link Following vulnerability
maven, rubygems
org.jruby:jruby-stdlib, rubygems-update
High
over 6 years ago
RubyGems Delete directory using symlink when decompressing tar
rubygems
rubygems-update
High
over 6 years ago
RubyGems Escape sequence injection vulnerability in verbose
rubygems
rubygems-update
High
over 6 years ago
RubyGems Escape sequence injection vulnerability in gem owner
rubygems
rubygems-update
High
over 6 years ago
RubyGems Escape sequence injection vulnerability in api response handling
rubygems
rubygems-update