Skip to main content

Vendor/product archive

ruby-lang / cgi CVEs

Beta · best-effort

5 CVEs tagged to ruby-lang / cgi1 Critical, 2 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2025-27220

Published Mar 4, 2025

In the CGI gem before 0.4.2 for Ruby, a Regular Expression Denial of Service (ReDoS) vulnerability exists in the Util#escapeElement method.

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-27219

Published Mar 4, 2025

In the CGI gem before 0.4.2 for Ruby, the CGI::Cookie.parse method in the CGI library contains a potential Denial of Service (DoS) vulnerability. The method does not impose any li…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1