Skip to main content

Vendor/product archive

ruby-lang / webrick CVEs

Beta · best-effort

5 CVEs tagged to ruby-lang / webrick0 Critical, 2 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2025-6442

Published Jun 25, 2025

Ruby WEBrick read_header HTTP Request Smuggling Vulnerability. This vulnerability allows remote attackers to smuggle arbitrary HTTP requests on affected installations of Ruby WEBr…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-11879

Published May 10, 2019

The WEBrick gem 1.4.2 for Ruby allows directory traversal if the attacker once had local access to create a symlink to a location outside of the web root directory. NOTE: The vend…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-4492

Published Jan 13, 2010

WEBrick 1.3.1 in Ruby 1.8.6 through patchlevel 383, 1.8.7 through patchlevel 248, 1.8.8dev, 1.9.1 through patchlevel 376, and 1.9.2dev writes data to a log file without sanitizing…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1