Skip to main content

Vendor archive

rubyzip_project CVEs

Beta · best-effort

3 CVEs tagged to vendor rubyzip_project2 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2017-5946

Published Feb 27, 2017

The Zip::File component in the rubyzip gem before 1.2.1 for Ruby has a directory traversal vulnerability. If a site allows uploading of .zip files, an attacker can upload a malici…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1