Skip to main content

Vendor/product archive

rubyzip_project / rubyzip CVEs

Beta · best-effort

3 CVEs tagged to rubyzip_project / rubyzip2 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2017-5946

Published Feb 27, 2017

The Zip::File component in the rubyzip gem before 1.2.1 for Ruby has a directory traversal vulnerability. If a site allows uploading of .zip files, an attacker can upload a malici…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1