Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
Simple Form
CRITICAL 9.8
CVE-2019-16676
Plataformatec Simple Form has Incorrect Access Control in file_method? in lib/simple_form/form_builder.rb, because a user-supplied string is invoked …
Fix: 5.0+
Fix from $2,300
2019-09-30
Devise
MEDIUM 5.3
CVE-2019-16109
An issue was discovered in Plataformatec Devise before 4.7.1. It confirms accounts upon receiving a request with a blank confirmation_token, if a dat…
Fix: 4.7.1+
Fix from $1,600
2019-09-08
Devise
CRITICAL 9.8
CVE-2019-5421
Plataformatec Devise version 4.5.0 and earlier, using the lockable module contains a CWE-367 vulnerability in The `Devise::Models::Lockable` class, m…
Fix: after 4.5.0
Fix from $2,300
2019-04-03
Devise
MEDIUM 6.8
CVE-2013-0233EPSS 14%
Devise gem 2.2.x before 2.2.3, 2.1.x before 2.1.3, 2.0.x before 2.0.5, and 1.5.x before 1.5.4 for Ruby, when using certain databases, does not proper…
No fix yet
Fix from $1,600
2013-04-25