VendorsRubyGemsrubygems.organy version
Vulnerabilities

RubyGems Rubygems.org any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2022-29176
Unauthorized gem takeover for some gems on rubygems.org
Published 2022-05-05 · Modified
9.9EPSS 0.019
CVE-2024-21654
rubygems.org MFA Bypass through password reset function could allow account takeover
Published 2024-01-12 · Modified
9.8EPSS 0.005
CVE-2022-29218
Unauthorized takeover for new versions of some platform-specific gems
Published 2022-05-12 · Modified
7.7EPSS 0.013
CVE-2023-40165
Unauthorized gem replacement for full names ending in numbers on rubygems.org
Published 2023-08-17 · Modified
7.5EPSS 0.005