Skip to main content

Vendor/product archive

janrain / ruby-openid CVEs

Beta · best-effort

1 CVEs tagged to janrain / ruby-openid0 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2013-1812

Published Dec 12, 2013

The ruby-openid gem before 2.2.2 for Ruby allows remote OpenID providers to cause a denial of service (CPU consumption) via (1) a large XRDS document or (2) an XML Entity Expansio…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-1 of 1 CVEsPage 1 of 1