Skip to main content

Vendor archive

safemode_project CVEs

Beta · best-effort

2 CVEs tagged to vendor safemode_project1 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2017-7540

Published Jul 21, 2017

rubygem-safemode, as used in Foreman, versions 1.3.2 and earlier are vulnerable to bypassing safe mode limitations via special Ruby syntax. This can lead to deletion of objects fo…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2016-3693

Published May 20, 2016

The Safemode gem before 1.2.4 for Ruby, when initialized with a delegate object that is a Rails controller, allows context-dependent attackers to obtain sensitive information via…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1