RedCloth
Textile parser for Ruby.
Activity
- Latest release
- 2y ago
- Total releases
- 30
- Cadence
- ~29 days
- Last 12 months
- 0
Details
- License
- MIT
- First release
- Nov 09, 2004
| Version | Released | |
|---|---|---|
4.3.4
patch
| ||
4.3.3
patch
| ||
4.3.2
patch
1 CVE
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev | ||
4.3.1
patch
1 CVE
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev | ||
4.3.0
minor
1 CVE
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev | ||
4.2.9
patch
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
4.2.8
patch
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
4.2.7
patch
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
4.2.4
patch
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
4.2.5
patch
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
4.2.4.pre1
pre
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
4.2.4.pre2
pre
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
4.2.4.pre3
pre
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
4.2.3
patch
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
4.2.2
patch
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
4.2.1
patch
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
4.2.0
minor
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
4.1.9
patch
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
4.1.1
patch
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
4.1.0
minor
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
4.0.4
patch
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
4.0.3
patch
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
4.0.2
patch
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
4.0.1
patch
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
4.0.0
major
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
3.0.4
patch
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
3.0.3
patch
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
3.0.2
patch
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
3.0.1
patch
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev | ||
3.0.0
initial
2 CVEs
CVE-2023-31606
GHSA-qcm3-vfq5-wfr2
Jun 06, 2023
RedCloth Regular Expression Denial of Service issue
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
A Regular Expression Denial of Service (ReDoS) issue was discovered in the Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 16 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
4.3.0
4.3.1
4.3.2
Fixed in
4.3.3
References
Updated Feb 16, 2024 · Source: OSV.dev
CVE-2012-6684
GHSA-r23g-3qw4-gfh2
Oct 24, 2017
RedCloth Cross-site Scripting vulnerability
Medium
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a Affected versions
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.0.0
4.0.1
4.0.2
4.0.3
4.0.4
4.1.0
4.1.1
+ 13 more Show less
4.1.9
4.2.0
4.2.1
4.2.2
4.2.3
4.2.4
4.2.4.pre1
4.2.4.pre2
4.2.4.pre3
4.2.5
4.2.7
4.2.8
4.2.9
Fixed in
4.3.0
References
Updated Dec 03, 2024 · Source: OSV.dev |