Products: 4
Vulnerabilities: 6
Known Exploited: 0
1
Critical Level Threats
2
High Level Threats
3
Medium Level Threats
0
Low Level Threats
Vulnerabilities
100806040200
JanFebMarAprMayJunJulAugSepOctNovDec
Critical Level Threats
High Level Threats
Medium Level Threats
Low Level Threats
Products Security index
Actions
Items Per Page
Vulnerabilities
CVE-2016-3098
Cross-site request forgery (CSRF) vulnerability in administrate 0.1.4 and earlier allows remote attackers to hijack the user's OAuth autorization code.
Last Modified: Nov 21, 2024
Published: Aug 05, 2022
CVE-2021-23435
Open Redirect
Last Modified: Nov 21, 2024
Published: Sep 12, 2021
CVE-2020-5257
Sort order SQL injection in Administrate
Last Modified: Nov 21, 2024
Published: Mar 13, 2020
CVE-2017-0889
paperclip: SSRF vulnerability in the Paperclip::UriAdapter class
Last Modified: Apr 20, 2025
Published: Apr 21, 2017
CVE-2015-2963
The thoughtbot paperclip gem before 4.2.2 for Ruby does not consider the content-type value during media-type validation, which allows remote attackers to upload HTML documents and conduct cross-site scripting (XSS) attacks via a spoofed value, as demonstrated by image/jpeg.
Last Modified: Apr 12, 2025
Published: Jul 10, 2015
Items Per Page
