cve
base
Search
Products
Trending
About
Docs
Pricing
Home
/
Products
/
ruby-lang
/
Ruby-Lang Time
Ruby-Lang Time vulnerabilities
1 known vulnerability affecting
ruby-lang/time
.
Version
All versions
Total CVEs
1
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM
1
Vulnerabilities
Page 1 of 1
CVE-2023-28756
MEDIUM
CVSS 5.3
v0.1.0
ยท
v0.2.1
2023-03-31
CVE-2023-28756 [MEDIUM] CWE-1333 CVE-2023-28756: A ReDoS issue was discovered in the Time component through 0.2.1 in Ruby through 3.2.1. The Time par A ReDoS issue was discovered in the Time component through 0.2.1 in Ruby through 3.2.1. The Time parser mishandles invalid URLs that have specific characters. It causes an increase in execution time for parsing strings to Time objects. The fixed versions are 0.1.1 and 0.2.2.
nvd