cve
base
Search
Products
Trending
About
Docs
Pricing
Home
/
Products
/
ruby
/
Ruby Uri
Ruby Uri vulnerabilities
1 known vulnerability affecting
ruby/uri
.
Version
All versions
Total CVEs
1
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM
1
Vulnerabilities
Page 1 of 1
CVE-2025-27221
MEDIUM
CVSS 5.3
fixed in 0.12.5
ยท
v>= 0.13.0, < 0.13.3
+1 more
2025-03-04
CVE-2025-27221 [MEDIUM] CWE-212 CVE-2025-27221: In the URI gem before 1.0.3 for Ruby, the URI handling methods (URI.join, URI#merge, URI#+) have an In the URI gem before 1.0.3 for Ruby, the URI handling methods (URI.join, URI#merge, URI#+) have an inadvertent leakage of authentication credentials because userinfo is retained even after changing the host.
nvd