-
**Describe the bug**
I have a repository that uses both `pip` and `npm` to manage the dependencies of the different software modules therein. The repository is hosted on an Azure DevOps configured wi…
-
Vulnerable Library - rails-3.0.7.gem
Ruby on Rails is a full-stack web framework optimized for programmer happiness and sustainable productivity. It encourages beautiful code by favoring convention …
-
## CVE-2023-38037 - Medium Severity Vulnerability
Vulnerable Libraries - activesupport-7.0.7.gem, activesupport-6.0.3.2.gem
activesupport-7.0.7.gem
A toolkit of support libraries and Ruby core ext…
-
## CVE-2014-10077 - High Severity Vulnerability
Vulnerable Library - i18n-0.7.0.gem
New wave Internationalization support for Ruby.
Library home page: https://rubygems.org/gems/i18n-0.7.0.gem
Path t…
-
``` shell
~/tmp/selfstarter ᐅ holepicker .
Fetching list of vulnerabilities...
1 new vulnerability found in the last 7 days:
2013-03-18 (rails): http://weblog.rubyonrails.org/2013/3/18/SEC-ANN-Rails-3…
-
**Is this a request for help?**:
No
---
**Is this a BUG REPORT or a FEATURE REQUEST?** (choose one):
BUG REPORT
**Version of Anchore Engine and Anchore CLI if applicable**:
```anchor…
-
Vulnerable Library - just-the-docs-0.3.3.gem
Path to dependency file: /Gemfile.lock
Path to vulnerable library: /home/wss-scanner/.gem/ruby/2.7.0/cache/rexml-3.2.5.gem
## Vulnerabilities
| CVE…
-
**What happened**:
Scan on image that has ruby2.5-stdlib-2.5.9-150000.4.29.1.x86_64.noarch installed.
It generates vulnerability:
NAME INSTALLED FIXED-IN TYPE …
-
The current stable logstash image (docker.elastic.co/logstash/logstash:6.5.3) is vulnerable to CVE-2011-4838.
The base image (centos:7) didn't have this vulnerability.
(CVE-2011-4838 - https://…
-
Vulnerable Library - listen-3.0.8.gem
Path to dependency file: /Gemfile.lock
Path to vulnerable library: /home/wss-scanner/.gem/ruby/2.7.0/cache/ffi-1.9.14.gem
Found in HEAD commit: 4f74f4cb61ae…