We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
MEDIUM
cgi
0.4.1
~> 0.3.5.1, ~> 0.3.7, >= 0.4.2
2025-03-04T00:15:31.693Z
2025-03-04T10:20:33.274086718Z
public.ecr.aws/lambda/ruby:latest
public.ecr.aws/lambda/ruby@sha256:50721a5c1f2ae6d6755c6ff71a313e89ea27301eeb2f0e5fa7cbe86bc4a755e0
public.ecr.aws/lambda/ruby:3.3
In the CGI gem before 0.4.2 for Ruby, a Regular Expression Denial of Service (ReDoS) vulnerability exists in the Util#escapeElement method.
The text was updated successfully, but these errors were encountered:
No branches or pull requests
CVE Details
MEDIUM
cgi
0.4.1
~> 0.3.5.1, ~> 0.3.7, >= 0.4.2
2025-03-04T00:15:31.693Z
2025-03-04T10:20:33.274086718Z
Affected Docker Images
public.ecr.aws/lambda/ruby:latest
public.ecr.aws/lambda/ruby@sha256:50721a5c1f2ae6d6755c6ff71a313e89ea27301eeb2f0e5fa7cbe86bc4a755e0
public.ecr.aws/lambda/ruby:3.3
public.ecr.aws/lambda/ruby@sha256:50721a5c1f2ae6d6755c6ff71a313e89ea27301eeb2f0e5fa7cbe86bc4a755e0
Description
Remediation Steps
cgi
from version0.4.1
to~> 0.3.5.1, ~> 0.3.7, >= 0.4.2
.About this issue
The text was updated successfully, but these errors were encountered: