<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T13:32:19.612223+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2021-01345</id>
    <title>bdu:2021-01345</title>
    <updated>2026-10-03T13:32:19.806224+00:00</updated>
    <content>bdu:2021-01345</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2021-01345"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/brew-travis-cve-2020-8165</id>
    <title>BREW-travis-CVE-2020-8165 — ActiveSupport potentially unintended unmarshalling of user-provided objects in MemCacheStore and RedisCacheStore</title>
    <updated>2026-10-03T13:32:19.806263+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Homebrew: travis</p>
<p>In ActiveSupport, there is potentially unexpected behaviour in the MemCacheStore and RedisCacheStore where, when
untrusted user input is written to the cache store using the `raw: true` parameter, re-reading the result
from the cache can evaluate the user input as a Marshalled object instead of plain text. Vulnerable code looks like:</p>
<p>```
data = cache.fetch("demo", raw: true) { untrusted_string }
```
Versions Affected:  rails &lt; 5.2.5, rails &lt; 6.0.4
Not affected:       Applications not using MemCacheStore or RedisCacheStore. Applications that do not use the `raw` option when storing untrusted user input.
Fixed Versions:     rails &gt;= 5.2.4.3, rails &gt;= 6.0.3.1
  
Impact
------
Unmarshalling of untrusted user input can have impact up to and including RCE. At a minimum,
this vulnerability allows an attacker to inject untrusted Ruby objects into a web application.
In addition to upgrading to the latest versions of Rails, developers should ensure that whenever
they are calling `Rails.cache.fetch` they are using consistent values of the `raw` parameter for both
reading and writing, especially in the case of the RedisCacheStore which does not, prior to these changes,
detect if data was serialized using the raw option upon deserialization.</p>
<p>Workarounds
-----------
It is recommended that application developers apply the suggested patch or upgrade to the latest release as
soon as possible. If this is not possible, we recommend ensuring that all user-provided strings cached using
the `ra…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/brew-travis-cve-2020-8165"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2020-avi-301</id>
    <title>certfr-2020-avi-301 — De multiples vulnérabilités ont été découvertes dans Ruby on Rails.
Elles permettent à un attaquant de provoquer un pro…</title>
    <updated>2026-10-03T13:32:19.806315+00:00</updated>
    <content>certfr-2020-avi-301</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2020-avi-301"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2020-39016</id>
    <title>cnvd-2020-39016</title>
    <updated>2026-10-03T13:32:19.806332+00:00</updated>
    <content>cnvd-2020-39016</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2020-39016"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-238774</id>
    <title>EUVD-2026-238774</title>
    <updated>2026-10-03T13:32:19.806344+00:00</updated>
    <content>EUVD-2026-238774</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-238774"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-8165</id>
    <title>fkie_cve-2020-8165</title>
    <updated>2026-10-03T13:32:19.806354+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A deserialization of untrusted data vulnernerability exists in rails &lt; 5.2.4.3, rails &lt; 6.0.3.1 that can allow an attacker to unmarshal user-provided objects in MemCacheStore and RedisCacheStore potentially resulting in an RCE.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-8165"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-2p68-f74v-9wc6</id>
    <title>GHSA-2p68-f74v-9wc6 — ActiveSupport potentially unintended unmarshalling of user-provided objects in MemCacheStore and RedisCacheStore</title>
    <updated>2026-10-03T13:32:19.806375+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> RubyGems: activesupport</p>
<p>In ActiveSupport, there is potentially unexpected behaviour in the MemCacheStore and RedisCacheStore where, when
untrusted user input is written to the cache store using the `raw: true` parameter, re-reading the result
from the cache can evaluate the user input as a Marshalled object instead of plain text. Vulnerable code looks like:</p>
<p>```
data = cache.fetch("demo", raw: true) { untrusted_string }
```
Versions Affected:  rails &lt; 5.2.5, rails &lt; 6.0.4
Not affected:       Applications not using MemCacheStore or RedisCacheStore. Applications that do not use the `raw` option when storing untrusted user input.
Fixed Versions:     rails &gt;= 5.2.4.3, rails &gt;= 6.0.3.1
  
Impact
------
Unmarshalling of untrusted user input can have impact up to and including RCE. At a minimum,
this vulnerability allows an attacker to inject untrusted Ruby objects into a web application.
In addition to upgrading to the latest versions of Rails, developers should ensure that whenever
they are calling `Rails.cache.fetch` they are using consistent values of the `raw` parameter for both
reading and writing, especially in the case of the RedisCacheStore which does not, prior to these changes,
detect if data was serialized using the raw option upon deserialization.</p>
<p>Workarounds
-----------
It is recommended that application developers apply the suggested patch or upgrade to the latest release as
soon as possible. If this is not possible, we recommend ensuring that all user-provided strings cached using
the `ra…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-2p68-f74v-9wc6"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-8165</id>
    <title>gsd-2020-8165</title>
    <updated>2026-10-03T13:32:19.806409+00:00</updated>
    <content>gsd-2020-8165</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-8165"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2021-1145</id>
    <title>OESA-2021-1145 — rubygem-rails security update</title>
    <updated>2026-10-03T13:32:19.806420+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: rubygem-rails</p>
<p>Ruby on Rails is a full-stack web framework optimized for programmer happiness and sustainable productivity. It encourages beautiful code by favoring convention over configuration.

Security Fix(es):

A deserialization of untrusted data vulnernerability exists in rails &amp;lt; 5.2.4.3, rails &amp;lt; 6.0.3.1 that can allow an attacker to unmarshal user-provided objects in MemCacheStore and RedisCacheStore potentially resulting in an RCE.(CVE-2020-8165)</p>
<p>A client side enforcement of server side security vulnerability exists in rails &amp;lt; 5.2.4.2 and rails &amp;lt; 6.0.3.1 ActiveStorages S3 adapter that allows the Content-Length of a direct file upload to be modified by an end user bypassing upload limits.(CVE-2020-8162)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2021-1145"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2020:1677-1</id>
    <title>openSUSE-SU-2020:1677-1 — Security update for rubygem-activesupport-5_1</title>
    <updated>2026-10-03T13:32:19.806446+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for rubygem-activesupport-5_1</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2020:1677-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2021:1313</id>
    <title>RHSA-2021:1313 — Red Hat Security Advisory: Satellite 6.9 Release</title>
    <updated>2026-10-03T13:32:19.806462+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>rubygem-rest-client: session fixation vulnerability Set-Cookie headers present in an HTTP 30x redirection responses rubygem-rest-client: unsanitized application logging foreman: Managing repositories with their id via hammer does not respect the role filters rack-protection: Timing attack in authenticity_token.rb rubygem-rack: hijack sessions by using timing attacks targeting the session id python-psutil: Double free because of refcount mishandling rubygem-activestorage: circumvention of file size limits in ActiveStorage rubygem-actionpack: possible strong parameters bypass rubygem-activesupport: potentially unintended unmarshalling of user-provided objects in MemCacheStore and RedisCacheStore rubygem-actionpack: ability to forge per-form CSRF tokens given a global CSRF token rubygem-actionview: CSRF vulnerability in rails-ujs rubygem-rails: untrusted users able to run pending migrations in production django: potential SQL injection via "tolerance" parameter in GIS functions and aggregates on Oracle netty: compression/decompression codecs don't enforce limits on buffer allocation sizes foreman: world-readable OMAPI secret through the ISC DHCP server rubygem-activeview: Cross-site scripting in translation helpers resteasy-client: potential sensitive information leakage in JAX-RS RESTEasy Client's WebApplicationException handling</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2021:1313"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2020:2899-1</id>
    <title>SUSE-SU-2020:2899-1 — Security update for rubygem-activesupport-5_1</title>
    <updated>2026-10-03T13:32:19.806511+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for rubygem-activesupport-5_1</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2020:2899-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-8165</id>
    <title>UBUNTU-CVE-2020-8165</title>
    <updated>2026-10-03T13:32:19.806526+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:16.04:LTS: rails, Ubuntu:Pro:18.04:LTS: rails, Ubuntu:Pro:20.04:LTS: rails</p>
<p>A deserialization of untrusted data vulnernerability exists in rails &lt; 5.2.4.3, rails &lt; 6.0.3.1 that can allow an attacker to unmarshal user-provided objects in MemCacheStore and RedisCacheStore potentially resulting in an RCE.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-8165"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1093</id>
    <title>WID-SEC-W-2023-1093 — Ruby on Rails: Mehrere Schwachstellen</title>
    <updated>2026-10-03T13:32:19.806548+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Ruby on Rails ausnutzen, um Sicherheitsvorkehrungen zu umgehen, Informationen offenzulegen, beliebigen Programmcode auszuführen oder Dateien zu manipulieren.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1093"/>
  </entry>
</feed>
