Skip to content

capybara-3.14.0.gem: 71 vulnerabilities (highest severity is: 10.0) #24

Description

@mend-for-github-com
Vulnerable Library - capybara-3.14.0.gem

Sample Path to Dependency File: /Gemfile.lock

Path to vulnerable library: /tmp/containerbase/cache/.ruby/cache/nokogiri-1.10.9.gem

Found in HEAD commit: 745c2716eb9e9a4a163387e2ce67210a068fa83a

Vulnerabilities

Vulnerability Severity CVSS Exploit Maturity EPSS Dependency Type Fixed in (capybara version) Remediation Possible** Reachability
CVE-2022-30123 Critical 10.0 Not Defined 1.801% rack-2.0.6.gem Transitive N/A*
CVE-2025-71407 Critical 9.8 Not Defined 0.418% nokogiri-1.10.9.gem Transitive N/A*
CVE-2024-58378 Critical 9.8 Not Defined 0.342% nokogiri-1.10.9.gem Transitive N/A*
CVE-2022-51000 Critical 9.8 Not Defined 0.441% nokogiri-1.10.9.gem Transitive N/A*
WS-2022-0089 High 8.8 Not Defined nokogiri-1.10.9.gem Transitive N/A*
CVE-2021-3518 High 8.8 Not Defined 3.653% nokogiri-1.10.9.gem Transitive N/A*
CVE-2021-30560 High 8.8 Not Defined 21.458% nokogiri-1.10.9.gem Transitive N/A*
CVE-2022-50999 High 8.6 Not Defined 0.301% nokogiri-1.10.9.gem Transitive N/A*
CVE-2021-3517 High 8.6 Not Defined 8.28% nokogiri-1.10.9.gem Transitive N/A*
CVE-2020-8161 High 8.6 Not Defined 3.359% rack-2.0.6.gem Transitive N/A*
CVE-2022-29181 High 8.2 Not Defined 3.23% nokogiri-1.10.9.gem Transitive N/A*
CVE-2025-71406 High 7.8 Not Defined 0.187% nokogiri-1.10.9.gem Transitive N/A*
CVE-2026-79770 High 7.5 Not Defined 0.278% nokogiri-1.10.9.gem Transitive N/A*
CVE-2026-35611 High 7.5 Not Defined 0.36% addressable-2.6.0.gem Transitive N/A*
CVE-2026-34829 High 7.5 Not Defined 0.369% rack-2.0.6.gem Transitive N/A*
CVE-2026-34785 High 7.5 Not Defined 0.387% rack-2.0.6.gem Transitive N/A*
CVE-2026-22860 High 7.5 Not Defined 0.665% rack-2.0.6.gem Transitive N/A*
CVE-2025-61919 High 7.5 Not Defined 0.605% rack-2.0.6.gem Transitive N/A*
CVE-2025-61772 High 7.5 Not Defined 0.868% rack-2.0.6.gem Transitive N/A*
CVE-2025-61771 High 7.5 Not Defined 0.523% rack-2.0.6.gem Transitive N/A*
CVE-2025-61770 High 7.5 Not Defined 0.868% rack-2.0.6.gem Transitive N/A*
CVE-2025-59830 High 7.5 Not Defined 0.573% rack-2.0.6.gem Transitive N/A*
CVE-2025-46727 High 7.5 Not Defined 1.157% rack-2.0.6.gem Transitive N/A*
CVE-2025-27610 High 7.5 Not Defined 1.131% rack-2.0.6.gem Transitive N/A*
CVE-2024-34459 High 7.5 Not Defined 2.298% nokogiri-1.10.9.gem Transitive N/A*
CVE-2023-54354 High 7.5 Not Defined 0.35% nokogiri-1.10.9.gem Transitive N/A*
CVE-2023-27530 High 7.5 Not Defined 1.83% rack-2.0.6.gem Transitive N/A*
CVE-2022-50998 High 7.5 Not Defined 0.35% nokogiri-1.10.9.gem Transitive N/A*
CVE-2022-44572 High 7.5 Not Defined 1.617% rack-2.0.6.gem Transitive N/A*
CVE-2022-44571 High 7.5 Not Defined 1.503% rack-2.0.6.gem Transitive N/A*
CVE-2022-44570 High 7.5 Not Defined 1.626% rack-2.0.6.gem Transitive N/A*
CVE-2022-30122 High 7.5 Not Defined 2.056% rack-2.0.6.gem Transitive N/A*
CVE-2022-24836 High 7.5 Not Defined 3.519% nokogiri-1.10.9.gem Transitive N/A*
CVE-2021-47996 High 7.5 Not Defined 0.515% nokogiri-1.10.9.gem Transitive N/A*
CVE-2021-41098 High 7.5 Not Defined 1.447% nokogiri-1.10.9.gem Transitive N/A*
CVE-2021-32740 High 7.5 Not Defined 2.199% addressable-2.6.0.gem Transitive N/A*
CVE-2020-8184 High 7.5 Not Defined 2.938% rack-2.0.6.gem Transitive N/A*
CVE-2018-25032 High 7.5 Not Defined 51.733% nokogiri-1.10.9.gem Transitive N/A*
CVE-2026-57235 Medium 6.5 Not Defined 0.426% nokogiri-1.10.9.gem Transitive N/A*
CVE-2025-25184 Medium 6.5 Not Defined 1.162% rack-2.0.6.gem Transitive N/A*
CVE-2019-16782 Medium 6.3 Not Defined 3.703% rack-2.0.6.gem Transitive N/A*
CVE-2026-57438 Medium 6.2 Not Defined 0.125% nokogiri-1.10.9.gem Transitive N/A*
CVE-2026-34830 Medium 5.9 Not Defined 0.209% rack-2.0.6.gem Transitive N/A*
CVE-2021-3537 Medium 5.9 Not Defined 3.503% nokogiri-1.10.9.gem Transitive N/A*
CVE-2025-61780 Medium 5.8 Not Defined 0.434% rack-2.0.6.gem Transitive N/A*
CVE-2024-26141 Medium 5.8 Not Defined 1.612% rack-2.0.6.gem Transitive N/A*
CVE-2026-79769 Medium 5.5 Not Defined 0.181% nokogiri-1.10.9.gem Transitive N/A*
CVE-2024-58377 Medium 5.5 Not Defined 0.193% nokogiri-1.10.9.gem Transitive N/A*
CVE-2026-25500 Medium 5.4 Not Defined 0.224% rack-2.0.6.gem Transitive N/A*
CVE-2026-79772 Medium 5.3 Not Defined 0.262% nokogiri-1.10.9.gem Transitive N/A*
CVE-2026-79771 Medium 5.3 Not Defined 0.304% nokogiri-1.10.9.gem Transitive N/A*
CVE-2026-57437 Medium 5.3 Not Defined 0.402% nokogiri-1.10.9.gem Transitive N/A*
CVE-2026-57436 Medium 5.3 Not Defined 0.402% nokogiri-1.10.9.gem Transitive N/A*
CVE-2026-57435 Medium 5.3 Not Defined 0.46% nokogiri-1.10.9.gem Transitive N/A*
CVE-2026-57434 Medium 5.3 Not Defined 0.46% nokogiri-1.10.9.gem Transitive N/A*
CVE-2026-57236 Medium 5.3 Not Defined 0.341% nokogiri-1.10.9.gem Transitive N/A*
CVE-2026-34826 Medium 5.3 Not Defined 0.38% rack-2.0.6.gem Transitive N/A*
CVE-2026-34786 Medium 5.3 Not Defined 0.195% rack-2.0.6.gem Transitive N/A*
CVE-2026-34763 Medium 5.3 Not Defined 0.24% rack-2.0.6.gem Transitive N/A*
CVE-2026-34230 Medium 5.3 Not Defined 0.43% rack-2.0.6.gem Transitive N/A*
CVE-2025-27111 Medium 5.3 Not Defined 0.729% rack-2.0.6.gem Transitive N/A*
CVE-2024-26146 Medium 5.3 Not Defined 1.996% rack-2.0.6.gem Transitive N/A*
CVE-2024-25126 Medium 5.3 Not Defined 35.376% rack-2.0.6.gem Transitive N/A*
CVE-2023-27539 Medium 5.3 Not Defined 1.081% rack-2.0.6.gem Transitive N/A*
CVE-2026-34831 Medium 4.8 Not Defined 0.147% rack-2.0.6.gem Transitive N/A*
CVE-2025-32441 Medium 4.2 Not Defined 0.229% rack-2.0.6.gem Transitive N/A*
CVE-2026-26961 Low 3.7 Not Defined 0.253% rack-2.0.6.gem Transitive N/A*
CVE-2025-6490 Low 3.3 Proof of concept 0.16% nokogiri-1.10.9.gem Transitive N/A*
CVE-2025-71346 Low 2.9 Not Defined 0.18% nokogiri-1.10.9.gem Transitive N/A*
CVE-2026-57234 Low 2.6 Not Defined 0.198% nokogiri-1.10.9.gem Transitive N/A*
CVE-2020-26247 Low 2.6 Not Defined 1.077% nokogiri-1.10.9.gem Transitive N/A*

*For some transitive vulnerabilities, there is no version of direct dependency with a fix. Check the "Details" section below to see if there is a version of transitive dependency where vulnerability is fixed.

**In some cases, Remediation PR cannot be created automatically for a vulnerability despite the availability of remediation

Details

Partial details (17 vulnerabilities) are displayed below due to a content size limitation in GitHub. To view information on the remaining vulnerabilities, navigate to the Mend Application.

CVE-2022-30123

Vulnerable Library - rack-2.0.6.gem

Rack provides a minimal, modular and adaptable interface for developing web applications in Ruby. By wrapping HTTP requests and responses in the simplest way possible, it unifies and distills the API for web servers, web frameworks, and software in between (the so-called middleware) into a single method call.

Also see https://rack.github.io/.

Library home page: https://rubygems.org/gems/rack-2.0.6.gem

Sample Path to Dependency File: /Gemfile.lock

Path to vulnerable library: /tmp/containerbase/cache/.ruby/cache/rack-2.0.6.gem

Dependency Hierarchy:

  • capybara-3.14.0.gem (Root Library)
    • rack-2.0.6.gem (Vulnerable Library)

Found in HEAD commit: 745c2716eb9e9a4a163387e2ce67210a068fa83a

Found in base branch: main

Vulnerability Details

A sequence injection vulnerability exists in Rack <2.0.9.1, <2.1.4.1 and <2.2.3.1 which could allow is a possible shell escape in the Lint and CommonLogger components of Rack.

Publish Date: 2022-12-05

URL: CVE-2022-30123

Threat Assessment

Exploit Maturity: Not Defined

EPSS: 1.801%

CVSS 3 Score Details (10.0)

Base Score Metrics:

  • Exploitability Metrics:
    • Attack Vector: Network
    • Attack Complexity: Low
    • Privileges Required: None
    • User Interaction: None
    • Scope: Changed
  • Impact Metrics:
    • Confidentiality Impact: High
    • Integrity Impact: High
    • Availability Impact: High

For more information on CVSS3 Scores, click here.

Suggested Fix

Type: Upgrade version

Origin: GHSA-wq4h-7r42-5hrr

Release Date: 2022-12-05

Fix Resolution: rack - 2.0.9.1,2.1.4.1,2.2.3.1

CVE-2025-71407

Vulnerable Library - nokogiri-1.10.9.gem

Nokogiri (鋸) is an HTML, XML, SAX, and Reader parser. Among Nokogiri's many features is the ability to search documents via XPath or CSS3 selectors.

Library home page: https://rubygems.org/gems/nokogiri-1.10.9.gem

Sample Path to Dependency File: /Gemfile.lock

Path to vulnerable library: /tmp/containerbase/cache/.ruby/cache/nokogiri-1.10.9.gem

Dependency Hierarchy:

  • capybara-3.14.0.gem (Root Library)
    • nokogiri-1.10.9.gem (Vulnerable Library)

Found in HEAD commit: 745c2716eb9e9a4a163387e2ce67210a068fa83a

Found in base branch: main

Vulnerability Details

Nokogiri before 1.18.3 contains a stack buffer overflow vulnerability in libxml2 when reporting DTD validation errors with long QName prefixes, and a use-after-free vulnerability during validation against untrusted XML Schemas. Attackers can trigger these vulnerabilities by providing malicious DTD content or untrusted XSD files to cause denial of service or potential code execution.

Publish Date: 2026-08-25

URL: CVE-2025-71407

Threat Assessment

Exploit Maturity: Not Defined

EPSS: 0.418%

CVSS 3 Score Details (9.8)

Base Score Metrics:

  • Exploitability Metrics:
    • Attack Vector: Network
    • Attack Complexity: Low
    • Privileges Required: None
    • User Interaction: None
    • Scope: Unchanged
  • Impact Metrics:
    • Confidentiality Impact: High
    • Integrity Impact: High
    • Availability Impact: High

For more information on CVSS3 Scores, click here.

Suggested Fix

Type: Upgrade version

Release Date: 2026-08-25

Fix Resolution: nokogiri - 1.18.3,https://github.com/sparklemotion/nokogiri.git - v1.18.3

CVE-2024-58378

Vulnerable Library - nokogiri-1.10.9.gem

Nokogiri (鋸) is an HTML, XML, SAX, and Reader parser. Among Nokogiri's many features is the ability to search documents via XPath or CSS3 selectors.

Library home page: https://rubygems.org/gems/nokogiri-1.10.9.gem

Sample Path to Dependency File: /Gemfile.lock

Path to vulnerable library: /tmp/containerbase/cache/.ruby/cache/nokogiri-1.10.9.gem

Dependency Hierarchy:

  • capybara-3.14.0.gem (Root Library)
    • nokogiri-1.10.9.gem (Vulnerable Library)

Found in HEAD commit: 745c2716eb9e9a4a163387e2ce67210a068fa83a

Found in base branch: main

Vulnerability Details

Nokogiri before 1.15.6 and 1.16.x before 1.16.2 (CRuby, when using the packaged libxml2) is affected by a use-after-free vulnerability in libxml2 (CVE-2024-25062) in the xmlTextReader module, which underlies Nokogiri::XML::Reader. When using the XML Reader interface with DTD validation and XInclude expansion enabled, processing a crafted XML document can lead to an xmlValidatePopElement use-after-free. Nokogiri 1.15.6 and 1.16.2 resolve this by upgrading the packaged libxml2 to 2.11.7 and 2.12.5 respectively. JRuby and installations using system libxml2 are not affected.

Publish Date: 2026-08-25

URL: CVE-2024-58378

Threat Assessment

Exploit Maturity: Not Defined

EPSS: 0.342%

CVSS 3 Score Details (9.8)

Base Score Metrics:

  • Exploitability Metrics:
    • Attack Vector: Network
    • Attack Complexity: Low
    • Privileges Required: None
    • User Interaction: None
    • Scope: Unchanged
  • Impact Metrics:
    • Confidentiality Impact: High
    • Integrity Impact: High
    • Availability Impact: High

For more information on CVSS3 Scores, click here.

Suggested Fix

Type: Upgrade version

Origin: GHSA-xc9x-jj77-9p9j

Release Date: 2026-08-25

Fix Resolution: nokogiri - 1.15.6,nokogiri - 1.16.2,https://github.com/sparklemotion/nokogiri.git - v1.15.6,https://github.com/sparklemotion/nokogiri.git - v1.16.2

CVE-2022-51000

Vulnerable Library - nokogiri-1.10.9.gem

Nokogiri (鋸) is an HTML, XML, SAX, and Reader parser. Among Nokogiri's many features is the ability to search documents via XPath or CSS3 selectors.

Library home page: https://rubygems.org/gems/nokogiri-1.10.9.gem

Sample Path to Dependency File: /Gemfile.lock

Path to vulnerable library: /tmp/containerbase/cache/.ruby/cache/nokogiri-1.10.9.gem

Dependency Hierarchy:

  • capybara-3.14.0.gem (Root Library)
    • nokogiri-1.10.9.gem (Vulnerable Library)

Found in HEAD commit: 745c2716eb9e9a4a163387e2ce67210a068fa83a

Found in base branch: main

Vulnerability Details

Nokogiri before 1.13.2 (CRuby, when using packaged libraries) ships vendored libxml2 2.9.12 and libxslt 1.1.34, which are affected by two upstream CVEs. Via CVE-2021-30560 in libxslt, an application transforming XML with untrusted XSL stylesheets is vulnerable to a denial-of-service attack. Via CVE-2022-23308 in libxml2, an application parsing an untrusted document with parse option DTDVALID set to true and NOENT set to false may be vulnerable to denial of service, memory disclosure, or code execution. Nokogiri 1.13.2 upgrades vendored libxml2 to 2.9.13 and libxslt to 1.1.35.

Publish Date: 2026-08-25

URL: CVE-2022-51000

Threat Assessment

Exploit Maturity: Not Defined

EPSS: 0.441%

CVSS 3 Score Details (9.8)

Base Score Metrics:

  • Exploitability Metrics:
    • Attack Vector: Network
    • Attack Complexity: Low
    • Privileges Required: None
    • User Interaction: None
    • Scope: Unchanged
  • Impact Metrics:
    • Confidentiality Impact: High
    • Integrity Impact: High
    • Availability Impact: High

For more information on CVSS3 Scores, click here.

Suggested Fix

Type: Upgrade version

Release Date: 2026-08-25

Fix Resolution: nokogiri - 1.13.2,https://github.com/sparklemotion/nokogiri.git - v1.13.2

WS-2022-0089

Vulnerable Library - nokogiri-1.10.9.gem

Nokogiri (鋸) is an HTML, XML, SAX, and Reader parser. Among Nokogiri's many features is the ability to search documents via XPath or CSS3 selectors.

Library home page: https://rubygems.org/gems/nokogiri-1.10.9.gem

Sample Path to Dependency File: /Gemfile.lock

Path to vulnerable library: /tmp/containerbase/cache/.ruby/cache/nokogiri-1.10.9.gem

Dependency Hierarchy:

  • capybara-3.14.0.gem (Root Library)
    • nokogiri-1.10.9.gem (Vulnerable Library)

Found in HEAD commit: 745c2716eb9e9a4a163387e2ce67210a068fa83a

Found in base branch: main

Vulnerability Details

Nokogiri "v1.13.2" (https://github.com/sparklemotion/nokogiri/releases/tag/v1.13.2) upgrades two of its packaged dependencies: - vendored libxml2 from v2.9.12 to "v2.9.13" (https://download.gnome.org/sources/libxml2/2.9/libxml2-2.9.13.news) - vendored libxslt from v1.1.34 to "v1.1.35" (https://download.gnome.org/sources/libxslt/1.1/libxslt-1.1.35.news) Those library versions address the following upstream CVEs: - libxslt: "CVE-2021-30560" (https://nvd.nist.gov/vuln/detail/CVE-2021-30560) (CVSS 8.8, High severity) - libxml2: "CVE-2022-23308" (https://nvd.nist.gov/vuln/detail/CVE-2022-23308) (Unspecified severity, see more information below) Those library versions also address numerous other issues including performance improvements, regression fixes, and bug fixes, as well as memory leaks and other use-after-free issues that were not assigned CVEs. Please note that this advisory only applies to the CRuby implementation of Nokogiri "< 1.13.2", and only if the packaged libraries are being used. If you've overridden defaults at installation time to use system libraries instead of packaged libraries, you should instead pay attention to your distro's "libxml2" and "libxslt" release announcements.

Publish Date: 2022-03-01

URL: WS-2022-0089

Threat Assessment

Exploit Maturity: Not Defined

EPSS:

CVSS 3 Score Details (8.8)

Base Score Metrics:

  • Exploitability Metrics:
    • Attack Vector: Network
    • Attack Complexity: Low
    • Privileges Required: None
    • User Interaction: Required
    • Scope: Unchanged
  • Impact Metrics:
    • Confidentiality Impact: High
    • Integrity Impact: High
    • Availability Impact: High

For more information on CVSS3 Scores, click here.

Suggested Fix

Type: Upgrade version

Origin: GHSA-fq42-c5rg-92c2

Release Date: 2024-12-05

Fix Resolution: nokogiri - v1.13.2

CVE-2021-3518

Vulnerable Library - nokogiri-1.10.9.gem

Nokogiri (鋸) is an HTML, XML, SAX, and Reader parser. Among Nokogiri's many features is the ability to search documents via XPath or CSS3 selectors.

Library home page: https://rubygems.org/gems/nokogiri-1.10.9.gem

Sample Path to Dependency File: /Gemfile.lock

Path to vulnerable library: /tmp/containerbase/cache/.ruby/cache/nokogiri-1.10.9.gem

Dependency Hierarchy:

  • capybara-3.14.0.gem (Root Library)
    • nokogiri-1.10.9.gem (Vulnerable Library)

Found in HEAD commit: 745c2716eb9e9a4a163387e2ce67210a068fa83a

Found in base branch: main

Vulnerability Details

There's a flaw in libxml2 in versions before 2.9.11. An attacker who is able to submit a crafted file to be processed by an application linked with libxml2 could trigger a use-after-free. The greatest impact from this flaw is to confidentiality, integrity, and availability.

Publish Date: 2021-05-18

URL: CVE-2021-3518

Threat Assessment

Exploit Maturity: Not Defined

EPSS: 3.653%

CVSS 3 Score Details (8.8)

Base Score Metrics:

  • Exploitability Metrics:
    • Attack Vector: Network
    • Attack Complexity: Low
    • Privileges Required: None
    • User Interaction: Required
    • Scope: Unchanged
  • Impact Metrics:
    • Confidentiality Impact: High
    • Integrity Impact: High
    • Availability Impact: High

For more information on CVSS3 Scores, click here.

Suggested Fix

Type: Upgrade version

Origin: https://www.cve.org/CVERecord?id=CVE-2021-3518

Release Date: 2021-05-18

Fix Resolution: libxml2 - 2.9.12

CVE-2021-30560

Vulnerable Library - nokogiri-1.10.9.gem

Nokogiri (鋸) is an HTML, XML, SAX, and Reader parser. Among Nokogiri's many features is the ability to search documents via XPath or CSS3 selectors.

Library home page: https://rubygems.org/gems/nokogiri-1.10.9.gem

Sample Path to Dependency File: /Gemfile.lock

Path to vulnerable library: /tmp/containerbase/cache/.ruby/cache/nokogiri-1.10.9.gem

Dependency Hierarchy:

  • capybara-3.14.0.gem (Root Library)
    • nokogiri-1.10.9.gem (Vulnerable Library)

Found in HEAD commit: 745c2716eb9e9a4a163387e2ce67210a068fa83a

Found in base branch: main

Vulnerability Details

Use after free in Blink XSLT in Google Chrome prior to 91.0.4472.164 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Publish Date: 2021-08-03

URL: CVE-2021-30560

Threat Assessment

Exploit Maturity: Not Defined

EPSS: 21.458%

CVSS 3 Score Details (8.8)

Base Score Metrics:

  • Exploitability Metrics:
    • Attack Vector: Network
    • Attack Complexity: Low
    • Privileges Required: None
    • User Interaction: Required
    • Scope: Unchanged
  • Impact Metrics:
    • Confidentiality Impact: High
    • Integrity Impact: High
    • Availability Impact: High

For more information on CVSS3 Scores, click here.

Suggested Fix

Type: Upgrade version

Origin: https://security-tracker.debian.org/tracker/CVE-2021-30560

Release Date: 2021-08-03

Fix Resolution: v1.1.35,libxslt - 1.1.35

CVE-2022-50999

Vulnerable Library - nokogiri-1.10.9.gem

Nokogiri (鋸) is an HTML, XML, SAX, and Reader parser. Among Nokogiri's many features is the ability to search documents via XPath or CSS3 selectors.

Library home page: https://rubygems.org/gems/nokogiri-1.10.9.gem

Sample Path to Dependency File: /Gemfile.lock

Path to vulnerable library: /tmp/containerbase/cache/.ruby/cache/nokogiri-1.10.9.gem

Dependency Hierarchy:

  • capybara-3.14.0.gem (Root Library)
    • nokogiri-1.10.9.gem (Vulnerable Library)

Found in HEAD commit: 745c2716eb9e9a4a163387e2ce67210a068fa83a

Found in base branch: main

Vulnerability Details

Nokogiri versions before 1.13.5 contain an integer overflow vulnerability in packaged libxml2 buffer handling functions that allows attackers to cause out-of-bounds memory writes. Attackers can exploit this by crafting multi-gigabyte XML files to trigger buffer overflows resulting in information disclosure, data modification, or denial of service.

Publish Date: 2026-08-25

URL: CVE-2022-50999

Threat Assessment

Exploit Maturity: Not Defined

EPSS: 0.301%

CVSS 3 Score Details (8.6)

Base Score Metrics:

  • Exploitability Metrics:
    • Attack Vector: Network
    • Attack Complexity: Low
    • Privileges Required: None
    • User Interaction: None
    • Scope: Unchanged
  • Impact Metrics:
    • Confidentiality Impact: Low
    • Integrity Impact: Low
    • Availability Impact: High

For more information on CVSS3 Scores, click here.

Suggested Fix

Type: Upgrade version

Release Date: 2026-08-25

Fix Resolution: nokogiri - 1.13.5,https://github.com/sparklemotion/nokogiri.git - v1.13.5

CVE-2021-3517

Vulnerable Library - nokogiri-1.10.9.gem

Nokogiri (鋸) is an HTML, XML, SAX, and Reader parser. Among Nokogiri's many features is the ability to search documents via XPath or CSS3 selectors.

Library home page: https://rubygems.org/gems/nokogiri-1.10.9.gem

Sample Path to Dependency File: /Gemfile.lock

Path to vulnerable library: /tmp/containerbase/cache/.ruby/cache/nokogiri-1.10.9.gem

Dependency Hierarchy:

  • capybara-3.14.0.gem (Root Library)
    • nokogiri-1.10.9.gem (Vulnerable Library)

Found in HEAD commit: 745c2716eb9e9a4a163387e2ce67210a068fa83a

Found in base branch: main

Vulnerability Details

There is a flaw in the xml entity encoding functionality of libxml2 in versions before 2.9.11. An attacker who is able to supply a crafted file to be processed by an application linked with the affected functionality of libxml2 could trigger an out-of-bounds read. The most likely impact of this flaw is to application availability, with some potential impact to confidentiality and integrity if an attacker is able to use memory information to further exploit the application.

Publish Date: 2021-05-19

URL: CVE-2021-3517

Threat Assessment

Exploit Maturity: Not Defined

EPSS: 8.28%

CVSS 3 Score Details (8.6)

Base Score Metrics:

  • Exploitability Metrics:
    • Attack Vector: Network
    • Attack Complexity: Low
    • Privileges Required: None
    • User Interaction: None
    • Scope: Unchanged
  • Impact Metrics:
    • Confidentiality Impact: Low
    • Integrity Impact: Low
    • Availability Impact: High

For more information on CVSS3 Scores, click here.

Suggested Fix

Type: Upgrade version

Origin: https://www.cve.org/CVERecord?id=CVE-2021-3517

Release Date: 2021-05-19

Fix Resolution: libxml2 - 2.9.12

CVE-2020-8161

Vulnerable Library - rack-2.0.6.gem

Rack provides a minimal, modular and adaptable interface for developing web applications in Ruby. By wrapping HTTP requests and responses in the simplest way possible, it unifies and distills the API for web servers, web frameworks, and software in between (the so-called middleware) into a single method call.

Also see https://rack.github.io/.

Library home page: https://rubygems.org/gems/rack-2.0.6.gem

Sample Path to Dependency File: /Gemfile.lock

Path to vulnerable library: /tmp/containerbase/cache/.ruby/cache/rack-2.0.6.gem

Dependency Hierarchy:

  • capybara-3.14.0.gem (Root Library)
    • rack-2.0.6.gem (Vulnerable Library)

Found in HEAD commit: 745c2716eb9e9a4a163387e2ce67210a068fa83a

Found in base branch: main

Vulnerability Details

A directory traversal vulnerability exists in rack < 2.2.0 that allows an attacker perform directory traversal vulnerability in the Rack::Directory app that is bundled with Rack which could result in information disclosure.

Publish Date: 2020-07-02

URL: CVE-2020-8161

Threat Assessment

Exploit Maturity: Not Defined

EPSS: 3.359%

CVSS 3 Score Details (8.6)

Base Score Metrics:

  • Exploitability Metrics:
    • Attack Vector: Network
    • Attack Complexity: Low
    • Privileges Required: None
    • User Interaction: None
    • Scope: Changed
  • Impact Metrics:
    • Confidentiality Impact: High
    • Integrity Impact: None
    • Availability Impact: None

For more information on CVSS3 Scores, click here.

Suggested Fix

Type: Upgrade version

Release Date: 2020-07-02

Fix Resolution: 2.2.0,2.1.3

CVE-2022-29181

Vulnerable Library - nokogiri-1.10.9.gem

Nokogiri (鋸) is an HTML, XML, SAX, and Reader parser. Among Nokogiri's many features is the ability to search documents via XPath or CSS3 selectors.

Library home page: https://rubygems.org/gems/nokogiri-1.10.9.gem

Sample Path to Dependency File: /Gemfile.lock

Path to vulnerable library: /tmp/containerbase/cache/.ruby/cache/nokogiri-1.10.9.gem

Dependency Hierarchy:

  • capybara-3.14.0.gem (Root Library)
    • nokogiri-1.10.9.gem (Vulnerable Library)

Found in HEAD commit: 745c2716eb9e9a4a163387e2ce67210a068fa83a

Found in base branch: main

Vulnerability Details

Nokogiri is an open source XML and HTML library for Ruby. Nokogiri prior to version 1.13.6 does not type-check all inputs into the XML and HTML4 SAX parsers, allowing specially crafted untrusted inputs to cause illegal memory access errors (segfault) or reads from unrelated memory. Version 1.13.6 contains a patch for this issue. As a workaround, ensure the untrusted input is a "String" by calling "#to_s" or equivalent.

Publish Date: 2022-05-20

URL: CVE-2022-29181

Threat Assessment

Exploit Maturity: Not Defined

EPSS: 3.23%

CVSS 3 Score Details (8.2)

Base Score Metrics:

  • Exploitability Metrics:
    • Attack Vector: Network
    • Attack Complexity: Low
    • Privileges Required: None
    • User Interaction: None
    • Scope: Unchanged
  • Impact Metrics:
    • Confidentiality Impact: Low
    • Integrity Impact: None
    • Availability Impact: High

For more information on CVSS3 Scores, click here.

Suggested Fix

Type: Upgrade version

Origin: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-29181

Release Date: 2022-05-20

Fix Resolution: nokogiri - 1.13.6

CVE-2025-71406

Vulnerable Library - nokogiri-1.10.9.gem

Nokogiri (鋸) is an HTML, XML, SAX, and Reader parser. Among Nokogiri's many features is the ability to search documents via XPath or CSS3 selectors.

Library home page: https://rubygems.org/gems/nokogiri-1.10.9.gem

Sample Path to Dependency File: /Gemfile.lock

Path to vulnerable library: /tmp/containerbase/cache/.ruby/cache/nokogiri-1.10.9.gem

Dependency Hierarchy:

  • capybara-3.14.0.gem (Root Library)
    • nokogiri-1.10.9.gem (Vulnerable Library)

Found in HEAD commit: 745c2716eb9e9a4a163387e2ce67210a068fa83a

Found in base branch: main

Vulnerability Details

Nokogiri before 1.18.4 bundles a vulnerable version of libxslt (prior to 1.1.43) that contains two use-after-free vulnerabilities: CVE-2025-24855 (use-after-free of the XPath context node due to xsltEvalXPathStringNs leaking xpathCtxt->node) and CVE-2024-55549 (use-after-free related to excluded result prefixes/namespaces). Processing crafted XSLT can trigger memory corruption. Nokogiri 1.18.4 upgrades the bundled libxslt to 1.1.43 to resolve these issues.

Publish Date: 2026-08-25

URL: CVE-2025-71406

Threat Assessment

Exploit Maturity: Not Defined

EPSS: 0.187%

CVSS 3 Score Details (7.8)

Base Score Metrics:

  • Exploitability Metrics:
    • Attack Vector: Local
    • Attack Complexity: High
    • Privileges Required: None
    • User Interaction: None
    • Scope: Changed
  • Impact Metrics:
    • Confidentiality Impact: None
    • Integrity Impact: High
    • Availability Impact: High

For more information on CVSS3 Scores, click here.

Suggested Fix

Type: Upgrade version

Release Date: 2026-08-25

Fix Resolution: nokogiri - 1.18.4,https://github.com/sparklemotion/nokogiri.git - v1.18.4

CVE-2026-79770

Vulnerable Library - nokogiri-1.10.9.gem

Nokogiri (鋸) is an HTML, XML, SAX, and Reader parser. Among Nokogiri's many features is the ability to search documents via XPath or CSS3 selectors.

Library home page: https://rubygems.org/gems/nokogiri-1.10.9.gem

Sample Path to Dependency File: /Gemfile.lock

Path to vulnerable library: /tmp/containerbase/cache/.ruby/cache/nokogiri-1.10.9.gem

Dependency Hierarchy:

  • capybara-3.14.0.gem (Root Library)
    • nokogiri-1.10.9.gem (Vulnerable Library)

Found in HEAD commit: 745c2716eb9e9a4a163387e2ce67210a068fa83a

Found in base branch: main

Vulnerability Details

Nokogiri versions before 1.19.3 contain regular expression denial of service vulnerabilities in the CSS selector tokenizer affecting string-literal and identifier tokenization. Attackers can inject adversarial CSS selectors into methods like Node#css, Node#at_css, and Searchable#search to cause exponential regex backtracking and denial of service.

Publish Date: 2026-08-25

URL: CVE-2026-79770

Threat Assessment

Exploit Maturity: Not Defined

EPSS: 0.278%

CVSS 3 Score Details (7.5)

Base Score Metrics:

  • Exploitability Metrics:
    • Attack Vector: Network
    • Attack Complexity: Low
    • Privileges Required: None
    • User Interaction: None
    • Scope: Unchanged
  • Impact Metrics:
    • Confidentiality Impact: None
    • Integrity Impact: None
    • Availability Impact: High

For more information on CVSS3 Scores, click here.

Suggested Fix

Type: Upgrade version

Release Date: 2026-08-25

Fix Resolution: nokogiri - 1.19.3,https://github.com/sparklemotion/nokogiri.git - v1.19.3

CVE-2026-35611

Vulnerable Library - addressable-2.6.0.gem

Addressable is a replacement for the URI implementation that is part of Ruby's standard library. It more closely conforms to the relevant RFCs and adds support for IRIs and URI templates.

Library home page: https://rubygems.org/gems/addressable-2.6.0.gem

Sample Path to Dependency File: /Gemfile.lock

Path to vulnerable library: /tmp/containerbase/cache/.ruby/cache/addressable-2.6.0.gem

Dependency Hierarchy:

  • capybara-3.14.0.gem (Root Library)
    • addressable-2.6.0.gem (Vulnerable Library)

Found in HEAD commit: 745c2716eb9e9a4a163387e2ce67210a068fa83a

Found in base branch: main

Vulnerability Details

Addressable is an alternative implementation to the URI implementation that is part of Ruby's standard library. From 2.3.0 to before 2.9.0, within the URI template implementation in Addressable, two classes of URI template generate regular expressions vulnerable to catastrophic backtracking. Templates using the * (explode) modifier with any expansion operator (e.g., {foo*}, {+var*}, {#var*}, {/var*}, {.var*}, {;var*}, {?var*}, {&var*}) generate patterns with nested unbounded quantifiers that are O(2^n) when matched against a maliciously crafted URI. Templates using multiple variables with the + or # operators (e.g., {+v1,v2,v3}) generate patterns with O(n^k) complexity due to the comma separator being within the matched character class, causing ambiguous backtracking across k variables. When matched against a maliciously crafted URI, this can result in catastrophic backtracking and uncontrolled resource consumption, leading to denial of service. This vulnerability is fixed in 2.9.0.

Publish Date: 2026-04-07

URL: CVE-2026-35611

Threat Assessment

Exploit Maturity: Not Defined

EPSS: 0.36%

CVSS 3 Score Details (7.5)

Base Score Metrics:

  • Exploitability Metrics:
    • Attack Vector: Network
    • Attack Complexity: Low
    • Privileges Required: None
    • User Interaction: None
    • Scope: Unchanged
  • Impact Metrics:
    • Confidentiality Impact: None
    • Integrity Impact: None
    • Availability Impact: High

For more information on CVSS3 Scores, click here.

Suggested Fix

Type: Upgrade version

Release Date: 2026-04-07

Fix Resolution: https://github.com/sporkmonger/addressable.git - addressable-2.9.0

CVE-2026-34829

Vulnerable Library - rack-2.0.6.gem

Rack provides a minimal, modular and adaptable interface for developing web applications in Ruby. By wrapping HTTP requests and responses in the simplest way possible, it unifies and distills the API for web servers, web frameworks, and software in between (the so-called middleware) into a single method call.

Also see https://rack.github.io/.

Library home page: https://rubygems.org/gems/rack-2.0.6.gem

Sample Path to Dependency File: /Gemfile.lock

Path to vulnerable library: /tmp/containerbase/cache/.ruby/cache/rack-2.0.6.gem

Dependency Hierarchy:

  • capybara-3.14.0.gem (Root Library)
    • rack-2.0.6.gem (Vulnerable Library)

Found in HEAD commit: 745c2716eb9e9a4a163387e2ce67210a068fa83a

Found in base branch: main

Vulnerability Details

Rack is a modular Ruby web server interface. Prior to versions 2.2.23, 3.1.21, and 3.2.6, Rack::Multipart::Parser only wraps the request body in a BoundedIO when CONTENT_LENGTH is present. When a multipart/form-data request is sent without a Content-Length header, such as with HTTP chunked transfer encoding, multipart parsing continues until end-of-stream with no total size limit. For file parts, the uploaded body is written directly to a temporary file on disk rather than being constrained by the buffered in-memory upload limit. An unauthenticated attacker can therefore stream an arbitrarily large multipart file upload and consume unbounded disk space. This results in a denial of service condition for Rack applications that accept multipart form data. This issue has been patched in versions 2.2.23, 3.1.21, and 3.2.6.

Publish Date: 2026-04-02

URL: CVE-2026-34829

Threat Assessment

Exploit Maturity: Not Defined

EPSS: 0.369%

CVSS 3 Score Details (7.5)

Base Score Metrics:

  • Exploitability Metrics:
    • Attack Vector: Network
    • Attack Complexity: Low
    • Privileges Required: None
    • User Interaction: None
    • Scope: Unchanged
  • Impact Metrics:
    • Confidentiality Impact: None
    • Integrity Impact: None
    • Availability Impact: High

For more information on CVSS3 Scores, click here.

Suggested Fix

Type: Upgrade version

Origin: GHSA-8vqr-qjwx-82mw

Release Date: 2026-04-02

Fix Resolution: rack - 3.1.21,rack - 3.2.6,rack - 2.2.23

CVE-2026-34785

Vulnerable Library - rack-2.0.6.gem

Rack provides a minimal, modular and adaptable interface for developing web applications in Ruby. By wrapping HTTP requests and responses in the simplest way possible, it unifies and distills the API for web servers, web frameworks, and software in between (the so-called middleware) into a single method call.

Also see https://rack.github.io/.

Library home page: https://rubygems.org/gems/rack-2.0.6.gem

Sample Path to Dependency File: /Gemfile.lock

Path to vulnerable library: /tmp/containerbase/cache/.ruby/cache/rack-2.0.6.gem

Dependency Hierarchy:

  • capybara-3.14.0.gem (Root Library)
    • rack-2.0.6.gem (Vulnerable Library)

Found in HEAD commit: 745c2716eb9e9a4a163387e2ce67210a068fa83a

Found in base branch: main

Vulnerability Details

Rack is a modular Ruby web server interface. Prior to versions 2.2.23, 3.1.21, and 3.2.6, Rack::Static determines whether a request should be served as a static file using a simple string prefix check. When configured with URL prefixes such as "/css", it matches any request path that begins with that string, including unrelated paths such as "/css-config.env" or "/css-backup.sql". As a result, files under the static root whose names merely share the configured prefix may be served unintentionally, leading to information disclosure. This issue has been patched in versions 2.2.23, 3.1.21, and 3.2.6.

Publish Date: 2026-04-02

URL: CVE-2026-34785

Threat Assessment

Exploit Maturity: Not Defined

EPSS: 0.387%

CVSS 3 Score Details (7.5)

Base Score Metrics:

  • Exploitability Metrics:
    • Attack Vector: Network
    • Attack Complexity: Low
    • Privileges Required: None
    • User Interaction: None
    • Scope: Unchanged
  • Impact Metrics:
    • Confidentiality Impact: High
    • Integrity Impact: None
    • Availability Impact: None

For more information on CVSS3 Scores, click here.

Suggested Fix

Type: Upgrade version

Origin: GHSA-h2jq-g4cq-5ppq

Release Date: 2026-04-02

Fix Resolution: rack - 3.1.21,rack - 2.2.23,rack - 3.2.6

CVE-2026-22860

Vulnerable Library - rack-2.0.6.gem

Rack provides a minimal, modular and adaptable interface for developing web applications in Ruby. By wrapping HTTP requests and responses in the simplest way possible, it unifies and distills the API for web servers, web frameworks, and software in between (the so-called middleware) into a single method call.

Also see https://rack.github.io/.

Library home page: https://rubygems.org/gems/rack-2.0.6.gem

Sample Path to Dependency File: /Gemfile.lock

Path to vulnerable library: /tmp/containerbase/cache/.ruby/cache/rack-2.0.6.gem

Dependency Hierarchy:

  • capybara-3.14.0.gem (Root Library)
    • rack-2.0.6.gem (Vulnerable Library)

Found in HEAD commit: 745c2716eb9e9a4a163387e2ce67210a068fa83a

Found in base branch: main

Vulnerability Details

Rack is a modular Ruby web server interface. Prior to versions 2.2.22, 3.1.20, and 3.2.5, "Rack::Directory"’s path check used a string prefix match on the expanded path. A request like "/../root_example/" can escape the configured root if the target path starts with the root string, allowing directory listing outside the intended root. Versions 2.2.22, 3.1.20, and 3.2.5 fix the issue.

Publish Date: 2026-02-18

URL: CVE-2026-22860

Threat Assessment

Exploit Maturity: Not Defined

EPSS: 0.665%

CVSS 3 Score Details (7.5)

Base Score Metrics:

  • Exploitability Metrics:
    • Attack Vector: Network
    • Attack Complexity: Low
    • Privileges Required: None
    • User Interaction: None
    • Scope: Unchanged
  • Impact Metrics:
    • Confidentiality Impact: High
    • Integrity Impact: None
    • Availability Impact: None

For more information on CVSS3 Scores, click here.

Suggested Fix

Type: Upgrade version

Release Date: 2026-02-17

Fix Resolution: https://github.com/rack/rack.git - v3.2.5,https://github.com/rack/rack.git - v3.1.20,https://github.com/rack/rack.git - v2.2.22

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions