rails/cve.
Menu

THE ADVISORY INDEX

Rails security, in the open.

Published advisories from the Rails maintainers, with a starting point for every investigation.

26 advisories

critical

CVE-2026-66066

Possible arbitrary file read and remote code execution in Active Storage variant processing

activestorage

low

CVE-2026-33167

Possible XSS vulnerability in Action Pack debug exceptions

actionpack

low

CVE-2026-33168

Possible XSS vulnerability in Action View tag helpers

actionview

low

CVE-2026-33170

Possible XSS vulnerability in SafeBuffer#% in Active Support

activesupport

low

CVE-2026-33169

Possible ReDoS vulnerability in number_to_delimited in Active Support

activesupport

low

CVE-2026-33176

Possible DoS vulnerability in Active Support number helpers

activesupport

low

CVE-2026-33173

Insufficient filtering of metadata in Active Storage direct uploads

activestorage

low

CVE-2026-33174

Possible DoS vulnerability in Active Storage proxy mode via Range requests

activestorage

low

CVE-2026-33658

Possible DoS vulnerability in Active Storage proxy mode via multi-range requests

activestorage

low

CVE-2026-33195

Possible path traversal in Active Storage DiskService

activestorage

low

CVE-2026-33202

Possible glob injection in Active Storage DiskService

activestorage

high

CVE-2025-24293

Active Storage allowed transformation methods potentially unsafe

activestorage

low

CVE-2025-55193

ANSI escape injection in Active Record logging

activerecord

low

CVE-2024-54133

Possible Content Security Policy bypass in Action Dispatch

actionpack

low

CVE-2024-41128

Possible ReDoS vulnerability in query parameter filtering in Action Dispatch

actionpack

low

CVE-2024-47887

Possible ReDoS vulnerability in HTTP Token authentication in Action Controller

actionpack

low

CVE-2024-47888

Possible ReDoS vulnerability in plain_text_for_blockquote_node in Action Text

actiontext

low

CVE-2024-47889

Possible ReDoS vulnerability in block_format in Action Mailer

actionmailer

low

CVE-2024-28103

Missing security headers in Action Pack on non-HTML responses

actionpack

unknown

CVE-2024-32464

ActionText ContentAttachment can contain unsanitized HTML

actiontext

low

CVE-2024-26142

Possible ReDoS vulnerability in Accept header parsing in Action Dispatch

rails

high

CVE-2024-26144

Possible Sensitive Session Information Leak in Active Storage

rails

low

CVE-2024-26143

Possible XSS Vulnerability in Action Controller translation

rails

high

CVE-2022-23633

Possible exposure of information vulnerability in Action Pack

actionpack

unknown

CVE-2020-15169

Potential XSS vulnerability in Action View

actionview

low

CVE-2020-5267

Possible XSS vulnerability in ActionView

actionview