CVEs (8)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
REXML is an XML toolkit for Ruby. The REXML gems from 3.3.3 to 3.4.1 has a DoS vulnerability when parsing XML containing multiple XML declarations. If you need to parse untrusted XMLs, you may be impacted to these vulner...Show more |
2Netapp Ruby Lang2Ontap Tools RexmlJun 17, 2026 Oct 28, 2024 6.6 MEDIUM· v4 7.5 HIGH· v3 N/A· v2 REXML is an XML toolkit for Ruby. The REXML gem before 3.3.9 has a ReDoS vulnerability when it parses an XML that has many digits between &# and x...; in a hex numeric character reference (&#x...;). This does not happen...Show more |
2Netapp Ruby Lang2Bootstrap Os RexmlJun 17, 2026 Aug 22, 2024 N/A· v4 5.9 MEDIUM· v3 N/A· v2 REXML is an XML toolkit for Ruby. The REXML gem before 3.3.6 has a DoS vulnerability when it parses an XML that has many deep elements that have same local name attributes. If you need to parse untrusted XMLs with tree p...Show more |
REXML is an XML toolkit for Ruby. The REXML gem 3.3.2 has a DoS vulnerability when it parses an XML that has many entity expansions with SAX2 or pull parser API. The REXML gem 3.3.3 or later include the patch to fix the...Show more |
REXML is an XML toolkit for Ruby. The REXML gem before 3.3.2 has some DoS vulnerabilities when it parses an XML that has many specific characters such as whitespace character, `>]` and `]>`. The REXML gem 3.3.3 or later...Show more |
2Netapp Ruby Lang2Bootstrap Os RexmlJun 17, 2026 Jul 16, 2024 N/A· v4 4.3 MEDIUM· v3 N/A· v2 REXML is an XML toolkit for Ruby. The REXML gem before 3.3.1 has some DoS vulnerabilities when it parses an XML that has many specific characters such as `<`, `0` and `%>`. If you need to parse untrusted XMLs, you many...Show more |
REXML is an XML toolkit for Ruby. The REXML gem before 3.2.6 has a denial of service vulnerability when it parses an XML that has many `<`s in an attribute value. Those who need to parse untrusted XMLs may be impacted t...Show more |
2Fedoraproject Ruby Lang3Fedora RexmlRubyJun 17, 2026 Apr 21, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 The REXML gem before 3.2.5 in Ruby before 2.6.7, 2.7.x before 2.7.3, and 3.x before 3.0.1 does not properly address XML round-trip issues. An incorrect document can be produced after parsing and serializing. |