Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
8.3
CVE-2026-88030
- EPSS 0.26%
- Veröffentlicht 10.09.2026 17:57:59
- Zuletzt bearbeitet 29.09.2026 16:03:10
Improper neutralization of special elements in data query logic in the GridFS component of the MongoDB Ruby Driver can cause a caller-supplied structured file identifier to be interpreted as a query condition rather than as a literal identifier. An a...
6.9
CVE-2026-2302
- EPSS 0.2%
- Veröffentlicht 10.02.2026 18:59:23
- Zuletzt bearbeitet 15.04.2026 00:35:42
Under specific conditions when processing a maliciously crafted value of type Hash r, Mongoid::Criteria.from_hash may allow for executing arbitrary Ruby code.
1