Vulnerability Directory

If you’re currently using these frameworks in your application’s tech stack, your application could be vulnerable.

Secure drop-in replacements for open source software from HeroDevs helps you stay secure, compliant, and compatible while you migrate.

Switch to Never-Ending Support (NES) from HeroDevs to immediately mitigate these vulnerabilities.
Arrow down

Vulnerability Directory

If you’re currently using these frameworks in your application’s tech stack, your application could be vulnerable.

Secure drop-in replacements for open source software from HeroDevs helps you stay secure, compliant, and compatible while you migrate.

Switch to Never-Ending Support (NES) from HeroDevs to immediately mitigate these vulnerabilities.

Codey gradient
Search here
Clear
Filter by Severity
Clear
Filter by Technology
Sign up for the latest vulnerability alerts
Rss feed icon
Subscribe via RSS
or
Thanks for signing up for our Newsletter! We look forward to connecting with you.
Oops! Something went wrong while submitting the form.
Severity
ID
Technology
Libraries Affected
Category
Version(s) Affected
Published Date
Medium
AngularJS
AngularJS
Cross-Site Scripting
<1.8.0
Jun 8, 2020
Medium
jQuery
jQuery
Cross-Site Scripting
<1.9.0
May 19, 2020
Critical
Rails
Ruby on Rails Framework
Remote Code Execution
Rails 3.x Rails 2.x Rails > 4.x if using actionpack_page-cache <= 1.2.0
May 12, 2020
Medium
Spring
Spring Security
Information Exposure
<4.2.16, >=5.0.0 <5.0.16, >=5.1.0 <5.1.10, >=5.2.0 <5.2.4, >=5.3.0 <5.3.2
May 7, 2020
Medium
jQuery
jQuery
Cross-Site Scripting
>=1.0.3 <3.5.0
Apr 29, 2020
Medium
jQuery
jQuery
Cross-Site Scripting
>=1.2.0 <3.5.0
Apr 29, 2020
Critical
Spring
Spring Framework
Remote Code Execution
<6.0.0
Jan 2, 2020
Critical
AngularJS
AngularJS
Cross-Site Scripting
<1.7.9
Nov 19, 2019
Low
Spring
Spring Security
Authorization Bypass
<4.2.13
Jun 19, 2019
Low
Spring
Spring Security
Information Exposure
<4.2.12, >=5.0.0 <5.0.12, >=5.1.0 <5.1.5
Apr 19, 2019
Medium
jQuery
jQuery
Cross-Site Scripting
>=1.1.4 <3.4.0
Apr 19, 2019
High
Rails
Ruby on Rails Framework
Information Exposure
6.0.0 - <= 6.0.0.beta2 5.2.0 - <= 5.2.2.0 All of 4.x prior to HeroDevs 4.2 LTS All of 3.x prior to HeroDevs 3.2 LTS All of 2.x prior to HeroDevs 2.3
Mar 27, 2019
Critical
Rails
Ruby on Rails Framework
Remote Code Execution
6.0.0.0 - <= 6.0.0.beta2 5.2.0.0 - <= 5.2.2.0
Mar 27, 2019
High
Rails
Ruby on Rails Framework
No items found.
6.0.0 - <= 6.0.0.beta2 5.2.0 - <= 5.2.2.0 All of 4.x prior to HeroDevs 4.2 LTS All of 3.x prior to HeroDevs 3.2 LTS All of 2.x prior to HeroDevs 2.3
Mar 27, 2019
Medium
jQuery
jQuery
Cross-Site Scripting
<1.12.2 >=1.12.3 <3.0.0
Jan 18, 2018
Exclamation icon
No results found

Please enter a valid Vulnerability ID number or Technology name.