Package impact

ruby RUBYGEMS / devise

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2026-40295 medium 6.1 6.1 22d ago Devise has an Open Redirect via Unvalidated `request.referrer` in Timeoutable Session Timeout Handler