Package impact
RubyGems / gollum
| CVE | Severity | CVSS | Risk | Published | Description | Impact |
|---|---|---|---|---|---|---|
| CVE-2014-9489 | high | 8.8 | 8.8 | 12y ago | gollum and gollum-lib allow remote authenticated users to execute arbitrary code | |
| CVE-2015-7314 | medium | — | 4.3 | 11y ago | Gollum Exposure of Sensitive Information | |
| CVE-2020-35305 | unknown | — | — | 4y ago | Gollum Cross-site Scripting vulnerability via filename parameter to New Page dialog |