Package impact

ruby RubyGems / net-imap

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2026-42257 critical 9.8 9.8 25d ago net-imap vulnerable to command Injection via "raw" arguments to multiple commands
CVE-2026-42258 critical 9.8 9.8 25d ago net-imap vulnerable to command Injection via unvalidated Symbol inputs
CVE-2026-42245 high 7.5 7.5 25d ago net-imap has quadratic complexity when reading response literals
CVE-2026-42246 high 7.4 7.4 25d ago net-imap vulnerable to STARTTLS stripping via invalid response timing
CVE-2026-42256 medium 6.5 6.5 25d ago net-imap vulnerable to denial of service via high iteration count for `SCRAM-*` authentication
CVE-2025-25186 medium 5.5 1y ago Moderate: ruby:3.3 security update