SecAlerts
Ruby on Rails logo

Ruby on Rails

Security Risk Profile

33
/100
low

Security Risk Score

Comprehensive risk assessment based on 37 vulnerabilities, EPSS scores, exploitation status, and remediation availability.

📅 Data spans from December 4, 2009 to present

37
Total CVEs
4
Critical+High
1
Exploited
3
Unpatched

Threat Assessment

Avg CVSS
4.7
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
3
Critical/High
Risk Level
33/100
low
⚠️ 1 Active Exploits📈 2 in Last 30 Days

Severity Distribution

Critical
0
High
4
Medium
4
Low
2

Exploit Likelihood

>50% chance
0
20-50%
0
5-20%
0
<5%
0

Age Distribution

Common Weaknesses (CWE)

1
XSS
2
2
Path Traversal
1
3
Command Injection
1
4
Code Injection
1
5
CSRF
1

Most Affected Products

1. Mark Evans Dragonfly Gem52
2. Ruby on Rails Rails22
3. Ruby on Rails Active Storage (Active Storage framework)4
4. Ruby on Rails Ruby on Rails3
5. Ruby on Rails Active Storage2

Recent Vulnerabilities

See more →

Monitor Ruby on Rails in Real-Time

Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.

Powered bySecAlerts

Monitor Your Software Stack in Real-Time

Get instant alerts when vulnerabilities are discovered in your software stack. Stay ahead of security threats with SecAlerts.

© 2026 SecAlerts Pty Ltd. All rights reserved.