Risk Scores
EPSS Score
93.74%
99.8th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ubuntu | Ubuntu Linux | |
| Open Source | Open Source Ruby on Rails <6.0.0.beta3 | |
| Open Source | Open Source Ruby on Rails <5.2.2.1 | |
| Red Hat | Red Hat Enterprise Linux | |
| SUSE | SUSE Linux |
Timeline
- CVE Published
- Mar 13, 2019 PoC Published
- May 2, 2019 PoC Published
- Apr 14, 2021 EPSS Score
- Jun 22, 2021 EPSS Score
- Sep 14, 2021 EPSS Score
- Sep 16, 2021 EPSS Score
- Oct 24, 2021 EPSS Score
- Feb 4, 2022 EPSS Score
- Feb 25, 2022 EPSS Score
- Apr 28, 2022 EPSS Score
- Jun 29, 2022 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2019/wid-sec-w-2025-1467.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2025-1467 advisory
- https://weblog.rubyonrails.org/2019/3/13/Rails-4-2-5-1-5-1-6-2-have-been-released/ advisory
- https://www.suse.com/support/update/announcement/2019/suse-su-20190915-1.html advisory
- https://access.redhat.com/errata/RHSA-2019:0796 advisory
- https://access.redhat.com/errata/RHSA-2019:1147 advisory
- https://access.redhat.com/errata/RHSA-2019:1149 advisory
- https://access.redhat.com/errata/RHSA-2019:1289 advisory
- https://www.suse.com/support/update/announcement/2019/suse-su-20191381-1.html advisory
- https://www.suse.com/support/update/announcement/2019/suse-su-20191973-1.html advisory
- http://lists.suse.com/pipermail/sle-security-updates/2020-October/007625.html advisory
- https://lists.suse.com/pipermail/sle-security-updates/2020-November/007691.html advisory
- https://lists.suse.com/pipermail/sle-security-updates/2020-November/007702.html advisory
- https://cisa.gov/known-exploited-vulnerabilities-catalog exploit
- https://ubuntu.com/security/notices/USN-7646-1 advisory