VDB
CVE-2025-66567
CVE-2025-66567
PUBLISHED
Ruby ist eine interpretierte, objektorientierte Skriptsprache.
EPSS 0.40% · 32.5th percentile
Risk Scores
EPSS Score
0.40%
32.5th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Open Source | Open Source Ruby SAML <1.18.0 | |
| NetApp | NetApp StorageGRID <12.0 | |
| NetApp | NetApp StorageGRID <11.9.0 |
Timeline
- Dec 8, 2025 CVE Published
- Dec 9, 2025 EPSS Score
- Dec 9, 2025 PoC Published
- Dec 9, 2025 PoC Published
- Dec 9, 2025 PoC Published
- Dec 10, 2025 PoC Published
- Dec 11, 2025 PoC Published
- Dec 12, 2025 CVE Updated
- Dec 13, 2025 EPSS Score
- Dec 17, 2025 EPSS Score
- Dec 22, 2025 EPSS Score
- Dec 26, 2025 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2025/wid-sec-w-2025-2764.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2025-2764 advisory
- https://github.com/SAML-Toolkits/ruby-saml/security/advisories/GHSA-9v8j-x534-2fx3 advisory
- https://github.com/SAML-Toolkits/ruby-saml/security/advisories/GHSA-x4h9-gwv3-r4m4 advisory
- https://security.netapp.com/advisory/NTAP-20260123-0003 advisory
- https://security.netapp.com/advisory/NTAP-20260123-0002 advisory