Vulnerabilities (CVE)

Filtered by vendor Bundler Subscribe
Filtered by product Bundler
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2013-0334 3 Bundler, Fedoraproject, Opensuse 3 Bundler, Fedora, Opensuse 2019-07-16 5.0 MEDIUM N/A
Bundler before 1.7, when multiple top-level source lines are used, allows remote attackers to install arbitrary gems by creating a gem with the same name as another gem in a different source.