Vendor history
rubygems
Cumulative CVEs
956
across 150 monthly snapshots
Peak rank
#9
Apr 13
First seen
Aug 06
Latest seen
Apr 26
CVEs per month
Newest period on the right. Hover a point for detail · click to open that monthly report.
Mar 20Apr 26
Monthly history
Last 60 months · newest first.
| Period | Rank | Δ | CVEs | Critical | KEV | Nuclei | avg CVSS | Top products |
|---|---|---|---|---|---|---|---|---|
| Apr 26 | #118 | — | 10 | · | · | · | — | openc3 (5) · avo (1) · decidim-core (1) |
| Feb 26 | #85 | — | 12 | · | · | · | 6.9 | rack (2) · decidim-core (1) · faraday (1) |
| Jan 26 | #128 | — | 8 | 1 | · | · | 7.6 | activejob (1) · activerecord-jdbc-adapter (1) · activestorage (1) |
| Dec 25 | #146 | — | 7 | 2 | · | · | 7.6 | ruby-saml (2) · uri (1) · httparty (1) |
| Oct 25 | #171 | — | 6 | · | · | · | 7.2 | rack (5) · sinatra (1) |
| Aug 25 | #153 | — | 6 | 3 | · | · | 7.8 | google_sign_in (2) · spree (2) · activerecord (1) |
| Jul 25 | #158 | — | 7 | · | · | · | 5.9 | job-iteration (1) · measured (1) · nokogiri (1) |
| Jun 25 | #157 | — | 6 | 1 | · | · | 5.7 | nokogiri (2) · openc3-cosmos-tool-iframe (2) · rack (1) |
| May 25 | #174 | — | 5 | · | · | · | 5.2 | rack (2) · rack-session (1) · ejson2env (1) |
| Mar 25 | #67 | — | 16 | 4 | · | 1 | 6.9 | ruby-saml (3) · rack (2) · cgi (2) |
| Feb 25 | #159 | — | 5 | · | · | · | 6.1 | nokogiri (2) · rack (1) · passenger (1) |
| Jan 25 | #150 | — | 6 | · | · | · | 5.3 | activesupport (2) · kredis (1) · actionpack (1) |
| Dec 24 | #100 | — | 7 | · | · | · | 5.8 | rails-html-sanitizer (5) · pwpush (1) · actionpack (1) |
| Oct 24 | #72 | — | 12 | · | · | · | 5.6 | openc3 (3) · actionpack (2) · rexml (1) |
| Sep 24 | #54 | ↑75 | 16 | 2 | · | 2 | 7.1 | camaleon_cms (7) · decidim (1) · decidim-admin (1) |
| Aug 24 | #129 | — | 6 | 1 | · | · | 6.6 | rexml (3) · fugit (1) · request_store (1) |
| Jul 24 | #94 | — | 9 | · | · | · | 5.5 | decidim (2) · bootstrap (2) · bootstrap-sass (1) |
| May 24 | #149 | — | 9 | 1 | · | · | 6.4 | nokogiri (2) · kaminari (1) · rack-contrib (1) |
| Mar 24 | #126 | — | 7 | · | · | · | 7.0 | carrierwave (1) · nokogiri (1) · phlex (1) |
| Feb 24 | #62 | — | 14 | 1 | · | · | 5.9 | rack (3) · decidim (3) · actionpack (2) |
| Jan 24 | #59 | — | 19 | 1 | · | · | 6.5 | encoded_id-rails (2) · audited (2) · avo (2) |
| Dec 23 | #71 | — | 12 | 2 | · | · | 7.3 | resque (3) · activeadmin (3) · jruby-openssl (1) |
| Oct 23 | #183 | — | 5 | 1 | · | · | 7.7 | decidim (1) · bolt (1) · decidim-templates (1) |
| Aug 23 | #186 | — | 5 | · | · | · | 7.0 | rubygems.org (1) · protocol-http1 (1) · commonmarker (1) |
| Jul 23 | #161 | — | 5 | · | · | · | 7.8 | decidim (3) · decidim-core (2) · decidim-meetings (1) |
| Jun 23 | #84 | — | 10 | · | · | · | 6.4 | grpc (3) · avo (2) · redcloth (1) |
| Apr 23 | #129 | — | 6 | 1 | · | 1 | 7.2 | commonmarker (1) · fluentd-ui (1) · kitchen-terraform (1) |
| Mar 23 | #133 | — | 6 | · | · | · | 6.5 | discordrb (1) · rack (1) · time (1) |
| Feb 23 | #59 | — | 13 | 1 | 1 | 1 | 7.6 | actionpack (3) · rack (3) · activerecord (2) |
| Jan 23 | #64 | — | 13 | 2 | · | · | 6.8 | publify_core (4) · git (2) · sisimai (1) |
| Dec 22 | #49 | — | 17 | 2 | · | · | 6.6 | rails-html-sanitizer (4) · loofah (3) · resque-scheduler (2) |
| Nov 22 | #162 | — | 4 | · | · | · | 6.1 | cgi (1) · dalli (1) · fluentd (1) |
| Oct 22 | #119 | — | 6 | 1 | · | · | 6.0 | google-protobuf (1) · nokogiri (1) · sha3 (1) |
| Sep 22 | #108 | — | 6 | · | · | · | 7.7 | pageflow (2) · rubygems (1) · arr-pm (1) |
| Jun 22 | #58 | — | 13 | 4 | · | · | 6.5 | awesome_spawn (1) · diffy (1) · dragonfly (1) |
| May 22 | #57 | — | 15 | 3 | · | · | 7.2 | publify_core (5) · rubygems.org (2) · nokogiri (2) |
| Apr 22 | #75 | — | 11 | 1 | · | · | 7.5 | nokogiri (4) · cocoapods-downloader (2) · devise-two-factor (1) |
| Mar 22 | #97 | — | 7 | 3 | · | · | 8.7 | asciidoctor-include-ext (1) · foreman_ansible (1) · image_processing (1) |
| Feb 22 | #125 | — | 5 | 1 | · | · | 8.2 | puma (1) · actionpack (1) · cgi (1) |
| Jan 22 | #125 | — | 5 | · | · | 2 | 7.2 | actionpack (1) · cgi (1) · date (1) |
| Dec 21 | #118 | — | 5 | · | · | · | 6.5 | bundler (1) · devise_masquerade (1) · message_bus (1) |
| Nov 21 | #52 | — | 12 | 3 | · | · | 7.6 | spree_auth_devise (4) · publify_core (3) · puppet (2) |
| Oct 21 | #55 | — | 12 | · | · | 1 | 6.0 | camaleon_cms (4) · jquery-ui-rails (3) · actionpack (2) |
| Sep 21 | #178 | — | 3 | · | · | · | 7.1 | clearance (1) · better_errors (1) · nokogiri (1) |
| Jul 21 | #126 | — | 4 | · | · | · | 7.0 | addressable (1) · rdoc (1) · smashing (1) |
| Jun 21 | #91 | — | 7 | 1 | · | 2 | 6.9 | actionpack (3) · narou (1) · qiita-markdown (1) |
| May 21 | #71 | — | 8 | 2 | · | 2 | 8.3 | nokogiri (4) · puma (1) · ruby-jss (1) |
| Apr 21 | #91 | — | 6 | · | · | 1 | 7.7 | bundler (1) · metasploit-framework (1) · pgsync (1) |
| Mar 21 | #166 | — | 3 | 1 | · | · | 7.1 | kramdown (1) · activerecord-session_store (1) · qiita-markdown (1) |
| Feb 21 | #56 | — | 11 | · | · | 3 | 6.3 | carrierwave (2) · lodash-rails (2) · twitter-stream (1) |
| Jan 21 | #111 | — | 4 | 1 | · | 1 | 7.2 | actionpack (1) · ftpd (1) · rails_admin (1) |
| Nov 20 | #138 | — | 3 | · | · | · | 6.9 | dependabot-common (1) · dependabot-omnibus (1) · gitaly (1) |
| Oct 20 | #113 | — | 4 | · | · | · | 7.0 | spree (1) · omniauth-auth0 (1) · shrine (1) |
| Sep 20 | #94 | — | 5 | · | · | · | 6.7 | actionview (1) · bundler (1) · gon (1) |
| Aug 20 | #90 | — | 4 | · | · | · | 5.8 | chartkick (1) · field_test (1) · pghero (1) |
| Jul 20 | #71 | — | 8 | 1 | · | 3 | 7.7 | actionpack (2) · actionview (1) · faye (1) |
| Jun 20 | #67 | — | 10 | 1 | · | 4 | 7.6 | actionview (1) · actionpack (1) · activestorage (1) |
| May 20 | #46 | — | 10 | 1 | · | · | 7.5 | puma (2) · doorkeeper (1) · em-http-request (1) |
| Apr 20 | #133 | — | 4 | · | 1 | 1 | 7.5 | jquery-rails (2) · faye (1) · json (1) |
| Mar 20 | #139 | — | 4 | · | · | · | 6.1 | actionview (1) · administrate (1) · puma (1) |