jruby
OSS Librariesoss-project
Top products
Latest CVEs
The 5 most recently published vulnerabilities affecting jruby.
- CVE-2025-46551JRuby-OpenSSL has hostname verification disabled by default3.7
- CVE-2009-4123The jruby-openssl gem before 0.6 for JRuby mishandles SSL certificate validation.7.5
- CVE-2012-5370JRuby computes hash values without properly restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) v...5.0
- CVE-2010-1330The regular expression engine in JRuby before 1.4.1, when $KCODE is set to 'u', does not properly handle characters immediately after a UTF-8 character, which allows remote attackers to conduct cro...4.3
- CVE-2011-4838JRuby before 1.6.5.1 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumpt...5.0