Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Sofiaaberegg

#18678of 53,632
14.4Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2025-38243
7.5
2025-09-17
Rexml · Rexml · CVE-2025-58767
**Name of the Vulnerable Software and Affected Versions** REXML versions 3.3.3 through 3.4.1 **Description** REXML, an XML toolkit for Ruby, is susceptible to a denial-of-service issue when processing XML data containing multiple XML declarations. Parsing untrusted XMLs may lead to this issue. **Recommendations** Update to REXML version 3.4.2 or later. Avoid parsing untrusted XMLs.
PT-2025-26220
6.9
2025-06-19
Jq · Jq · CVE-2025-49014
**Name of the Vulnerable Software and Affected Versions** jq version 1.8.0 **Description** A heap use after free issue exists within the function `f strflocaltime` of `/src/builtin.c`. This is a problem in a command-line JSON processor. **Recommendations** For version 1.8.0, consider restricting access to the `f strflocaltime` function until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.