CVE-2019-5418 is a Ruby on Rails path traversal vulnerability that CISA lists in its Known Exploited Vulnerabilities catalog. For defenders, the key takeaway is that this is not just a theoretical issue: CISA has treated it as actively exploited and set a remediation due date in the provided feed. Organizations running Rails applications should verify whether their deployed versions are covered by the ven [truncated]
CVE-2016-0752 is an official Ruby on Rails directory traversal vulnerability record that CISA included in its Known Exploited Vulnerabilities catalog. That KEV listing means defenders should treat it as a prioritized remediation item and apply vendor updates as soon as possible. The supplied official sources do not include CVSS, affected versions, or deeper exploit details, so the safest response is to ve [truncated]
CVE-2014-0130 is a Ruby on Rails directory traversal vulnerability that CISA has listed in its Known Exploited Vulnerabilities catalog. Because it is cataloged as known exploited, defenders should treat remediation as urgent and follow vendor update guidance without delay.