kaminari
RubyGems2 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting kaminaripage 1 of 1
- CVE-2020-11082MEDIUMCVSS 6.4EG 6.4✓ Fixed in 1.2.12020-05-28
vulnerable: 0.1.0 ... 1.2.0 (51 versions)
In Kaminari before 1.2.1, there is a vulnerability that would allow an attacker to inject arbitrary code into pages with pagination links. This has been fixed in 1.2.1.
- CVE-2024-32978MEDIUMCVSS 6.6EG 6.6✓ Fixed in 0.16.22024-05-27
vulnerable: 0.15.0, 0.15.1, 0.16.0, 0.16.1
Kaminari is a paginator for web app frameworks and object relational mappings. A security vulnerability involving insecure file permissions has been identified in the Kaminari pagination library for Ruby on Rails, concerning insecure file …
Check whether kaminari is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for kaminari CVEs against the assets you own.
Start Free Scan →