VYPR

Ruby Openid

by Janrain

Source repositories

CVEs (1)

  • CVE-2013-1812Dec 12, 2013
    risk 0.00cvss epss 0.01

    The ruby-openid gem before 2.2.2 for Ruby allows remote OpenID providers to cause a denial of service (CPU consumption) via (1) a large XRDS document or (2) an XML Entity Expansion (XEE) attack.