Filtered by vendor Jnunemaker
Subscriptions
Total
2 CVE
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2024-22049 | 4 Debian, Fedoraproject, Jnunemaker and 1 more | 4 Debian Linux, Fedora, Httparty and 1 more | 2026-01-07 | 5.3 Medium |
| httparty before 0.21.0 is vulnerable to an assumed-immutable web parameter vulnerability. A remote and unauthenticated attacker can provide a crafted filename parameter during multipart/form-data uploads which could result in attacker controlled filenames being written. | ||||
| CVE-2025-68696 | 2 Jnunemaker, John Nunemaker | 2 Httparty, Httparty | 2026-01-07 | 8.2 High |
| httparty is an API tool. In versions 0.23.2 and prior, httparty is vulnerable to SSRF. This issue can pose a risk of leaking API keys, and it can also allow third parties to issue requests to internal servers. This issue has been patched via commit 0529bcd. | ||||
Page 1 of 1.