vulnerability

FreeBSD: VID-9b60bba1-cf18-11ed-bd44-080027f5fec9 (CVE-2023-28755): rubygem-uri -- ReDoS vulnerability

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
Mar 30, 2023
Added
Apr 1, 2023
Modified
Dec 10, 2025

Description

Dominic Couture reports: A ReDoS issue was discovered in the URI component. The URI parser mishandles invalid URLs that have specific characters. It causes an increase in execution time for parsing strings to URI objects.

Solutions

freebsd-upgrade-package-rubyfreebsd-upgrade-package-ruby27freebsd-upgrade-package-ruby30freebsd-upgrade-package-ruby31freebsd-upgrade-package-ruby32freebsd-upgrade-package-rubygem-uri
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.