/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CGA-w7wg-m6w2-433r

Published

Last updated

https://images.chainguard.dev/security/CGA-w7wg-m6w2-433r
Package

ruby-3.3

RepositoryWolfi
Latest Update
Pending upstream fix
Aliases
  • CVE-2025-27220
  • GHSA-mhwm-jh88-3gjf

Severity

7.5

High

CVSS V3

References

  • https://nvd.nist.gov/vuln/detail/CVE-2025-27220

Updates

Status

Pending upstream fix

Impact

Ruby upstream have not backported the cgi gem changes to the 3.3 maintenance branch.

Status

Under investigation


The trusted source for open source

Talk to an expert
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing