LIVE · cybersecurity feed
Live wire
vendor

Nokogiri

10 CVEs published in the last four months. Exploited flaws first.

Critical1
High9
Medium0
Exploited (KEV)0

All recent CVEs

CVECVSSSeverityProductSummaryPublished
CVE-2022-510009.8criticalnokogiriNokogiri before 1.13.2 (CRuby, when using packaged libraries) ships vendored libxml2 2.9.12 and libxslt 1.1.34, wh11d ago
CVE-2022-509998.6highnokogiriNokogiri versions before 1.13.5 contain an integer overflow vulnerability in packaged libxml2 buffer handling func11d ago
CVE-2026-572368.2highnokogiriNokogiri is an open source XML and HTML library for the Ruby programming language.72d ago
CVE-2026-572358.2highnokogiriNokogiri is an open source XML and HTML library for the Ruby programming language.72d ago
CVE-2022-509987.5highnokogiriNokogiri before 1.13.9 (CRuby implementation using packaged libraries) bundles libxml2 v2.9.14, which is affected 11d ago
CVE-2023-543547.5highnokogiriNokogiri before 1.14.3 (CRuby implementation only, when using the packaged libxml2) bundles libxml2 v2.10.3, which11d ago
CVE-2026-797707.5highnokogiriNokogiri versions before 1.19.3 contain regular expression denial of service vulnerabilities in the CSS selector t11d ago
CVE-2026-574347.5highnokogiriNokogiri is an open source XML and HTML library for the Ruby programming language.72d ago
CVE-2026-574357.5highnokogiriNokogiri is an open source XML and HTML library for the Ruby programming language.72d ago
CVE-2021-479967.5highnokogiriNokogiri before 1.11.4 (CRuby implementation only, when the packaged/vendored libxml2 is used) bundles libxml2 2.911d ago

Filter the full tracker by Nokogiri