Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2021-28965
Description:The REXML gem before 3.2.5 in Ruby before 2.6.7, 2.7.x before 2.7.3, and 3.x before 3.0.1 does not properly address XML round-trip issues. An incorrect document can be produced after parsing and serializing.
Test IDs: 1.3.6.1.4.1.25623.1.0.879455   1.3.6.1.4.1.25623.1.1.2.2021.1987   1.3.6.1.4.1.25623.1.1.2.2021.2281   1.3.6.1.4.1.25623.1.0.879404   1.3.6.1.4.1.25623.1.0.879402   1.3.6.1.4.1.25623.1.1.2.2021.2255   1.3.6.1.4.1.25623.1.0.879431   1.3.6.1.4.1.25623.1.0.853778   1.3.6.1.4.1.25623.1.0.879446   1.3.6.1.4.1.25623.1.1.12.2021.4922.2   1.3.6.1.4.1.25623.1.1.4.2021.1280.1   1.3.6.1.4.1.25623.1.1.2.2021.2012   1.3.6.1.4.1.25623.1.0.879461   1.3.6.1.4.1.25623.1.0.844905  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2021-28965
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WTVFTLFVCSUE5CXHINJEUCKSHU4SWDMT/
https://www.ruby-lang.org/en/news/2021/04/05/xml-round-trip-vulnerability-in-rexml-cve-2021-28965/




© 1998-2025 E-Soft Inc. All rights reserved.