Miniprofiler is a performance-profiling library integrated into web applications, with its vulnerability footprint concentrated in the Rack Mini Profiler product used in Ruby on Rails environments. The durable signal centers on information-disclosure weaknesses, reflecting the library's role in exposing detailed application diagnostics that require careful access control to prevent leakage of sensitive runtime data to unauthorized users. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Miniprofiler over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2016-4442MEDIUM The rack-mini-profiler gem before 0.10.1 for Ruby allows remote attackers to obtain sensitive information about allocated strings and objects by leveraging incorrect ordering of se | May 2, 2017 | 5.3 | 20 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Miniprofiler.
Media articles that mention a CVE ID that affects a product developed by Miniprofiler — matched by CVE ID, not by vendor name.