The OAuth Ruby Project maintains a focused Ruby library for implementing the OAuth authentication and authorization protocol, serving as a narrowly scoped but foundational component in web applications and frameworks that require OAuth integration. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Oauth Ruby Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2016-11086HIGH lib/oauth/consumer.rb in the oauth-ruby gem through 0.5.4 for Ruby does not verify server X.509 certificates if a certificate bundle cannot be found, which allows man-in-the-middle | Sep 24, 2020 | 7.4 | 21 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Oauth Ruby Project.
Media articles that mention a CVE ID that affects a product developed by Oauth Ruby Project — matched by CVE ID, not by vendor name.