The RVM Project maintains a Ruby version manager tool that enables developers to manage multiple Ruby installations and gemsets on a single system, representing a niche utility within the Ruby development ecosystem. Observed vulnerability disclosures for this project center on the tool itself, though characterization remains limited by sparse reporting; current severity, exploitation status, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Rvm Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-1000037CRITICAL RVM automatically loads environment variables from files in $PWD resulting in command execution RVM vulnerable to command injection when automatically loading environment variables | Jul 17, 2017 | 9.8 | 28 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Rvm Project.
Media articles that mention a CVE ID that affects a product developed by Rvm Project — matched by CVE ID, not by vendor name.