Schneems maintains Wicked, a narrowly scoped Ruby gem for managing secrets and credential rotation in application environments. The vendor's disclosed vulnerabilities center on path-traversal weakness in credential-access pathways, a pattern that reflects the sensitive nature of secrets management as an attack surface. Current severity, exploitation status, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Schneems over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2013-4413MEDIUM Directory traversal vulnerability in controller/concerns/render_redirect.rb in the Wicked gem before 1.0.1 for Ruby allows remote attackers to read arbitrary files via a %2E%2E%2F | Mar 11, 2014 | 5.0 | 16 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Schneems.
Media articles that mention a CVE ID that affects a product developed by Schneems — matched by CVE ID, not by vendor name.