Steveklabnik maintains a narrowly scoped open-source project, Request Store, whose vulnerability surface centers on default permission configuration rather than code-execution or protocol-level flaws. The recurring weakness—incorrect default permissions—reflects a deployment-context risk where default settings may expose functionality unintentionally; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Steveklabnik over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-43791HIGH RequestStore provides per-request global storage for Rack. The files published as part of request_store 1.3.2 have 0666 permissions, meaning that they are world-writable, which all | Aug 23, 2024 | 7.8 | 19 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Steveklabnik.
Media articles that mention a CVE ID that affects a product developed by Steveklabnik — matched by CVE ID, not by vendor name.