CVE-2025-27220
4.0MEDIUMIn the CGI gem before 0.4.2 for Ruby, a Regular Expression Denial of Service (ReDoS) vulnerability exists in the Util#escapeElement method.
Published: 3/4/2025Updated: 11/3/2025
Description
In the CGI gem before 0.4.2 for Ruby, a Regular Expression Denial of Service (ReDoS) vulnerability exists in the Util#escapeElement method.
AI AnalysisPowered by AI
Affected Products
ruby-langcgi
ruby-langcgi
ruby-langcgi
0.3.6
ruby-langruby
3.1.0
ruby-langruby
3.2.0