CVE-2024-35176

Severity CVSS v4.0:
Pending analysis
Type:
CWE-400 Uncontrolled Resource Consumption ('Resource Exhaustion')
Publication date:
16/05/2024
Last modified:
03/11/2025

Description

REXML is an XML toolkit for Ruby. The REXML gem before 3.2.6 has a denial of service vulnerability when it parses an XML that has many `

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ruby-lang:rexml:*:*:*:*:*:ruby:*:* 3.2.7 (excluding)