The numtok function in lib/raven/okjson.rb in the raven-ruby gem before 0.12.2 for Ruby allows remote attackers to cause a denial of service via a large exponent value in a scientific number.
rubygems package report
Is sentry-raven safe?
1 known vulnerability, worst severity MODERATE.
// reach
0 direct dependencies
none carry a known advisory
0 packages depend on it
an advisory here reaches each of them
Create a free accountfor every dependency path, dependent and what to upgrade
// ai model usage
Tracked for PyPI packages. HuggingFace models declare Python dependencies, so rubygems packages are not covered.
cvss
0.0
medium
severity band, no base score published
epss
0.00%
medium
chance of exploitation in 30 days, 84th percentile of all CVEs
xyz score
not scored
CyberXYZ composite out of 10
fig. 01 — GHSA-c9c5-9fpr-m882, the advisory selected below
// 1 advisories
Checked 2026-10-04 at 01:15 UTC. The most recent advisory here was published 2017-10-24. Updated continuously from NVD, GHSA, OSV and CNA feeds.