14 Total advisories
14 Vulnerabilities
0 Malware
Dependency scanning
Check whether passenger is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
MEDIUM 5.3
CVE-2025-26803
Phusion Passenger denial of service
UNKNOWN
CVE-2014-1831
Insecure use of temporary files in passenger
UNKNOWN
CVE-2013-2119
Phusion Passenger Denial of Service
HIGH 7.8
CVE-2016-10345
Phusion Passenger uses a known /tmp filename
UNKNOWN
CVE-2013-4136
insecure temporary directory usage in passenger
HIGH 7.5
CVE-2012-6135
RubyGems passenger gem allows remote attackers to delete files
LOW 3.7
CVE-2015-7519
Phusion Passenger allows remote attackers to spoof headers
CRITICAL 9.8
CVE-2018-12026
Phusion Passenger SpawningKit Contains Arbitrary Read/Write Vulnerability
MEDIUM 4.7
CVE-2017-16355
Phusion Passenger information disclosure
HIGH 7.0
CVE-2018-12029
Phusion Passenger Race Condition Allows Privilege Escalation
HIGH 8.8
CVE-2018-12027
Insecure Permissions in Phusion Passenger
HIGH 7.8
CVE-2018-12028
Incorrect Access Control in Phusion Passenger
MEDIUM 5.3
CVE-2018-12615
Phusion Passenger incorrect permission assignment
UNKNOWN
CVE-2014-1832
Insecure use of temporary files in Phusion passenger
Browse more RubyGems advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes