6 Total advisories
6 Vulnerabilities
0 Malware
Dependency scanning
Check whether view_component is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
MEDIUM 5.9
CVE-2026-44837
view_component: System Test Entry Point Path Check Allows Sibling Directory Escape
MEDIUM 6.5
CVE-2026-44836
view_component: Preview Route Can Dispatch Inherited Helper Methods
MEDIUM 6.1
CVE-2024-21636
view_component Cross-site Scripting vulnerability
HIGH 8.7
CVE-2026-54498
ViewComponent: around_render HTML-Safety Bypass
MEDIUM 6.8
CVE-2026-54497
ViewComponent: Reused Component Instances Retain Stale Render Context
HIGH 8.1
CVE-2022-24722
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in view_component
Browse more RubyGems advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes