USN-7695-1

Advisory lineage Upstream: 4 Downstream: 0
Published: 14 Aug 2025, 05:45
Last modified:27 Apr 2026, 18:01

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

14 Aug 2025, 05:45
Published
Vulnerability first disclosed
27 Apr 2026, 18:01
Last Modified
Vulnerability information updated

Description

ruby-sidekiq vulnerabilities Anas Roubi discovered that Sidekiq did not correctly sanitize certain inputs. An attacker could possibly use this issue to execute a cross-site scripting (XSS) attack. This issue only affected Ubuntu 18.04 LTS, and Ubuntu 20.04 LTS. (CVE-2021-30151) It was discovered that Sidekiq did not correctly bound certain inputs. An attacker could possibly use this issue to cause a denial of service. (CVE-2022-23837)

Affected Systems

  • ubunturuby-sidekiq

    < 5.0.4+dfsg-2ubuntu0.1~esm1 | < 5.2.7+dfsg-1ubuntu0.1~esm1 | < 6.3.1+dfsg-1ubuntu0.1~esm1

References (3)