Leah-neukirchen
5 CVEs tracked since 2025. Since Oct 2025, none of them reached CISA KEV.
Leah-neukirchen CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2025-10 | 5 | 0 |
Products
The products that kept showing up in Leah-neukirchen's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 15 most recently published vulnerabilities affecting Leah-neukirchen.
- CVE-2026-25500Rack's Stored XSS in Rack::Directory via javascript: filenames rendered into anchor href5.4
- CVE-2026-22860Rack has a Directory Traversal via Rack:Directory7.5
- CVE-2025-61919Rack is vulnerable to a memory-exhaustion DoS through unbounded URL-encoded body parsing7.5
- CVE-2025-61780Rack has Possible Information Disclosure Vulnerability5.8
- CVE-2025-61772Rack's multipart parser buffers unbounded per-part headers, enabling DoS (memory exhaustion)7.5
- CVE-2025-61771Rack's multipart parser buffers large non‑file fields entirely in memory, enabling DoS (memory exhaustion)7.5
- CVE-2025-61770Rack's unbounded multipart preamble buffering enables DoS (memory exhaustion)7.5
- CVE-2025-59830Rack QueryParser has an unsafe default allowing params_limit bypass via semicolon-separated parameters7.5
- CVE-2025-49007ReDoS Vulnerability in Rack::Multipart handle_mime_head5.3
- CVE-2025-46336Rack session gets restored after deletion4.2
- CVE-2025-46727Unbounded-Parameter DoS in Rack::QueryParser7.5
- CVE-2025-32441Rack session gets restored after deletion4.2
- CVE-2025-27610Local File Inclusion in Rack::Static7.5
- CVE-2025-27111Escape Sequence Injection vulnerability in Rack lead to Possible Log Injection7.5
- CVE-2025-25184Possible Log Injection in Rack::CommonLogger6.5
The record
- Peak rank
- #182 in Oct 2025
- Busiest month shown
- Oct 2025, 5 CVEs
- Months with a KEV entry
- 0 since Oct 2025
- Monthly snapshots
- 1 since 2025