← Home
#ruby
3 stories tagged.
Pipeline Poisoners: How BufferZoneCorp Weaponized Ruby Gems and Go Modules to Own CI/CD at the Build Stage
10 min · 0 sources
The Package That Waited: BufferZoneCorp's Sleeper Gems and Go Modules Reveal a New CI Pipeline Takeover Playbook
9 min · 0 sources
CVE-2025-27610: Ruby on Rails Path Traversal — Arbitrary File Read via Static File Serving
1 min · 0 sources