Package impact

ruby RubyGems / alchemy_cms

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2026-23885 unknown 5mo ago AlchemyCMS: Authenticated Remote Code Execution (RCE) via eval injection in ResourcesHelper
CVE-2018-18307 unknown 4y ago AlchemyCMS is vulnerable to stored XSS via the /admin/pictures image field