Junglewise Threat Intelligence

CVE-2025-10990: REXML ReDoS vulnerability

CVE-2025-10990 · Severity: low · CVSS 3.1 · Published 2024-10-28

Technologies: rexml (RubyGems). Vendors: RubyGems.

Executive brief

REXML ReDoS vulnerability

Affected products

  • RubyGems rexml

CVE identifiers

  • CVE-2025-10990
  • CVE-2024-49761

Related threats