RSS   Vulnerabilities for 'Rack-cach'   RSS

2012-06-16
 
CVE-2012-2671

CWE-DesignError
 

 
The Rack::Cache rubygem 0.3.0 through 1.1 caches Set-Cookie and other sensitive headers, which allows attackers to obtain sensitive cookie information, hijack web sessions, or have other unspecified impact by accessing the cache.

 


Copyright 2024, cxsecurity.com

 

Back to Top