RSS   Vulnerabilities for 'Safemode'   RSS

2016-05-20
 
CVE-2016-3693

CWE-264
 

 
The Safemode gem before 1.2.4 for Ruby, when initialized with a delegate object that is a Rails controller, allows context-dependent attackers to obtain sensitive information via the inspect method.

 

 >>> Vendor: Rubygems 8 Products
CURL
Rubygems
Mail gem
Json gem
Command wrap
Fastreader
Mini magick
Safemode


Copyright 2024, cxsecurity.com

 

Back to Top