RSS   Podatności dla 'Omniauth-oauth2 gem'   RSS

2013-04-09
 
CVE-2012-6134

CWE-352
 

 
Cross-site request forgery (CSRF) vulnerability in the omniauth-oauth2 gem 1.1.1 and earlier for Ruby allows remote attackers to hijack the authentication of users for requests that modify session state.

 


Copyright 2024, cxsecurity.com

 

Back to Top