Vulnerability CVE-2023-25015


Published: 2023-02-02

Description:
Clockwork Web before 0.1.2, when Rails before 5.2 is used, allows CSRF.

 References:
https://github.com/ankane/clockwork_web/commit/ec2896503ee231588547c2fad4cb93a94e78f857
https://github.com/ankane/clockwork_web/issues/4
https://github.com/ankane/clockwork_web/compare/v0.1.1...v0.1.2

Copyright 2026, cxsecurity.com

 

Back to Top