You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
actionpack/lib/action_view/template/text.rb in Action View in Ruby on Rails 3.x before 3.2.17 converts MIME type strings to symbols during use of the :text option to the render method, which allows remote attackers to cause a denial of service (memory consumption) by including these strings in headers.
CVE-2014-0082 - Medium Vulnerability
path: /tmp/git/sample_app/Gemfile.lock
Dependency Hierarchy:
🔴 Vulnerability Details
actionpack/lib/action_view/template/text.rb in Action View in Ruby on Rails 3.x before 3.2.17 converts MIME type strings to symbols during use of the :text option to the render method, which allows remote attackers to cause a denial of service (memory consumption) by including these strings in headers.
Publish Date: 2014-02-20
URL: CVE-2014-0082
🎯 CVSS 2 Score Details (5.0)
Base Score Metrics:
Want to learn more about the open source vulnerabilities in your products? Click here
The text was updated successfully, but these errors were encountered: