The Safemode gem before 1.2.4 for Ruby, when initialized with a delegate object that is a Rails controller, allows context-dependent attackers to obtain sensitive information via the inspect method.
References
Configurations
Information
Published : 2016-05-20 14:59
Updated : 2018-02-23 02:29
NVD link : CVE-2016-3693
Mitre link : CVE-2016-3693
JSON object : View
Products Affected
safemode_project
- safemode
