Rails is a web-application... CVE-2024-26142

- AV AC AU C I A
发布: 2024-02-27
修订: 2025-02-14

Rails is a web-application framework. Starting in version 7.1.0, there is a possible ReDoS vulnerability in the Accept header parsing routines of Action Dispatch. This vulnerability is patched in 7.1.3.1. Ruby 3.2 has mitigations for this problem, so Rails applications using Ruby 3.2 or newer are unaffected.

0%
暂无可用Exp或PoC
当前有2条受影响产品信息