CVE-2023-28362
CVE-2023-28362
Título es
CVE-2023-28362
Jue, 09/01/2025 – 01:15
Gravedad 2.0 Txt
Pendiente de análisis
Título en
CVE-2023-28362
Descripción en
The redirect_to method in Rails allows provided values to contain characters which are not legal in an HTTP header value. This results in the potential for downstream services which enforce RFC compliance on HTTP response headers to remove the assigned Location header.
09/01/2025
09/01/2025
Gravedad 3.1 Txt Gravedad 3.1 (CVSS 3.1 Base Score)
Pendiente de análisis
Referencias
Enviar en el boletín
Off