The Anatomy of a Rails Vulnerability - NCC Group

May 27th, 2014 - Jeff Jarmoc - jeff@matasano.com On May 6th 2014, the Ruby on Rails team released updates to address a security vulnerability involving the 'implicit render' feature, and identified it as CVE-2014-0130.1 In their advisory2, they go on to describe a Directory Traversal vulnerability involving globbing routes including ................
................

In order to avoid copyright disputes, this page is only a partial summary.

Google Online Preview   Download