CVE-2019-5418: high-severity vulnerability in Rails https://github.com/rails/rails
Published · Updated
Patch now. It under exploitation confirmed by CISA and has a working public exploit.
Official vendor statements in CSAF/VEX format: whether their product is affected, already fixed, or ruled out — and why. These are the vendor's assertions, not Vexday's judgment.
Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
A vulnerability in Action View allows attackers to read arbitrary files from a server by sending specially crafted accept headers. This can expose sensitive data like configuration files or private keys.
Path traversal vulnerability in Action View's accept header handling (CWE-22) allows unauthenticated attackers to disclose arbitrary file contents through crafted HTTP headers without requiring authentication or special permissions. Affected versions: <5.2.2.1, <5.1.6.2, <5.0.7.2, <4.2.11.1, and v3.
The full analysis of this CVE is available in Portuguese →
In the same product, most dangerous first.