← back
CVE-2020-8165CWE-502

CVE-2020-8165

15Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 46%
exploitation probability
46%top 1% of all CVEs
observed exploitation
nono source reports it
A deserialization of untrusted data vulnernerability exists in rails < 5.2.4.3, rails < 6.0.3.1 that can allow an attacker to unmarshal user-provided objects in MemCacheStore and RedisCacheStore potentially resulting in an RCE.