Lucene search

K
redhatcveRedhat.comRH:CVE-2020-8164
HistoryJun 01, 2020 - 6:20 p.m.

CVE-2020-8164

2020-06-0118:20:13
redhat.com
access.redhat.com
11

0.006 Low

EPSS

Percentile

78.3%

A flaw was found in rubygem-actionpack. Untrusted hashes of data is possible for values of each, each_value, and each_pair which can lead to cases of user supplied information being leaked from Strong Parameters. Applications that use these hashes may inadvertently use untrusted user input. The highest risk from this vulnerability is to data confidentiality.