Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:13453
HistoryMar 14, 2019 - 2:43 a.m.

Information Disclosure

2019-03-1402:43:15
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

0.975 High

EPSS

Percentile

100.0%

actionpack is vulnerable to information disclosure. A remote attacker is able to retrieve arbitrary files on the target server when sending malicious Accept headers that are parsed with render file:.

References