Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:7894
HistoryNov 28, 2018 - 2:22 a.m.

Information Disclosure

2018-11-2802:22:01
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

0.002 Low

EPSS

Percentile

52.2%

activejob is vulnerable to information disclosure. A lack of validation in the deserialize_argument function in arguments.rb allows remote attackers access to information that is otherwise not accessible when deserializing GlobalID objects that were not generated by Active Jobs.