Description
A deserialization of untrusted data vulnerability exists in rails < 5.2.4.3, rails < 6.0.3.1 which can allow an attacker to supply information can be inadvertently leaked fromStrong Parameters.
Remediation
References
Related Vulnerabilities
e107 Other Vulnerability (CVE-2006-0682)
XWikiplatform Improper Encoding or Escaping of Output Vulnerability (CVE-2024-55663)
WordPress Plugin WooCommerce Cross-Site Scripting (2.6.2)
WordPress 4.9.x Multiple Vulnerabilities (4.9 - 4.9.21)
Liferay Portal CVE-2021-38266 Vulnerability (CVE-2021-38266)