Description
The is a code injection vulnerability in versions of Rails prior to 5.0.1 that wouldallow an attacker who controlled the `locals` argument of a `render` call to perform a RCE.
Remediation
References
Related Vulnerabilities
WordPress Plugin WP Pipes Unspecified Vulnerability (1.28)
WordPress Plugin SEO Redirection-301 Redirect Manager Cross-Site Request Forgery (8.9)
MySQL CVE-2021-2055 Vulnerability (CVE-2021-2055)
Oracle JRE CVE-2018-2582 Vulnerability (CVE-2018-2582)
WordPress Plugin WORDPRESS VIDEO GALLERY SQL Injection (2.0)