Storyline

Multiple medium and low severity vulnerabilities disclosed in Rails components

Four new security advisories reveal possible vulnerabilities in various Rails components, including Active Support, Active Storage, and Action View.

Evidence locked
Today's free sample is only available for the edition's flagship storyline.
Evidence preview
  • Rails Active Storage has possible content type bypass via metadata in direct uploads
    github_advisories