Sha256: 4def5d09d21189b6fb04e46adb4f139942f6db447b859134f577183c1b6dc17a

Contents?: true

Size: 590 Bytes

Versions: 1

Compression:

Stored size: 590 Bytes

Contents

---
gem: nokogiri
cve: 2012-6685
osvdb: 90946
url: https://nvd.nist.gov/vuln/detail/CVE-2012-6685
title: Nokogiri Gem for Ruby External Entity (XXE) Expansion Internal Network Response Remote Disclosure
date: 2012-06-08
description: libxml2 contains a flaw that may lead to unauthorized disclosure of
 potentially sensitive information. The issue is triggered when handling the
 expansion of XML external entities (XXE), which can be used to trigger URL's
 on an internal network and allow a remote attacker to gain access to their
 responses.
cvss_v2: 5.0
patched_versions:
  - ">= 1.5.4"

Version data entries

1 entries across 1 versions & 1 rubygems

Version Path
bundler-audit-0.7.0.1 data/ruby-advisory-db/gems/nokogiri/CVE-2012-6685.yml