Sha256: a3b725fbfb01cd805f3fc49ff0d0ac4cfe44d4f7ecd4a7560055bdd9c7154bdd

Contents?: true

Size: 353 Bytes

Versions: 1

Compression:

Stored size: 353 Bytes

Contents

---
gem: omniauth-oauth2
cve: 2012-6134
url: https://github.com/intridea/omniauth-oauth2/pull/25
title: Ruby on Rails omniauth-oauth2 Gem CSRF vulnerability

description: |
  The omniauth-oauth2 Ruby Gem contains a flaw that allows an attacker to
  inject values into a user's session through a CSRF attack.

cvss_v2: 

patched_versions:
  - ">= 1.1.1"

Version data entries

1 entries across 1 versions & 1 rubygems

Version Path
bundler-audit-0.1.2 data/ruby-advisory-db/gems/omniauth-oauth2/2012-6134.yml