Rapid7

vulnerability

FreeBSD: VID-1396a74a-4997-11e9-b5f1-83edb3f89ba1 (CVE-2019-5418): Rails -- Action View vulnerabilities

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:N)
Published
Mar 18, 2019
Added
Mar 19, 2019
Modified
Jun 15, 2026

Description

There is a File Content Disclosure vulnerability in Action View less than5.2.2.1, less than5.1.6.2, less than5.0.7.2, less than4.2.11.1 and v3 where specially crafted accept headers can cause contents of arbitrary files on the target system's filesystem to be exposed.

Solutions

freebsd-upgrade-package-rubygem-actionview4freebsd-upgrade-package-rubygem-actionview50freebsd-upgrade-package-rubygem-actionview5
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.