vulnerability

FreeBSD: VID-f7a00ad7-ae75-11eb-8113-08002728f74c (CVE-2021-22885): Rails -- multiple vulnerabilities

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:N)
Published
May 7, 2021
Added
Nov 4, 2022
Modified
Dec 10, 2025

Description

Ruby on Rails blog: Rails versions 6.1.3.2, 6.0.3.7, and 5.2.6 have been released! These releases contain important security fixes. Here is a list of the issues fixed: CVE-2021-22885: Possible Information Disclosure / Unintended Method Execution in Action Pack CVE-2021-22902: Possible Denial of Service vulnerability in Action Dispatch CVE-2021-22903: Possible Open Redirect Vulnerability in Action Pack CVE-2021-22904: Possible DoS Vulnerability in Action Controller Token Authentication

Solutions

freebsd-upgrade-package-rubygem-actionpack52freebsd-upgrade-package-rubygem-actionpack60freebsd-upgrade-package-rubygem-actionpack61
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.