vulnerability

Ubuntu: USN-7646-1 (CVE-2019-5418): Rails vulnerability

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:N)
Published
Mar 27, 2019
Added
Jun 26, 2025
Modified
Aug 18, 2025

Description

There is a File Content Disclosure vulnerability in Action View <5.2.2.1, <5.1.6.2, <5.0.7.2, <4.2.11.1 and v3 where specially crafted accept headers can cause contents of arbitrary files on the target system's filesystem to be exposed.

Solutions

ubuntu-pro-upgrade-railsubuntu-pro-upgrade-ruby-actionpackubuntu-pro-upgrade-ruby-actionview
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.