CVE-2023-28120 – RubyOnRails ActiveSupportUnsafeBufferManipulation Vulnerability

CVE ID : CVE-2023-28120

Published : Jan. 9, 2025, 1:15 a.m. | 1 hour, 1 minute ago

Description : There is a vulnerability in ActiveSupport if the new bytesplice method is called on a SafeBuffer with untrusted user input.

Severity: 0.0 | NA

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE-2023-28120 – RubyOnRails ActiveSupportUnsafeBufferManipulation Vulnerability