Arbitrary file existence disclosure in Action Pack

Disclosed: 2014-11-20 00:00:00 By nahamsec To rails
Unknown
Vulnerability Details
This bug was reported directly to the Rails team: https://groups.google.com/forum/#!topic/rubyonrails-security/23fiuwb1NBA
Actions
View on HackerOne
Report Stats
  • Report ID: 43440
  • State: Closed
  • Substate: resolved
  • Upvotes: 4
Share this report