http_basic_authenticate_with is suseptible to timing attacks.

Disclosed: 2016-03-13 18:08:12 By d_w To rails
Unknown
Vulnerability Details
No vulnerability description provided or it is restricted.
Actions
View on HackerOne
Report Stats
  • Report ID: 94568
  • State: Closed
  • Substate: resolved
  • Upvotes: 6
Share this report