CVE-2015-8314

7.5HIGH

The Devise gem before 3.5.4 for Ruby mishandles Remember Me cookies for sessions, which may allow an adversary to obtain unauthorized persistent application access.

公開日: 12/12/2023更新日: 5/27/2025

説明

The Devise gem before 3.5.4 for Ruby mishandles Remember Me cookies for sessions, which may allow an adversary to obtain unauthorized persistent application access.

AI分析AIによる分析

影響を受ける製品

heartcombodevise

参照