Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

TEMP-0000000-23C1BD

Источник: debian

Описание

[Sidekiq::Web lacks CSRF protection]

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ruby-sidekiqfixed3.4.2~dfsg-3package
ruby-sidekiqno-dsajessiepackage

Примечания

  • https://github.com/mperham/sidekiq/pull/2422

  • Fixed by https://github.com/mperham/sidekiq/commit/cf3c43b2410c4573e05ac119494e41115f4140ad

  • Fix released in sidekiq 3.4.2

  • Follow-up fix: https://github.com/mperham/sidekiq/commit/75a3524c919857aac16e0541b0cb107f48d00694

  • Follow-up commit not included in 3.4.2~dfsg-1

  • CVE Request: https://www.openwall.com/lists/oss-security/2015/08/01/2