Security Advisory
CVE-2020-36599
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
lib/omniauth/failure_endpoint.rb in OmniAuth before 1.9.2 (and before 2.0) does not escape the message_key value.
CVE vulnerability detail — eXtreme Datacenter Security Operations
lib/omniauth/failure_endpoint.rb in OmniAuth before 1.9.2 (and before 2.0) does not escape the message_key value.