Security Advisory

CVE-2023-28120

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-01-09 00:33:47
Last updated 2025-01-09 21:46:38
Assigner hackerone
State PUBLISHED

Description

There is a vulnerability in ActiveSupport if the new bytesplice method is called on a SafeBuffer with untrusted user input.