CVE-2015-8314

Publication date

2023-12-12 00:00:00

Family

mitre

State

PUBLISHED

Description

The Devise gem before 3.5.4 for Ruby mishandles Remember Me cookies for sessions, which may allow an adversary to obtain unauthorized persistent application access.