Action Pack is a framework for handling and responding to web requests. Since 6.1.0, the application configurable Permissions-Policy is only served on responses with an HTML related Content-Type. This vulnerability is fixed in 6.1.7.8, 7.0.8.2, and 7.1.3.3.
References
Configurations
Configuration 1 (hide)
|
History
06 Dec 2024, 14:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
Information
Published : 2024-06-04 20:15
Updated : 2024-12-06 14:15
NVD link : CVE-2024-28103
Mitre link : CVE-2024-28103
CVE.ORG link : CVE-2024-28103
JSON object : View
Products Affected
rubyonrails
- rails
CWE