Skip to content

Known CVE

Rails File Content Disclosure

Rails <5.2.2.1, <5.1.6.2, <5.0.7.2, <4.2.11.1 and v3 are susceptible to a file content disclosure vulnerability because specially crafted accept headers can cause contents of arbitrary files on the target system's file system to be exposed.

CVE-2019-5418

High2019CVSS 7.5CWE-22

cve2019 · rails · lfi · disclosure · edb · rubyonrails · kev · vkev

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website