CVE-2021-41819
PoC —CVSS 3.1
7.5 high
EPSS
3%p86
Published
()
Modified
Description
CGI::Cookie.parse in Ruby through 2.6.8 mishandles security prefixes in cookie names. This also affects the CGI gem through 0.3.0 for Ruby.
In the news0 stories
No ingested article mentions this CVE yet.