CVE-2019-5419

All FrameworksRuby on RailsCWE-400CVE-2019-5419

CVE-2019-5419

State: PUBLISHED · Published: 2019-03-27 · Updated: 2024-08-04 · Assigner: hackerone
Description
There is a possible denial of service vulnerability in Action View (Rails) <5.2.2.1, <5.1.6.2, <5.0.7.2, <4.2.11.1 where specially crafted accept headers can cause action view to consume 100% cpu and make the server unresponsive.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2019/5xxx/CVE-2019-5419.json