Ruby on Rails Deserialization of Untrusted Data Vulnerability - CVE-2020-8164 - Vulnerability Database

Ruby on Rails Deserialization of Untrusted Data Vulnerability - CVE-2020-8164

High
Reference: CVE-2020-8164
Title: Ruby on Rails Deserialization of Untrusted Data Vulnerability
Overview:

A deserialization of untrusted data vulnerability exists in rails lt 5.2.4.3 rails lt 6.0.3.1 which can allow an attacker to supply information can be inadvertently leaked fromStrong Parameters.