Looking for the vulnerability index of Invicti's legacy products?
Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2008-5189) - Vulnerability Database

Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2008-5189)

Description

CRLF injection vulnerability in Ruby on Rails before 2.0.5 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted URL to the redirect_to function.

References

Related Vulnerabilities