Total vulnerabilities in the database
The Devise gem before 3.5.4 for Ruby mishandles Remember Me cookies for sessions, which may allow an adversary to obtain unauthorized persistent application access.
Software | From | Fixed in |
---|---|---|
![]() |
- | 3.5.4 |
heartcombo / devise | - | 3.5.4 |