cve/2019/CVE-2019-16060.md
2024-05-26 14:27:05 +02:00

676 B

CVE-2019-16060

Description

The Airbrake Ruby notifier 4.2.3 for Airbrake mishandles the blacklist_keys configuration option and consequently may disclose passwords to unauthorized actors. This is fixed in 4.2.4 (also, 4.2.2 and earlier are unaffected).

POC

Reference

No PoCs from references.

Github