← Back

Actionpack Page Caching

actionpack_page-caching

Vendor: Rubyonrails • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
2Debian
Rubyonrails
3Actionpack Page Caching
Debian LinuxRails
Jun 17, 2026
May 27, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
A possible information disclosure / unintended method execution vulnerability in Action Pack >= 2.0.0 when using the `redirect_to` or `polymorphic_url`helper with untrusted user input.
2Debian
Rubyonrails
2Actionpack Page Caching
Debian Linux
Jun 17, 2026
May 12, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
There is a vulnerability in actionpack_page-caching gem < v1.2.1 that allows an attacker to write arbitrary files to a web server, potentially resulting in remote code execution if the attacker can write unescaped ERB to...Show more
There is a vulnerability in actionpack_page-caching gem < v1.2.1 that allows an attacker to write arbitrary files to a web server, potentially resulting in remote code execution if the attacker can write unescaped ERB to a view.Show less