Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The paratrooper-newrelic gem 1.0.1 for Ruby allows local users to obtain the X-Api-Key value by listing the curl process.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
paratrooper-newrelic gem for Ruby 信息泄露漏洞
Vulnerability Description
paratrooper-newrelic gem for Ruby是一个基于Ruby语言的用于在Paratrooper部署期间向Newrelic服务发送停止应用程序监控通知的包。 paratrooper-newrelic gem for Ruby 1.0.1版本中存在信息泄露漏洞。本地恶意用户可通过监视curl进程利用该漏洞获取X-Api-Key值。
CVSS Information
N/A
Vulnerability Type
N/A