Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Doorkeeper gem before 4.2.0 for Ruby might allow remote attackers to conduct replay attacks or revoke arbitrary tokens by leveraging failure to implement the OAuth 2.0 Token Revocation specification.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Doorkeeper 安全漏洞
Vulnerability Description
Doorkeeper gem是一个用于Rails或Grape应用程序中引入OAuth 2并提供程序功能的gem。 Doorkeeper gem 4.1.0及之前的版本中存在安全漏洞。远程攻击者可利用该漏洞实施重放攻击或撤销任意令牌。
CVSS Information
N/A
Vulnerability Type
N/A