7.5
CVSSv3

CVE-2015-8314

Published: 12/12/2023 Updated: 14/12/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

The Devise gem prior to 3.5.4 for Ruby mishandles Remember Me cookies for sessions, which may allow an adversary to obtain unauthorized persistent application access.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

heartcombo devise