Executive brief
Spree does not properly restrict the use of a hash to provide values for a model's attributes
Affected products
- RubyGems spree
Junglewise Threat Intelligence
CVE-2008-7310 · Severity: info · Published 2022-05-17
Technologies: spree (RubyGems). Vendors: RubyGems.
Spree does not properly restrict the use of a hash to provide values for a model's attributes