CVE-2025-27219 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

In the CGI gem before 0.4.2 for Ruby, the CGI::Cookie.parse method in the CGI library contains a potential Denial of Service (DoS) vulnerability. The method doe…
Medium CVSS: 5.8

CVE-2025-27219

In the CGI gem before 0.4.2 for Ruby, the CGI::Cookie.parse method in the CGI library contains a potential Denial of Service (DoS) vulnerability. The method does not impose any limit on the length of the raw cookie value it processes. This oversight can lead to excessive resource consumption when parsing extremely large cookies.
Vendor
Ruby-lang
Product
Cgi
CWE
CWE-770
Yayın Tarihi
2025-03-04 00:15:31
Güncelleme
2025-11-03 22:18:43
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar