Vulnerabilities (CVE)

Filtered by vendor Airbrake Subscribe
Filtered by product Airbrake Ruby
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-16060 1 Airbrake 1 Airbrake Ruby 2024-11-21 5.0 MEDIUM 9.8 CRITICAL
The Airbrake Ruby notifier 4.2.3 for Airbrake mishandles the blacklist_keys configuration option and consequently may disclose passwords to unauthorized actors. This is fixed in 4.2.4 (also, 4.2.2 and earlier are unaffected).