Home / Vulnerability Database / Ruby : Mass assignment
Ruby
Ruby : Mass assignment
Classification
OWASP Top 10 2013
OWASP Top 10 2017
OWASP Top 10 2021
OWASP ASVS
PCI DSS 4.0
HIPAA
CWE
Overview
The application uses a mass assignment. An attacker can set new values for an existing parameter in a request, thus escalating privileges.
MEDIUM
DerScanner Severity Score
Do you want to fix Ruby : Mass assignment in your application?
See also
Ruby
Ruby : Weak hashing algorithm
Ruby
Ruby : Empty encryption key
Ruby
