Doorkeeper vulnerabilities
Discription

image
Releases Ubuntu 16.04 ESM Packages ruby-doorkeeper – OAuth 2 provider for Rails and Grape Details Jonathan Clem and Justin Bull discovered that Doorkeeper could allow arbitrary token revocation and replay attacks. An attacker could possibly use this issue to gain unauthorized access to a system. (CVE-2016-6582) It was discovered that Doorkeeper incorrectly handled storing client names. An attacker could possibly use this issue to execute a cross-site scripting (XSS) attack….Read More

Back to Main

Subscribe for the latest news: