There is a File Content Disclosure vulnerability in Action View <5.2.2.1, <5.1.6.2, <5.0.7.2, <4.2.11.1 and v3 where specially crafted accept headers can cause contents of arbitrary files on the target system's filesystem to be exposed.
Loading...
Loading...
Score elevated to 9.0 because this CVE is listed on the CISA Known Exploited Vulnerabilities catalog (added 2025-07-07), indicating real-world exploitation has been confirmed by US federal agencies. NVD baseline CVSS 7.5 retained for reference. Confidence: HIGH.
There is a File Content Disclosure vulnerability in Action View <5.2.2.1, <5.1.6.2, <5.0.7.2, <4.2.11.1 and v3 where specially crafted accept headers can cause contents of arbitrary files on the target system's filesystem to be exposed.
March 27, 2019
October 30, 2025
| Vendor / Ecosystem | Fixed in / Patch | Released | Source |
|---|---|---|---|
| ubuntu | ruby-railties (2:4.2.6-1ubuntu0.1~esm2) @ xenial | 2026-06-03 | ubuntu |
| redhat | cfme-gemset-0:5.9.9.3-1.el7cf | 2019-05-29 | redhat |
| redhat | rh-ror50-rubygem-actionpack-1:5.0.1-2.el7 | 2019-05-13 | redhat |
| redhat | rh-ror42-rubygem-actionpack-1:4.2.6-5.el7 | 2019-05-13 | redhat |
| redhat | cfme-gemset-0:5.10.3.3-1.el7cf | 2019-04-23 | redhat |
Patches are aggregated from vendor advisories (Red Hat, Microsoft, Cisco, GitHub) and package ecosystems (OSV, GHSA). Multiple rows for the same upstream release have been deduplicated.
| Package | Vulnerable range | Fixed in | Dependents |
|---|---|---|---|
| actionview | 5.0.0 ... 5.0.7.1 (17 versions) | 5.0.7.2 | — |
MITRE Common Weakness Enumeration — the root-cause categories this CVE belongs to.
Every vendor that published an advisory referencing this CVE — pulled from our cve_vendor_advisories aggregation. Click any row for the vendor's original advisory page.
RHSA-2019:0796 — Important
RHSA-2019:1147 — Important
RHSA-2019:1149 — Important
RHSA-2019:1289 — Important
Rails vulnerability
Every time one of our enrichment pipelines (NVD, MITRE cvelistV5, EPSS, CISA KEV, GHSA, OSV, vendor advisories) ran against this CVE. Most recent first.
Working exploit code is in the public domain (1 Metasploit module) (7 GitHub PoCs) (1 Exploit-DB entry). Defenders should treat patch urgency accordingly — public PoCs typically lead to mass-exploitation within 24-72 hours.
Ruby on Rails是一个 Web 应用程序框架,是一个相对较新的 Web 应用程序框架,构建在 Ruby 语言之上。这个漏洞主要是由于Ruby on Rails使用了指定参数的render file来渲染应用之外的视图,我们可以通过修改访问某控制器的请求包,通过“…/…/…/…/”来达到路径穿越的目的,然后再通过“{{”来进行模板查询路径的闭合,使得所要访问的文件被当做外部模板来解析。
Open source ↗a demo for Ruby on Rails CVE-2019-5418
Open source ↗RCE on Rails 5.2.2 using a path traversal (CVE-2019-5418) and a deserialization of Ruby objects (CVE-2019-5420)
Open source ↗Rails 5.2.1 - Arbitrary File Content Disclosure
Open source ↗A multi-threaded Golang scanner to identify Ruby endpoints vulnerable to CVE-2019-5418
Open source ↗File Content Disclosure on Rails Test Case - CVE-2019-5418
Open source ↗CVE-2019-5418 - File Content Disclosure on Ruby on Rails
Open source ↗Ruby On Rails File Content Disclosure ('doubletap')
Open source ↗Rails File Content Disclosure
Open source ↗See which npm, PyPI, Go, and Maven packages are affected by CVE-2019-5418
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.
redhat