GHSA-36hj-r7fq-q38mCriticalCVSS 9.8
Mongoid contains an unsafe reflection weakness in the query path used for embedded documents. An...
🔗 CVE IDs covered (1)
📋 Description
Mongoid contains an unsafe reflection weakness in the query path used for embedded documents. An application that passes an externally supplied field name to certain in-memory query methods may allow an unauthenticated party to obtain unintended disclosure of stored document data and to permanently remove stored records.