Vendorsomniauth-oauth2 Projectomniauth-oauth2any version
Vulnerabilities

omniauth-oauth2 Project omniauth-oauth2 any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2012-6134
Cross-site request forgery (CSRF) vulnerability in the omniauth-oauth2 gem 1.1.1 and earlier for Ruby allows remote attackers to hijack the authentication of users for requests that modify session state.
Published 2013-04-09 · Modified
6.8EPSS 0.012