CVE-2025-27221 - "URI Gem Authentication Credential Leakage Vulnerability"

CVE ID : CVE-2025-27221 Published : March 4, 2025, 12:15 a.m. | 1 hour, 44 minutes ago Description : In the URI gem before 1.0.3 for Ruby, the URI handling methods (URI.join, URI#merge, URI#+) have an inadvertent leakage of authentication credentials because userinfo is retained even after changing the host. Severity: 3.2 | LOW Visit the link for more details, such as CVSS details, affected products, timeline, and more...

Mär 4, 2025 - 03:00
 0  0
CVE-2025-27221 - "URI Gem Authentication Credential Leakage Vulnerability"
CVE ID : CVE-2025-27221
Published : March 4, 2025, 12:15 a.m. | 1 hour, 44 minutes ago
Description : In the URI gem before 1.0.3 for Ruby, the URI handling methods (URI.join, URI#merge, URI#+) have an inadvertent leakage of authentication credentials because userinfo is retained even after changing the host.
Severity: 3.2 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...