Skip to main content

CVE detail

CVE-2010-3299

The encrypt/decrypt functions in Ruby on Rails 2.3 are vulnerable to padding oracle attacks.

CVSS 6.5 · Medium