Package impact

ruby RubyGems / omniauth-facebook

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Published Description Impact
CVE-2013-4562 medium 6.8 13y ago The omniauth-facebook gem 1.4.1 before 1.5.0 does not properly store the session parameter, which allows remote attackers to conduct cross-site request forgery (CSRF) attacks via the state parameter. debianruby
CVE-2013-4593 unknown 13y ago RubyGem omniauth-facebook has an access token security vulnerability debianruby