CVE-2024-28103 | Action Pack up to 6.1.7.7/7.0.8.3/7.1.3.3/7.2.0.beta1 on Ruby on Rails Content-Type permission (GHSA-fwhr-88qx-h9g7 / Nessus ID 232107)
A vulnerability was found in Action Pack up to 6.1.7.7/7.0.8.3/7.1.3.3/7.2.0.beta1 on Ruby on Rails. It has been rated as critical. This issue affects some unknown processing of the component Content-Type Handler. The manipulation leads to permission issues.
The identification of this vulnerability is CVE-2024-28103. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.