Sidekiq Pro Gem for Ruby CSRF in Job Filtering
Published: July 17, 2015
SECURITY IDENTIFIERS
- OSVDB: OSVDB-126331
- Vendor Advisory: https://github.com/sidekiq/sidekiq/blob/main/Pro-Changes.md#206-193
GEM
PATCHED VERSIONS
~> 1.9.3
>= 2.0.6
DESCRIPTION
Sidekiq::Web job filtering lacks CSRF protection. This issue is related to OSVDB-125675.
