Below you will find pages that utilize the taxonomy term “CVE”
Blog
The Devise Extension That Peeled off One Layer of the Security Onion (CVE-2021-28680)
I work for the security consultant company Defensify where I conduct security assessments of applications and networks. In December 2020 I made a review of a web application written in Ruby on Rails. I will not disclose the name of the client or any other vulnerabilities found in the client’s application, but this blog post tells the story of how I found a security vulnerability in one of the third-party dependencies they use, which is open source, and got my first ever CVE assigned. \o/