CVE-2018-3777

CVE-2018-3777

Vendor Https://Github.com/Restforce
Product restforce ruby gem
Weakness CWE-20 · Input validation
Published August 3, 2018
Last update September 17, 2024

CVSS base score

What the vulnerability does

01Description

Insufficient URI encoding in restforce before 3.0.0 allows attacker to inject arbitrary parameters into Salesforce API requests.

Key dates

02Disclosure timeline

August 3, 2018 CVE published
September 17, 2024 Record updated