Vulnerabilities > Omniauth Weibo Oauth2 Project

DATE CVE VULNERABILITY TITLE RISK
2020-02-07 CVE-2019-17268 Code Injection vulnerability in Omniauth-Weibo-Oauth2 Project Omniauth-Weibo-Oauth2 0.4.6
The omniauth-weibo-oauth2 gem 0.4.6 for Ruby, as distributed on RubyGems.org, included a code-execution backdoor inserted by a third party.
network
low complexity
omniauth-weibo-oauth2-project CWE-94
critical
9.8