← Back to CVE List

CVE-2020-8162

Published: 2020-06-19T17:15Z
Last Modified: 2024-11-21T05:38Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
A client side enforcement of server side security vulnerability exists in rails < 5.2.4.2 and rails < 6.0.3.1 ActiveStorage's S3 adapter that allows the Content-Length of a direct file upload to be modified by an end user bypassing upload limits. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt