Sobelow.Vuln.CookieRCE (Sobelow v0.14.0)

View Source

Plug Version Vulnerable to Arbitrary Code Execution in Cookie Serialization

For more information visit: https://github.com/advisories/GHSA-5v4m-c73v-c7gq

Cookie RCE checks can be ignored with the following command:

$ mix sobelow -i Vuln.CookieRCE

Summary

Functions

details()

id()

rule()

run(root)