CVE-2015-7581: Object leak vulnerability for wildcard controller routes
(updated )
Users that have a route that contains the string :controller
are susceptible to objects being leaked globally which can lead to unbounded memory growth. To identify if your application is vulnerable, look for routes that contain :controller
.
References
Detect and mitigate CVE-2015-7581 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →