Skip to main content
Loading…
    CVE-2026-40295 — Devise is an authentication solution for Rails based on Warden. In versions 5.0.3 and below, when the Timeoutable module is enabled in Devise, the FailureApp#redirect_url method returns request.referr — CVE Database · The Intelligence Room