Skip to content

H3-2022-0038

Ruby on Rails Debug Mode Enabled

Category SECURITY_MISCONFIGURATION
Base Score 4.5

Description

Ruby on Rails with Debug mode enabled in a production environment exposes sensitive information about the web application.

Impact

Sensitive environment information may be leaked to attackers allowing for further exploitation.

References