{"id":"CVE-2020-8151","aliases":["GHSA-46j2-xjgp-jrfm"],"url":"https://o3.security/vulnerability/CVE-2020-8151","summary":"Information disclosure issue in Active Resource","details":"There is a possible information disclosure issue in Active Resource <v5.1.1 that could allow an attacker to create specially crafted requests to access data in an unexpected way and possibly leak information.","published":"2020-05-12T13:15:12.937Z","modified":"2026-07-08T05:54:31.192383239Z","cvss":{"score":7.5,"severity":"HIGH","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"},"epss":null,"cisaKev":null,"exploitsKnown":null,"affectedPackages":[{"ecosystem":"RubyGems","name":"activeresource","fixedVersion":"5.1.1"}],"fix":null,"references":[{"type":"WEB","url":"https://groups.google.com/forum/#%21topic/rubyonrails-security/pktoF4VmiM8"},{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/P7B7A4H22DZ522HLDS3JX3NX2CXIOZSR/"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-07-08T05:54:31.192383239Z"}}