Description
There is a possible denial of service vulnerability in Action View (Rails) <5.2.2.1, <5.1.6.2, <5.0.7.2, <4.2.11.1 where specially crafted accept headers can cause action view to consume 100% cpu and make the server unresponsive.
Remediation
References
Related Vulnerabilities
Oracle Application Server CVE-2008-2583 Vulnerability (CVE-2008-2583)
WordPress Plugin Users Ultra Membership Cross-Site Scripting (1.5.78)
PrestaShop Improper Privilege Management Vulnerability (CVE-2013-6295)
WordPress Plugin Integration for Contact Form 7 and Constant Contact Cross-Site Scripting (1.0.8)