openSUSE Tumbleweed — ruby2.7-rubygem-actionpack — multiple vulnerabilities (4 CVEs) — patch and remediation guide
🟠 High ⏱ 15–60 min Last verified: 25 May 2026 Affected versions: openSUSE Tumbleweed 📖 ~4 min read • Source: SUSE advisory openSUSE-SU-2021:0797-1 (see also SUSE bugzilla) Related CVEs: CVE-2021-22885 CVE-2021-22904 CVE-2021-22881 CVE-2021-22902 Upstream summary: A possible information disclosure / unintended method execution vulnerability in Action Pack >= 2.0.0 when using the `redirect_to` or […]