HIGH
GHSA-3v3c-r5v2-68ph
private_address_check contains Incomplete List of Disallowed Inputs
Quick fix
GHSA-3v3c-r5v2-68ph — private_address_check: upgrade to the fixed version with the command below.
bundle update private_address_checkDetails
The private_address_check ruby gem before 0.4.1 is vulnerable to a bypass due to an incomplete blacklist of common private/local network addresses used to prevent server-side request forgery.
Are you affected?
Enter the version of the package you're using.