NONE · 0

CVE-2025-55193

Active Record connects classes to relational database tables. Prior to versions 7.1.5.2, 7.2.2.2, and 8.0.2.1, the ID passed to find or similar methods may be logged without escaping. If this is direc...

Vulnerability Description

Active Record connects classes to relational database tables. Prior to versions 7.1.5.2, 7.2.2.2, and 8.0.2.1, the ID passed to find or similar methods may be logged without escaping. If this is directly to the terminal it may include unescaped ANSI sequences. This issue has been patched in versions 7.1.5.2, 7.2.2.2, and 8.0.2.1.

Related Weaknesses (CWE)

References

FAQ

What is CVE-2025-55193?

CVE-2025-55193 is a documented vulnerability. Active Record connects classes to relational database tables. Prior to versions 7.1.5.2, 7.2.2.2, and 8.0.2.1, the ID passed to find or similar methods may be logged without escaping. If this is direc...

How severe is CVE-2025-55193?

CVSS scoring is not yet available for CVE-2025-55193. Check NVD for updates.

Is there a patch for CVE-2025-55193?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.