CVE-2014-4992: Cap-Strap Project Cap-Strap

High severity, CVSS 7.8. EPSS: 0.5% chance of exploitation in the next 30 days.

lib/cap-strap/helpers.rb in the cap-strap gem 0.1.5 for Ruby places credentials on the useradd command line, which allows local users to obtain sensitive information by listing the process.

Affected products

Published 2018-01-10. Last modified 2026-06-17.